CWE-862
Missing Authorization
Description
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-665
CVEs mapped to this weakness (9,487)
page 197 of 475| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-47326 | Med | 0.36 | 5.5 | 0.00 | Feb 12, 2023 | In wlan driver, there is a possible missing permission check. This could lead to local information disclosure. | ||
| CVE-2022-47325 | Med | 0.36 | 5.5 | 0.00 | Feb 12, 2023 | In wlan driver, there is a possible missing permission check. This could lead to local information disclosure. | ||
| CVE-2022-47324 | Med | 0.36 | 5.5 | 0.00 | Feb 12, 2023 | In wlan driver, there is a possible missing permission check. This could lead to local information disclosure. | ||
| CVE-2022-44421 | Med | 0.36 | 5.5 | 0.00 | Feb 12, 2023 | In wlan driver, there is a possible missing permission check. This could lead to local In wlan driver, information disclosure. | ||
| CVE-2022-44439 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-44438 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-44437 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-44436 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-44435 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-44434 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-44424 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In music service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-44423 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In music service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-44422 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In music service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-39104 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In contacts service, there is a missing permission check. This could lead to local denial of service in Contacts service with no additional execution privileges needed. | ||
| CVE-2022-38684 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-38683 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-38682 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-38678 | Med | 0.36 | 5.5 | 0.00 | Jan 4, 2023 | In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed. | ||
| CVE-2022-20511 | Med | 0.36 | 5.5 | 0.00 | Dec 16, 2022 | In getNearbyAppStreamingPolicy of DevicePolicyManagerService.java, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:… | ||
| CVE-2022-20510 | Med | 0.36 | 5.5 | 0.00 | Dec 16, 2022 | In getNearbyNotificationStreamingPolicy of DevicePolicyManagerService.java, there is a possible way to learn about the notification streaming policy of other users due to a permissions bypass. This could lead to local information disclosure with no additional execution… |
- risk 0.36cvss 5.5epss 0.00
In wlan driver, there is a possible missing permission check. This could lead to local information disclosure.
- risk 0.36cvss 5.5epss 0.00
In wlan driver, there is a possible missing permission check. This could lead to local information disclosure.
- risk 0.36cvss 5.5epss 0.00
In wlan driver, there is a possible missing permission check. This could lead to local information disclosure.
- risk 0.36cvss 5.5epss 0.00
In wlan driver, there is a possible missing permission check. This could lead to local In wlan driver, information disclosure.
- risk 0.36cvss 5.5epss 0.00
In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In messaging service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In music service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In music service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In music service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In contacts service, there is a missing permission check. This could lead to local denial of service in Contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
- risk 0.36cvss 5.5epss 0.00
In getNearbyAppStreamingPolicy of DevicePolicyManagerService.java, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…
- risk 0.36cvss 5.5epss 0.00
In getNearbyNotificationStreamingPolicy of DevicePolicyManagerService.java, there is a possible way to learn about the notification streaming policy of other users due to a permissions bypass. This could lead to local information disclosure with no additional execution…