Vulnerabilities > Improper Access Control

DATE CVE VULNERABILITY TITLE RISK
2023-11-17 CVE-2023-26347 Improper Access Control vulnerability in Adobe Coldfusion
Adobe ColdFusion versions 2023.5 (and earlier) and 2021.11 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass.
network
low complexity
adobe CWE-284
7.5
2023-11-14 CVE-2023-26205 Improper Access Control vulnerability in Fortinet Fortiadc
An improper access control vulnerability [CWE-284] in FortiADC automation feature 7.1.0 through 7.1.2, 7.0 all versions, 6.2 all versions, 6.1 all versions may allow an authenticated low-privileged attacker to escalate their privileges to super_admin via a specific crafted configuration of fabric automation CLI script.
network
low complexity
fortinet CWE-284
8.8
2023-11-14 CVE-2023-44248 Improper Access Control vulnerability in Fortinet Fortiedr 4.0.0/5.0.3
An improper access control vulnerability [CWE-284] in FortiEDRCollectorWindows version 5.2.0.4549 and below, 5.0.3.1007 and below, 4.0 all may allow a local attacker to prevent the collector service to start in the next system reboot by tampering with some registry keys of the service.
local
low complexity
fortinet CWE-284
5.5
2023-11-14 CVE-2023-43505 Improper Access Control vulnerability in Siemens Comos
A vulnerability has been identified in COMOS (All versions).
network
low complexity
siemens CWE-284
6.5
2023-11-14 CVE-2023-46601 Improper Access Control vulnerability in Siemens Comos
A vulnerability has been identified in COMOS (All versions).
network
low complexity
siemens CWE-284
7.5
2023-11-07 CVE-2023-5976 Improper Access Control vulnerability in Microweber
Improper Access Control in GitHub repository microweber/microweber prior to 2.0.
network
low complexity
microweber CWE-284
4.3
2023-10-30 CVE-2023-5833 Improper Access Control vulnerability in Mintplexlabs Anythingllm 0.0.1
Improper Access Control in GitHub repository mintplex-labs/anything-llm prior to 0.1.0.
network
low complexity
mintplexlabs CWE-284
8.8
2023-10-13 CVE-2023-43079 Improper Access Control vulnerability in Dell EMC Openmanage Server Administrator
Dell OpenManage Server Administrator, versions 11.0.0.0 and prior, contains an Improper Access Control vulnerability.
local
low complexity
dell CWE-284
7.8
2023-10-10 CVE-2023-37194 Improper Access Control vulnerability in Siemens products
A vulnerability has been identified in SIMATIC CP 1604 (All versions), SIMATIC CP 1616 (All versions), SIMATIC CP 1623 (All versions), SIMATIC CP 1626 (All versions), SIMATIC CP 1628 (All versions).
local
low complexity
siemens CWE-284
6.7
2023-10-09 CVE-2023-36820 Improper Access Control vulnerability in Objectcomputing Micronaut Security
Micronaut Security is a security solution for applications.
network
low complexity
objectcomputing CWE-284
6.5