Vulnerabilities > Incorrect Authorization

DATE CVE VULNERABILITY TITLE RISK
2020-05-14 CVE-2020-0090 Incorrect Authorization vulnerability in Google Android
An improper authorization in the receiver component of Email.Product: AndroidVersions: Android SoCAndroid ID: A-149813048
local
low complexity
google CWE-863
2.1
2020-05-14 CVE-2020-0065 Incorrect Authorization vulnerability in Google Android
An improper authorization in the receiver component of the Android Suite Daemon.Product: AndroidVersions: Android SoCAndroid ID: A-149813448
local
low complexity
google CWE-863
2.1
2020-05-14 CVE-2020-0064 Incorrect Authorization vulnerability in Google Android
An improper authorization while processing the provisioning data.Product: AndroidVersions: Android SoCAndroid ID: A-149866855
local
low complexity
google CWE-863
2.1
2020-05-14 CVE-2020-12875 Incorrect Authorization vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 did not perform adequate authorization checks.
network
low complexity
veritas CWE-863
6.5
2020-05-14 CVE-2020-12874 Incorrect Authorization vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 included code that bypassed the normal login process when specific authentication credentials were provided to the server.
network
low complexity
veritas CWE-863
7.5
2020-05-13 CVE-2020-1998 Incorrect Authorization vulnerability in Paloaltonetworks Pan-Os
An improper authorization vulnerability in PAN-OS that mistakenly uses the permissions of local linux users instead of the intended SAML permissions of the account when the username is shared for the purposes of SSO authentication.
network
low complexity
paloaltonetworks CWE-863
6.5
2020-05-12 CVE-2020-8151 Incorrect Authorization vulnerability in multiple products
There is a possible information disclosure issue in Active Resource <v5.1.1 that could allow an attacker to create specially crafted requests to access data in an unexpected way and possibly leak information.
network
low complexity
rubyonrails fedoraproject CWE-863
7.5
2020-05-11 CVE-2020-12745 Incorrect Authorization vulnerability in Google Android 10.0
An issue was discovered on Samsung mobile devices with Q(10.0) software.
network
low complexity
google CWE-863
5.0
2020-05-07 CVE-2020-12691 Incorrect Authorization vulnerability in multiple products
An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0.
network
low complexity
openstack canonical CWE-863
8.8
2020-05-06 CVE-2020-12669 Incorrect Authorization vulnerability in Dolibarr
core/get_menudiv.php in Dolibarr before 11.0.4 allows remote authenticated attackers to bypass intended access restrictions via a non-alphanumeric menu parameter.
network
low complexity
dolibarr CWE-863
6.5