VYPR

CWE-862

Missing Authorization

ClassIncompleteLikelihood: High

Description

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-665

CVEs mapped to this weakness (9,489)

page 187 of 475
  • CVE-2023-42703MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In firewall service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42702MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In firewall service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42701MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In firewall service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42700MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In firewall service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42699MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In omacp service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42698MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In omacp service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42697MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In omacp service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42678MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42677MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42676MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42675MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42674MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42673MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42672MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42671MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42654MedNov 1, 2023
    risk 0.36cvss 5.5epss 0.00

    In dm service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42652MedNov 1, 2023
    risk 0.36cvss 5.5epss 0.00

    In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42651MedNov 1, 2023
    risk 0.36cvss 5.5epss 0.00

    In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42650MedNov 1, 2023
    risk 0.36cvss 5.5epss 0.00

    In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed

  • CVE-2023-42648MedNov 1, 2023
    risk 0.36cvss 5.5epss 0.00

    In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed