Vulnerabilities > Improper Authorization

DATE CVE VULNERABILITY TITLE RISK
2024-01-19 CVE-2023-40683 Improper Authorization vulnerability in IBM Openpages With Watson 9.0
IBM OpenPages with Watson 8.3 and 9.0 could allow remote attacker to bypass security restrictions, caused by insufficient authorization checks.
network
low complexity
ibm CWE-285
8.8
2024-01-12 CVE-2022-4962 Improper Authorization vulnerability in Apolloconfig Apollo 2.0.0/2.0.1
A vulnerability was found in Apollo 2.0.0/2.0.1 and classified as problematic.
network
low complexity
apolloconfig CWE-285
4.3
2023-12-29 CVE-2023-52139 Improper Authorization vulnerability in Misskey
Misskey is an open source, decentralized social media platform.
network
low complexity
misskey CWE-285
critical
9.6
2023-12-13 CVE-2023-41673 Improper Authorization vulnerability in Fortinet Fortiadc
An improper authorization vulnerability [CWE-285] in Fortinet FortiADC version 7.4.0 and before 7.2.2 may allow a low privileged user to read or backup the full system configuration via HTTP or HTTPS requests.
network
low complexity
fortinet CWE-285
5.4
2023-11-03 CVE-2023-5948 Improper Authorization vulnerability in Teamamaze Amaze File Utilities
Improper Authorization in GitHub repository teamamaze/amazefileutilities prior to 1.91.
local
low complexity
teamamaze CWE-285
5.5
2023-10-25 CVE-2023-42491 Improper Authorization vulnerability in Busbaer Eisbaer Scada 3.0.6433.1964
EisBaer Scada - CWE-285: Improper Authorization
network
low complexity
busbaer CWE-285
critical
9.8
2023-10-13 CVE-2023-38220 Improper Authorization vulnerability in Adobe Commerce and Magento
Adobe Commerce versions 2.4.7-beta1 (and earlier), 2.4.6-p2 (and earlier), 2.4.5-p4 (and earlier) and 2.4.4-p5 (and earlier) are affected by an Improper Authorization vulnerability that could lead in a security feature bypass in a way that an attacker could access unauthorised data.
network
low complexity
adobe CWE-285
7.5
2023-09-27 CVE-2023-42453 Improper Authorization vulnerability in multiple products
Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation.
network
low complexity
matrix fedoraproject CWE-285
4.3
2023-09-27 CVE-2023-28055 Improper Authorization vulnerability in Dell Networker
Dell NetWorker, Version 19.7 has an improper authorization vulnerability in the NetWorker client.
low complexity
dell CWE-285
8.8
2023-08-25 CVE-2023-32678 Improper Authorization vulnerability in Zulip Server
Zulip is an open-source team collaboration tool with topic-based threading that combines email and chat.
network
low complexity
zulip CWE-285
6.5