VYPR

CWE-863

Incorrect Authorization

ClassIncompleteLikelihood: High

Description

The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.

Hierarchy (View 1000)

CVEs mapped to this weakness (4,257)

page 98 of 213
  • CVE-2023-23604MedJun 2, 2023
    risk 0.42cvss 6.5epss 0.00

    A duplicate `SystemPrincipal` object could be created when parsing a non-system html document via `DOMParser::ParseFromSafeString`. This could have lead to bypassing web security checks. This vulnerability affects Firefox < 109.

  • CVE-2023-31597MedMay 18, 2023
    risk 0.42cvss 6.5epss 0.00

    An issue in Zammad v5.4.0 allows attackers to bypass e-mail verification using an arbitrary address and manipulate the data of the generated user. Attackers are also able to gain unauthorized access to existing tickets.

  • CVE-2023-28325MedMay 11, 2023
    risk 0.42cvss 6.5epss 0.00

    An improper authorization vulnerability exists in Rocket.Chat <6.0 that could allow a hacker to manipulate the rid parameter and change the updateMessage method that only checks whether the user is allowed to edit message in the target room.

  • CVE-2023-32060MedMay 9, 2023
    risk 0.42cvss 6.5epss 0.01

    DHIS2 Core contains the service layer and Web API for DHIS2, an information system for data capture. Starting in the 2.35 branch and prior to versions 2.36.13, 2.37.8, 2.38.2, and 2.39.0, when the Category Option Combination Sharing settings are configured to control access to…

  • CVE-2023-27954MedMay 8, 2023
    risk 0.42cvss 6.5epss 0.01

    The issue was addressed by removing origin information. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, tvOS 16.4, watchOS 9.4. A website may be able to track sensitive user information.

  • CVE-2023-31250MedApr 26, 2023
    risk 0.42cvss 6.5epss 0.01

    The file download facility doesn't sufficiently sanitize file paths in certain situations. This may result in users gaining access to private files that they should not have access to. Some sites may require configuration changes following this security release. Review the…

  • CVE-2023-1603MedApr 2, 2023
    risk 0.42cvss 6.5epss 0.01

    Permission bypass when importing or synchronizing entries in User vault in Devolutions Server 2022.3.13 and prior versions allows users with restricted rights to bypass entry permission via id collision.

  • CVE-2023-1202MedApr 2, 2023
    risk 0.42cvss 6.5epss 0.00

    Permission bypass when importing or synchronizing entries in User vault in Devolutions Remote Desktop Manager 2023.1.9 and prior versions allows users with restricted rights to bypass entry permission via id collision.

  • CVE-2023-0952MedMar 1, 2023
    risk 0.42cvss 6.5epss 0.01

    Improper access controls on entries in Devolutions Server 2022.3.12 and earlier could allow an authenticated user to access sensitive data without proper authorization.

  • CVE-2023-0814MedFeb 14, 2023
    risk 0.42cvss 6.5epss 0.01

    The Profile Builder – User Profile & User Registration Forms plugin for WordPress is vulnerable to sensitive information disclosure via the [user_meta] shortcode in versions up to, and including 3.9.0. This is due to insufficient restriction on sensitive user meta values that…

  • CVE-2023-21719MedJan 24, 2023
    risk 0.42cvss 6.5epss 0.02

    Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability

  • CVE-2023-0133MedJan 10, 2023
    risk 0.42cvss 6.5epss 0.01

    Inappropriate implementation in in Permission prompts in Google Chrome on Android prior to 109.0.5414.74 allowed a remote attacker to bypass main origin permission delegation via a crafted HTML page. (Chromium security severity: Medium)

  • CVE-2022-46258MedJan 9, 2023
    risk 0.42cvss 6.5epss 0.01

    An incorrect authorization vulnerability was identified in GitHub Enterprise Server that allowed a repository-scoped token with read/write access to modify Action Workflow files without a Workflow scope. The Create or Update file contents API should enforce workflow scope. This…

  • CVE-2022-48216HigJan 4, 2023
    risk 0.42cvss 7.5epss 0.01

    Uniswap Universal Router before 1.1.0 mishandles reentrancy. This would have allowed theft of funds.

  • CVE-2022-23553HigDec 28, 2022
    risk 0.42cvss 7.5epss 0.01

    Alpine is a scaffolding library in Java. Alpine prior to version 1.10.4 allows URL access filter bypass. This issue has been fixed in version 1.10.4. There are no known workarounds.

  • CVE-2022-38475MedDec 22, 2022
    risk 0.42cvss 6.5epss 0.00

    An attacker could have written a value to the first element in a zero-length JavaScript array. Although the array was zero-length, the value was not written to an invalid memory address. This vulnerability affects Firefox < 104.

  • CVE-2022-22754MedDec 22, 2022
    risk 0.42cvss 6.5epss 0.01

    If a user installed an extension of a particular type, the extension could have auto-updated itself and while doing so, bypass the prompt which grants the new version the new requested permissions. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR <…

  • CVE-2022-23488MedDec 17, 2022
    risk 0.42cvss 6.5epss 0.01

    BigBlueButton is an open source web conferencing system. Versions prior to 2.4-rc-6 are vulnerable to Insertion of Sensitive Information Into Sent Data. The moderators-only webcams lock setting is not enforced on the backend, which allows an attacker to subscribe to viewers'…

  • CVE-2022-41274MedDec 13, 2022
    risk 0.42cvss 6.5epss 0.01

    SAP Disclosure Management - version 10.1, allows an authenticated attacker to exploit certain misconfigured application endpoints to read sensitive data. These endpoints are normally exposed over the network and successful exploitation can lead to the exposure of data like…

  • CVE-2022-3883MedDec 12, 2022
    risk 0.42cvss 6.5epss 0.00

    The Block Bad Bots and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection WordPress plugin before 7.24 does not have proper authorisation and CSRF in an AJAX action, allowing any authenticated users, such as subscriber to call it and install and activate arbitrary…