VYPR

CWE-863

Incorrect Authorization

ClassIncompleteLikelihood: High

Description

The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.

Hierarchy (View 1000)

CVEs mapped to this weakness (3,734)

page 7 of 187
  • CVE-2022-31692CriOct 31, 2022
    risk 0.64cvss 9.8epss 0.03

    Spring Security, versions 5.7 prior to 5.7.5 and 5.6 prior to 5.6.9 could be susceptible to authorization rules bypass via forward or include dispatcher types. Specifically, an application is vulnerable when all of the following are true: The application expects that Spring…

  • CVE-2022-37767CriSep 12, 2022
    risk 0.64cvss 9.8epss 0.01

    Pebble Templates 3.1.5 allows attackers to bypass a protection mechanism and implement arbitrary code execution with springbok. NOTE: the vendor disputes this because input to the Pebble templating engine is intended to include arbitrary Java code, and thus either the input…

  • CVE-2022-26479CriJul 17, 2022
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in Poly EagleEye Director II before 2.2.2.1. Existence of a certain file (which can be created via an rsync backdoor) causes all API calls to execute as admin without authentication.

  • CVE-2022-35890CriJul 15, 2022
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in Inductive Automation Ignition before 7.9.20 and 8.x before 8.1.17. Designer and Vision Client Session IDs are mishandled. An attacker can determine which session IDs were generated in the past and then hijack sessions assigned to these IDs via Randy.

  • CVE-2022-32294CriJul 11, 2022
    risk 0.64cvss 9.8epss 0.03

    Zimbra Collaboration Open Source 8.8.15 does not encrypt the initial-login randomly created password (from the "zmprove ca" command). It is visible in cleartext on port UDP 514 (aka the syslog port). NOTE: a third party reports that this cannot be reproduced.

  • CVE-2022-32310CriJul 5, 2022
    risk 0.64cvss 9.8epss 0.02

    An access control issue in Ingredient Stock Management System v1.0 allows attackers to take over user accounts via a crafted POST request to /isms/classes/Users.php.

  • CVE-2022-27668CriJun 14, 2022
    risk 0.64cvss 9.8epss 0.02

    Depending on the configuration of the route permission table in file 'saprouttab', it is possible for an unauthenticated attacker to execute SAProuter administration commands in SAP NetWeaver and ABAP Platform - versions KERNEL 7.49, 7.77, 7.81, 7.85, 7.86, 7.87, 7.88, KRNL64NUC…

  • CVE-2022-30311CriJun 13, 2022
    risk 0.64cvss 9.8epss 0.03

    In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-refresh-request" POST request doesn’t check for port syntax. This can result in unauthorized execution of system commands with root privileges due to improper access control command…

  • CVE-2022-30310CriJun 13, 2022
    risk 0.64cvss 9.8epss 0.03

    In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-acknerr-request" POST request doesn’t check for port syntax. This can result in unauthorized execution of system commands with root privileges due to improper access control command…

  • CVE-2022-30309CriJun 13, 2022
    risk 0.64cvss 9.8epss 0.03

    In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-web-viewer-request-off" POST request doesn’t check for port syntax. This can result in unauthorized execution of system commands with root privileges due to improper access control…

  • CVE-2022-30308CriJun 13, 2022
    risk 0.64cvss 9.8epss 0.03

    In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-web-viewer-request-on" POST request doesn’t check for port syntax. This can result in unauthorized execution of system commands with root privileges due to improper access control…

  • CVE-2022-29176CriMay 5, 2022
    risk 0.64cvss 9.9epss 0.02

    Rubygems is a package registry used to supply software for the Ruby language ecosystem. Due to a bug in the yank action, it was possible for any RubyGems.org user to remove and replace certain gems even if that user was not authorized to do so. To be vulnerable, a gem needed:…

  • CVE-2022-26676CriApr 7, 2022
    risk 0.64cvss 9.8epss 0.01

    aEnrich a+HRD has inadequate privilege restrictions, an unauthenticated remote attacker can use the API function to upload and execute malicious scripts to control the system or disrupt service.

  • CVE-2021-32986CriApr 4, 2022
    risk 0.64cvss 9.8epss 0.01

    After Automation Direct CLICK PLC CPU Modules: C0-1x CPUs with firmware prior to v3.00 is unlocked by an authorized user, the unlocked state does not timeout. If the programming software is interrupted, the PLC remains unlocked. All subsequent programming connections are allowed…

  • CVE-2022-24609CriMar 10, 2022
    risk 0.64cvss 9.8epss 0.02

    Luocms v2.0 is affected by an incorrect access control vulnerability. Through /admin/templates/template_manage.php, an attacker can write an arbitrary shell file.

  • CVE-2022-24306CriMar 2, 2022
    risk 0.64cvss 9.8epss 0.02

    Zoho ManageEngine SharePoint Manager Plus before 4329 allows account takeover because authorization is mishandled.

  • CVE-2022-24307CriFeb 3, 2022
    risk 0.64cvss 9.8epss 0.01

    Mastodon before 3.3.2 and 3.4.x before 3.4.6 has incorrect access control because it does not compact incoming signed JSON-LD activities. (JSON-LD signing has been supported since version 1.6.0.)

  • CVE-2020-4877CriJan 21, 2022
    risk 0.64cvss 9.8epss 0.01

    IBM Cognos Controller 10.4.0, 10.4.1, and 10.4.2 could be vulnerable to unauthorized modifications by using public fields in public classes. IBM X-Force ID: 190843.

  • CVE-2021-20149CriDec 30, 2021
    risk 0.64cvss 9.8epss 0.01

    Trendnet AC2600 TEW-827DRU version 2.08B01 does not have sufficient access controls for the WAN interface. The default iptables ruleset for governing access to services on the device only apply to IPv4. All services running on the devices are accessible via the WAN interface via…

  • CVE-2020-21124CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.02

    UReport 2.2.9 allows attackers to execute arbitrary code due to a lack of access control to the designer page.