Vulnerabilities > Improper Access Control

DATE CVE VULNERABILITY TITLE RISK
2017-06-27 CVE-2016-5414 Improper Access Control vulnerability in Freeipa 4.4.0
FreeIPA 4.4.0 allows remote attackers to request an arbitrary SAN name for services.
network
low complexity
freeipa CWE-284
7.5
2017-06-27 CVE-2016-4383 Improper Access Control vulnerability in HP Helion Openstack Glance
The glance-manage db in all versions of HPE Helion Openstack Glance allows deleted image ids to be reassigned, which allows remote authenticated users to cause other users to boot into a modified image without notification of the change.
network
low complexity
hp CWE-284
8.4
2017-06-27 CVE-2015-8697 Improper Access Control vulnerability in Stalin Project Stalin 0.115
stalin 0.11-5 allows local users to write to arbitrary files.
local
low complexity
stalin-project CWE-284
5.5
2017-06-27 CVE-2015-7898 Improper Access Control vulnerability in Samsung Mobile
Samsung Gallery in the Samsung Galaxy S6 allows local users to cause a denial of service (process crash).
local
low complexity
samsung CWE-284
5.5
2017-06-27 CVE-2015-7895 Improper Access Control vulnerability in Samsung Mobile
Samsung Gallery on the Samsung Galaxy S6 allows local users to cause a denial of service (process crash).
local
low complexity
samsung CWE-284
5.5
2017-06-27 CVE-2015-3840 Improper Access Control vulnerability in Google Android
The MessageStatusReceiver service in the AndroidManifest.XML in Android 5.1.1 and earlier allows local users to alter sent/received statuses of SMS and MMS messages without the associated "WRITE_SMS" permission.
local
low complexity
google CWE-284
5.5
2017-06-13 CVE-2016-10335 Improper Access Control vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, libtomcrypt was updated.
local
low complexity
google CWE-284
5.5
2017-06-13 CVE-2016-10334 Improper Access Control vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a dynamically-protected DDR region could potentially get overwritten.
local
low complexity
google CWE-284
5.5
2017-06-13 CVE-2016-10333 Improper Access Control vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a sensitive system call was allowed to be called by HLOS.
local
low complexity
google CWE-284
5.5
2017-06-13 CVE-2015-9029 Improper Access Control vulnerability in Google Android
In all Android releases from CAF using the Linux kernel, a vulnerability exists in the access control settings of modem memory.
local
low complexity
google CWE-284
7.8