Vulnerabilities > Improper Access Control

DATE CVE VULNERABILITY TITLE RISK
2023-02-03 CVE-2023-23615 Improper Access Control vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-284
5.3
2023-01-26 CVE-2023-0451 Improper Access Control vulnerability in Econolite EOS
Econolite EOS versions prior to 3.2.23 lack a password requirement for gaining “READONLY” access to log files and certain database and configuration files.
network
low complexity
econolite CWE-284
7.5
2023-01-16 CVE-2015-10057 Improper Access Control vulnerability in Little-Apps Little Software Stats
A vulnerability was found in Little Apps Little Software Stats.
network
low complexity
little-apps CWE-284
critical
9.8
2023-01-10 CVE-2023-0017 Improper Access Control vulnerability in SAP Netweaver Application Server for Java 7.50
An unauthenticated attacker in SAP NetWeaver AS for Java - version 7.50, due to improper access control, can attach to an open interface and make use of an open naming and directory API to access services which can be used to perform unauthorized operations affecting users and data on the current system.
network
low complexity
sap CWE-284
critical
9.8
2023-01-10 CVE-2023-0012 Improper Access Control vulnerability in SAP Host Agent 7.21/7.22
In SAP Host Agent (Windows) - versions 7.21, 7.22, an attacker who gains local membership to SAP_LocalAdmin could be able to replace executables with a malicious file that will be started under a privileged account.
local
low complexity
sap CWE-284
6.7
2023-01-09 CVE-2023-22473 Improper Access Control vulnerability in Nextcloud Talk
Talk-Android enables users to have video & audio calls through Nextcloud on Android.
low complexity
nextcloud CWE-284
2.1
2023-01-07 CVE-2014-125054 Improper Access Control vulnerability in Reddit-On-Rails Project Reddit-On-Rails
A vulnerability classified as critical was found in koroket RedditOnRails.
network
low complexity
reddit-on-rails-project CWE-284
4.3
2022-12-28 CVE-2022-4807 Improper Access Control vulnerability in Usememos Memos
Improper Access Control in GitHub repository usememos/memos prior to 0.9.1.
network
low complexity
usememos CWE-284
4.3
2022-12-28 CVE-2022-4809 Improper Access Control vulnerability in Usememos Memos
Improper Access Control in GitHub repository usememos/memos prior to 0.9.1.
network
low complexity
usememos CWE-284
8.8
2022-12-28 CVE-2022-4810 Improper Access Control vulnerability in Usememos Memos
Improper Access Control in GitHub repository usememos/memos prior to 0.9.1.
network
low complexity
usememos CWE-284
4.3