Vulnerabilities > Improper Authorization

DATE CVE VULNERABILITY TITLE RISK
2024-10-16 CVE-2020-36841 The WooCommerce Smart Coupons plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the woocommerce_coupon_admin_init function in versions up to, and including, 4.6.0.
network
low complexity
CWE-285
5.3
2024-09-09 CVE-2024-7015 Improper Authorization vulnerability in Profelis Passbox
Improper Authentication, Missing Authentication for Critical Function, Improper Authorization vulnerability in Profelis Informatics and Consulting PassBox allows Authentication Abuse.This issue affects PassBox: before v1.2.
network
low complexity
profelis CWE-285
critical
9.8
2024-08-07 CVE-2024-7578 Improper Authorization vulnerability in Alientechnology Alr-F800 Firmware
A vulnerability was found in Alien Technology ALR-F800 up to 19.10.24.00.
network
low complexity
alientechnology CWE-285
critical
9.8
2019-12-16 CVE-2019-18827 Improper Authorization vulnerability in Barco products
On Barco ClickShare Button R9861500D01 devices (before firmware version 1.9.0) JTAG access is disabled after ROM code execution.
network
high complexity
barco CWE-285
5.9
2019-08-15 CVE-2018-14670 Improper Authorization vulnerability in Yandex Clickhouse
Incorrect configuration in deb package in ClickHouse before 1.1.54131 could lead to unauthorized use of the database.
network
low complexity
yandex CWE-285
critical
9.8
2019-08-01 CVE-2018-20945 Improper Authorization vulnerability in Cpanel
bin/csvprocess in cPanel before 68.0.27 allows insecure file operations (SEC-354).
network
low complexity
cpanel CWE-285
5.7
2019-08-01 CVE-2018-20927 Improper Authorization vulnerability in Cpanel
cPanel before 70.0.23 allows jailshell escape because of incorrect crontab parsing (SEC-382).
local
low complexity
cpanel CWE-285
3.8
2019-08-01 CVE-2016-10848 Improper Authorization vulnerability in Cpanel
cPanel before 11.54.0.4 allows arbitrary file-overwrite operations in scripts/quotacheck (SEC-81).
network
low complexity
cpanel CWE-285
7.2
2019-08-01 CVE-2016-10859 Improper Authorization vulnerability in Cpanel
cPanel before 11.54.0.0 allows unauthorized password changes via Webmail API commands (SEC-65).
network
low complexity
cpanel CWE-285
8.1
2019-07-20 CVE-2018-17210 Improper Authorization vulnerability in Printeron Central Print Services 2.5/4.1.4
An issue was discovered in PrinterOn Central Print Services (CPS) through 4.1.4.
network
low complexity
printeron CWE-285
8.8