Vulnerabilities > Improper Access Control

DATE CVE VULNERABILITY TITLE RISK
2023-12-19 CVE-2019-25157 Improper Access Control vulnerability in Ethex Contracts
A vulnerability was found in Ethex Contracts.
network
low complexity
ethex CWE-284
4.3
2023-12-15 CVE-2023-48441 Improper Access Control vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.18 and earlier are affected by an Improper Access Control vulnerability.
network
low complexity
adobe CWE-284
5.3
2023-12-13 CVE-2023-6773 Improper Access Control vulnerability in Codeastro POS and Inventory Management System 1.0
A vulnerability has been found in CodeAstro POS and Inventory Management System 1.0 and classified as problematic.
network
low complexity
codeastro CWE-284
8.8
2023-12-13 CVE-2023-6761 Improper Access Control vulnerability in Thecosy Icecms 2.0.1
A vulnerability, which was classified as problematic, has been found in Thecosy IceCMS up to 2.0.1.
network
low complexity
thecosy CWE-284
8.8
2023-12-13 CVE-2023-6758 Improper Access Control vulnerability in Thecosy Icecms 2.0.1
A vulnerability was found in Thecosy IceCMS 2.0.1.
network
low complexity
thecosy CWE-284
4.3
2023-12-13 CVE-2023-47536 Improper Access Control vulnerability in Fortinet Fortios and Fortiproxy
An improper access control vulnerability [CWE-284] in FortiOS version 7.2.0, version 7.0.13 and below, version 6.4.14 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, version 2.0.12 and below may allow a remote unauthenticated attacker to bypass the firewall deny geolocalisation policy via timing the bypass with a GeoIP database update.
network
low complexity
fortinet CWE-284
5.3
2023-11-28 CVE-2023-32063 Improper Access Control vulnerability in Oroinc Client Relationship Management
OroCalendarBundle enables a Calendar feature and related functionality in Oro applications.
network
low complexity
oroinc CWE-284
5.0
2023-11-28 CVE-2023-32064 Improper Access Control vulnerability in Oroinc Orocommerce
OroCommerce package with customer portal and non authenticated visitor website base features.
network
low complexity
oroinc CWE-284
4.3
2023-11-28 CVE-2023-32065 Improper Access Control vulnerability in Oroinc Orocommerce
OroCommerce is an open-source Business to Business Commerce application built with flexibility in mind.
network
low complexity
oroinc CWE-284
5.8
2023-11-27 CVE-2023-32062 Improper Access Control vulnerability in Oroinc Oroplatform
OroPlatform is a package that assists system and user calendar management.
network
low complexity
oroinc CWE-284
4.3