Vulnerabilities > Incorrect Authorization

DATE CVE VULNERABILITY TITLE RISK
2025-01-20 CVE-2025-0580 A vulnerability was found in Shiprocket Module 3 on OpenCart.
network
high complexity
CWE-863
5.6
2025-01-14 CVE-2025-21403 On-Premises Data Gateway Information Disclosure Vulnerability
network
high complexity
CWE-863
6.4
2024-12-27 CVE-2020-9081 Incorrect Authorization vulnerability in Huawei products
There is an improper authorization vulnerability in some Huawei smartphones.
low complexity
huawei CWE-863
6.8
2024-12-20 CVE-2024-56348 Incorrect Authorization vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2024.12 improper access control allowed viewing details of unauthorized agents
network
low complexity
jetbrains CWE-863
4.3
2024-12-20 CVE-2024-56350 Incorrect Authorization vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2024.12 build credentials allowed unauthorized viewing of projects
network
low complexity
jetbrains CWE-863
4.3
2024-12-20 CVE-2024-12831 Incorrect Authorization vulnerability in Arista NG Firewall 17.1.1
Arista NG Firewall uvm_login Incorrect Authorization Privilege Escalation Vulnerability.
local
low complexity
arista CWE-863
7.8
2024-12-17 CVE-2024-9654 The Easy Digital Downloads plugin for WordPress is vulnerable to Improper Authorization in versions 3.1 through 3.3.4.
network
high complexity
CWE-863
3.7
2024-11-26 CVE-2024-11680 Incorrect Authorization vulnerability in Projectsend
ProjectSend versions prior to r1720 are affected by an improper authentication vulnerability.
network
low complexity
projectsend CWE-863
critical
9.8
2024-11-19 CVE-2023-21270 Incorrect Authorization vulnerability in Google Android 12.0/12.1/13.0
In restorePermissionState of PermissionManagerServiceImpl.java, there is a possible way for an app to keep permissions that should be revoked due to incorrect permission flags cleared during an update.
local
low complexity
google CWE-863
7.8
2024-11-18 CVE-2024-21287 Incorrect Authorization vulnerability in Oracle Agile Product Lifecycle Management 9.3.6
Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Software Development Kit, Process Extension).
network
low complexity
oracle CWE-863
7.5