Vulnerabilities > Improper Access Control

DATE CVE VULNERABILITY TITLE RISK
2023-03-16 CVE-2023-0811 Improper Access Control vulnerability in Omron products
Omron CJ1M unit v4.0 and prior has improper access controls on the memory region where the UM password is stored.
network
low complexity
omron CWE-284
critical
9.1
2023-03-16 CVE-2023-1432 Improper Access Control vulnerability in Online Food Ordering System Project Online Food Ordering System 2.0
A vulnerability was found in SourceCodester Online Food Ordering System 2.0 and classified as critical.
network
low complexity
online-food-ordering-system-project CWE-284
critical
9.8
2023-03-14 CVE-2023-26460 Improper Access Control vulnerability in SAP Netweaver Application Server for Java 7.50
Cache Management Service in SAP NetWeaver Application Server for Java - version 7.50, does not perform any authentication checks for functionalities that require user identity
network
low complexity
sap CWE-284
5.3
2023-03-14 CVE-2023-27268 Improper Access Control vulnerability in SAP Netweaver Application Server for Java 7.50
SAP NetWeaver AS Java (Object Analyzing Service) - version 7.50, does not perform necessary authorization checks, allowing an unauthenticated attacker to attach to an open interface and make use of an open naming and directory API to access a service which will enable them to access but not modify server settings and data with no effect on availability., resulting in escalation of privileges.
network
low complexity
sap CWE-284
5.3
2023-02-24 CVE-2023-1007 Improper Access Control vulnerability in Filseclab Twister Antivirus 8.17
A vulnerability was found in Twister Antivirus 8.17.
local
low complexity
filseclab CWE-284
7.8
2023-02-24 CVE-2023-0998 Improper Access Control vulnerability in Alphaware Simple E-Commerce System Project Alphaware Simple E-Commerce System 1.0
A vulnerability classified as critical has been found in SourceCodester Alphaware Simple E-Commerce System 1.0.
5.3
2023-02-22 CVE-2023-0963 Improper Access Control vulnerability in Music Gallery Site Project Music Gallery Site 1.0
A vulnerability was found in SourceCodester Music Gallery Site 1.0.
network
low complexity
music-gallery-site-project CWE-284
critical
9.8
2023-02-17 CVE-2023-22232 Improper Access Control vulnerability in Adobe Connect
Adobe Connect versions 11.4.5 (and earlier), 12.1.5 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass.
network
low complexity
adobe CWE-284
5.3
2023-02-14 CVE-2023-23835 Improper Access Control vulnerability in Mendix
A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.34), Mendix Applications using Mendix 8 (All versions < V8.18.23), Mendix Applications using Mendix 9 (All versions < V9.22.0), Mendix Applications using Mendix 9 (V9.12) (All versions < V9.12.10), Mendix Applications using Mendix 9 (V9.18) (All versions < V9.18.4), Mendix Applications using Mendix 9 (V9.6) (All versions < V9.6.15).
network
low complexity
mendix CWE-284
7.5
2023-02-08 CVE-2023-0744 Improper Access Control vulnerability in Answer
Improper Access Control in GitHub repository answerdev/answer prior to 1.0.4.
network
low complexity
answer CWE-284
critical
9.8