Vulnerabilities > Improper Access Control

DATE CVE VULNERABILITY TITLE RISK
2022-04-03 CVE-2022-0405 Improper Access Control vulnerability in Janeczku Calibre-Web
Improper Access Control in GitHub repository janeczku/calibre-web prior to 0.6.16.
network
low complexity
janeczku CWE-284
4.3
2022-03-02 CVE-2022-0824 Improper Access Control vulnerability in Webmin
Improper Access Control to Remote Code Execution in GitHub repository webmin/webmin prior to 1.990.
network
low complexity
webmin CWE-284
8.8
2022-01-30 CVE-2022-0273 Improper Access Control vulnerability in Janeczku Calibre-Web
Improper Access Control in Pypi calibreweb prior to 0.6.16.
network
low complexity
janeczku CWE-284
6.5
2022-01-11 CVE-2022-0170 Improper Access Control vulnerability in Framasoft Peertube
peertube is vulnerable to Improper Access Control
network
low complexity
framasoft CWE-284
4.3
2022-01-10 CVE-2022-0133 Improper Access Control vulnerability in Framasoft Peertube
peertube is vulnerable to Improper Access Control
network
low complexity
framasoft CWE-284
7.5
2021-12-13 CVE-2021-24859 Improper Access Control vulnerability in User Meta Shortcodes Project User Meta Shortcodes 0.5
The User Meta Shortcodes WordPress plugin through 0.5 registers a shortcode that allows any user with a role as low as contributor to access other users metadata by specifying the user login as a parameter.
network
low complexity
user-meta-shortcodes-project CWE-284
4.3
2021-06-01 CVE-2021-32656 Improper Access Control vulnerability in Nextcloud Server
Nextcloud Server is a Nextcloud package that handles data storage.
network
low complexity
nextcloud CWE-284
8.6
2021-05-13 CVE-2020-36197 Improper Access Control vulnerability in Qnap Music Station
An improper access control vulnerability has been reported to affect earlier versions of Music Station.
low complexity
qnap CWE-284
8.8
2021-03-19 CVE-2019-10200 Improper Access Control vulnerability in Redhat Openshift Container Platform 4.0
A flaw was discovered in OpenShift Container Platform 4 where, by default, users with access to create pods also have the ability to schedule workloads on master nodes.
network
low complexity
redhat CWE-284
7.2
2021-03-19 CVE-2019-10128 Improper Access Control vulnerability in Postgresql
A vulnerability was found in postgresql versions 11.x prior to 11.3.
local
low complexity
postgresql CWE-284
7.8