CWE-862
Missing Authorization
Description
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-665
CVEs mapped to this weakness (9,489)
page 189 of 475| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-40650 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In Telecom service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-40649 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-40648 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-40647 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-40646 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-40645 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-40644 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-40643 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-40642 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-40641 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-40640 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In SoundRecorder service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges | ||
| CVE-2023-40639 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In SoundRecorder service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges | ||
| CVE-2023-40637 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In telecom service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges | ||
| CVE-2023-40633 | Med | 0.36 | 5.5 | 0.00 | Oct 8, 2023 | In phasecheckserver, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed | ||
| CVE-2023-21291 | Med | 0.36 | 5.5 | 0.00 | Oct 6, 2023 | In visitUris of Notification.java, there is a possible way to reveal image contents from another user due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation. | ||
| CVE-2023-45245 | Med | 0.36 | 5.5 | 0.00 | Oct 6, 2023 | Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 36119. | ||
| CVE-2023-45243 | Med | 0.36 | 5.5 | 0.00 | Oct 5, 2023 | Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 35739, Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186. | ||
| CVE-2023-45242 | Med | 0.36 | 5.5 | 0.00 | Oct 5, 2023 | Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 35739, Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186. | ||
| CVE-2023-45240 | Med | 0.36 | 5.5 | 0.00 | Oct 5, 2023 | Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 35739. | ||
| CVE-2023-44214 | Med | 0.36 | 5.5 | 0.00 | Oct 5, 2023 | Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 35739. |
- risk 0.36cvss 5.5epss 0.00
In Telecom service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In SoundRecorder service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In SoundRecorder service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In telecom service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges
- risk 0.36cvss 5.5epss 0.00
In phasecheckserver, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed
- risk 0.36cvss 5.5epss 0.00
In visitUris of Notification.java, there is a possible way to reveal image contents from another user due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.
- risk 0.36cvss 5.5epss 0.00
Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 36119.
- risk 0.36cvss 5.5epss 0.00
Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 35739, Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186.
- risk 0.36cvss 5.5epss 0.00
Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 35739, Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186.
- risk 0.36cvss 5.5epss 0.00
Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 35739.
- risk 0.36cvss 5.5epss 0.00
Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 35739.