VYPR

CWE-862

Missing Authorization

ClassIncompleteLikelihood: High

Description

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-665

CVEs mapped to this weakness (9,268)

page 50 of 464
  • CVE-2021-24501HigAug 9, 2021
    risk 0.53cvss 8.1epss 0.01

    The Workreap WordPress theme before 2.2.2 had several AJAX actions missing authorization checks to verify that a user was authorized to perform critical operations such as modifying or deleting objects. This allowed a logged in user to modify or delete objects belonging to other…

  • CVE-2021-24500HigAug 9, 2021
    risk 0.53cvss 8.1epss 0.01

    Several AJAX actions available in the Workreap WordPress theme before 2.2.2 lacked CSRF protections, as well as allowing insecure direct object references that were not validated. This allows an attacker to trick a logged in user to submit a POST request to the vulnerable site,…

  • CVE-2020-11511HigJul 30, 2021
    risk 0.53cvss 8.1epss 0.03

    The LearnPress plugin before 3.2.6.9 for WordPress allows remote attackers to escalate the privileges of any user to LP Instructor via the accept-to-be-teacher action parameter.

  • CVE-2020-12734HigJul 15, 2021
    risk 0.53cvss 8.1epss 0.01

    DEPSTECH WiFi Digital Microscope 3 allows remote attackers to change the SSID and password, and demand a ransom payment from the rightful device owner, because there is no way to reset to Factory Default settings.

  • CVE-2021-23204HigJun 11, 2021
    risk 0.53cvss 8.1epss 0.01

    Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gallagher Command Centre Server allows OSDP key material to be exposed to Command Centre Operators. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions…

  • CVE-2021-32095HigMay 7, 2021
    risk 0.53cvss 8.1epss 0.01

    U.S. National Security Agency (NSA) Emissary 5.9.0 allows an authenticated user to delete arbitrary files.

  • CVE-2021-27900HigApr 6, 2021
    risk 0.53cvss 8.1epss 0.02

    The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) is missing an authorization check on several pages in the Web Console. This enables a view-only user to change any configuration setting and delete any registered agents. All versions before 7.11.1 are…

  • CVE-2020-13422HigApr 6, 2021
    risk 0.53cvss 8.1epss 0.01

    OpenIAM before 4.2.0.3 does not verify if a user has permissions to perform /webconsole/rest/api/* administrative actions.

  • CVE-2020-26830HigDec 9, 2020
    risk 0.53cvss 8.1epss 0.01

    SAP Solution Manager 7.2 (User Experience Monitoring), version - 7.2, does not perform necessary authorization checks for an authenticated user. Due to inadequate access control, a network attacker authenticated as a regular user can use operations which should be restricted to…

  • CVE-2020-26649HigOct 22, 2020
    risk 0.53cvss 8.1epss 0.01

    AtomXCMS 2.0 is affected by Incorrect Access Control via admin/dump.php

  • CVE-2020-24718HigSep 25, 2020
    risk 0.53cvss 8.2epss 0.01

    bhyve, as used in FreeBSD through 12.1 and illumos (e.g., OmniOS CE through r151034 and OpenIndiana through Hipster 2020.04), does not properly restrict VMCS and VMCB read/write operations, as demonstrated by a root user in a container on an Intel system, who can gain privileges…

  • CVE-2020-6301HigAug 12, 2020
    risk 0.53cvss 8.1epss 0.01

    SAP ERP (HCM Travel Management), versions - 600, 602, 603, 604, 605, 606, 607, 608, allows an authenticated but unauthorized attacker to read, modify and settle trips, resulting in escalation of privileges, due to Missing Authorization Check.

  • CVE-2020-6298HigAug 12, 2020
    risk 0.53cvss 8.1epss 0.01

    SAP Banking Services (Generic Market Data), versions - 400, 450, 500, allows an unauthorized user to display protected Business Partner Generic Market Data (GMD) and change related GMD key figure values, due to Missing Authorization Check.

  • CVE-2020-15943HigAug 4, 2020
    risk 0.53cvss 8.1epss 0.02

    An issue was discovered in the Gantt-Chart module before 5.5.4 for Jira. Due to a missing privilege check, it is possible to read and write to the module configuration of other users. This can also be used to deliver an XSS payload to other users' dashboards. To exploit this…

  • CVE-2020-6268HigJun 10, 2020
    risk 0.53cvss 8.1epss 0.01

    Statutory Reporting for Insurance Companies in SAP ERP (EA-FINSERV versions - 600, 603, 604, 605, 606, 616, 617, 618, 800 and S4CORE versions 101, 102, 103, 104) does not execute the required authorization checks for an authenticated user, allowing an attacker to view and tamper…

  • CVE-2020-11671HigMay 4, 2020
    risk 0.53cvss 8.1epss 0.01

    Lack of authorization controls in REST API functions in TeamPass through 2.1.27.36 allows any TeamPass user with a valid API token to become a TeamPass administrator and read/modify all passwords via authenticated api/index.php REST API calls. NOTE: the API is not available by…

  • CVE-2019-18610HigNov 22, 2019
    risk 0.53cvss 8.8epss 0.30

    An issue was discovered in manager.c in Sangoma Asterisk through 13.x, 16.x, 17.x and Certified Asterisk 13.21 through 13.21-cert4. A remote authenticated Asterisk Manager Interface (AMI) user without system authorization could use a specially crafted Originate AMI request to…

  • CVE-2019-3879HigMar 25, 2019
    risk 0.53cvss 8.1epss 0.02

    It was discovered that in the ovirt's REST API before version 4.3.2.1, RemoveDiskCommand is triggered as an internal command, meaning the permission validation that should be performed against the calling user is skipped. A user with low privileges (eg Basic Operations) could…

  • CVE-2017-17707HigJul 31, 2018
    risk 0.53cvss 8.1epss 0.01

    Due to missing authorization checks, any authenticated user is able to list, upload, or delete attachments to password safe entries in Pleasant Password Server before 7.8.3. To perform those actions on an entry, the user needs to know the corresponding "CredentialId" value,…

  • CVE-2026-18316CriAug 16, 2026
    risk 0.52cvss 9.1epss 0.00

    The Solace Extra plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the import_zip() function in versions up to, and including, 1.6.0. The handler is registered on both wp_ajax_action-import-zip and…