Vulnerabilities > Improper Access Control

DATE CVE VULNERABILITY TITLE RISK
2023-10-05 CVE-2023-43072 Improper Access Control vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an improper access control vulnerability in the CLI.
local
low complexity
dell CWE-284
7.8
2023-09-29 CVE-2023-32477 Improper Access Control vulnerability in Dell Common Event Enabler 8.9.8.2
Dell Common Event Enabler 8.9.8.2 for Windows and prior, contain an improper access control vulnerability.
local
low complexity
dell CWE-284
7.8
2023-09-27 CVE-2023-32458 Improper Access Control vulnerability in EMC Appsync
Dell AppSync, versions 4.4.0.0 to 4.6.0.0 including Service Pack releases, contains an improper access control vulnerability in Embedded Service Enabler component.
local
low complexity
emc CWE-284
7.8
2023-09-27 CVE-2023-39376 Improper Access Control vulnerability in Siberiancms
SiberianCMS - CWE-284 Improper Access Control Authorized user may disable a security feature over the network
network
low complexity
siberiancms CWE-284
6.5
2023-09-12 CVE-2023-40730 Improper Access Control vulnerability in Siemens QMS Automotive 12.30
A vulnerability has been identified in QMS Automotive (All versions < V12.39).
network
low complexity
siemens CWE-284
8.8
2023-09-12 CVE-2023-3039 Improper Access Control vulnerability in Dell SD ROM Utility
SD ROM Utility, versions prior to 1.0.2.0 contain an Improper Access Control vulnerability.
local
low complexity
dell CWE-284
7.8
2023-09-07 CVE-2023-40060 Improper Access Control vulnerability in Solarwinds Serv-U 15.4.0
A vulnerability has been identified within Serv-U 15.4 and 15.4 Hotfix 1 that, if exploited, allows an actor to bypass multi-factor/two-factor authentication.
network
low complexity
solarwinds CWE-284
7.2
2023-09-06 CVE-2021-36036 Improper Access Control vulnerability in Magento
Magento versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper access control vulnerability within Magento's Media Gallery Upload workflow.
network
low complexity
magento CWE-284
7.2
2023-09-01 CVE-2023-4696 Improper Access Control vulnerability in Usememos Memos
Improper Access Control in GitHub repository usememos/memos prior to 0.13.2.
network
low complexity
usememos CWE-284
critical
9.8
2023-08-31 CVE-2023-4650 Improper Access Control vulnerability in Instantcms
Improper Access Control in GitHub repository instantsoft/icms2 prior to 2.16.1-git.
network
low complexity
instantcms CWE-284
4.7