Vulnerabilities > Incorrect Authorization

DATE CVE VULNERABILITY TITLE RISK
2023-06-06 CVE-2023-1779 Incorrect Authorization vulnerability in Mbconnectline Mbconnect24 and Mymbconnect24
Exposure of Sensitive Information to an unauthorized actor vulnerability in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and myREX24.virtual in versions <=2.13.3 allow an authorized remote attacker with low privileges to view a limited amount of another accounts contact information.
network
low complexity
mbconnectline CWE-863
4.3
2023-06-06 CVE-2022-40529 Incorrect Authorization vulnerability in Qualcomm products
Memory corruption due to improper access control in kernel while processing a mapping request from root process.
local
low complexity
qualcomm CWE-863
7.8
2023-06-06 CVE-2023-21670 Incorrect Authorization vulnerability in Qualcomm products
Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode.
local
low complexity
qualcomm CWE-863
7.8
2023-06-02 CVE-2023-3033 Incorrect Authorization vulnerability in Mobatime web Application 06.7.22
Incorrect Authorization vulnerability in Mobatime web application allows Privilege Escalation, Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Mobatime web application: through 06.7.22.
network
low complexity
mobatime CWE-863
8.8
2023-06-02 CVE-2022-46307 Incorrect Authorization vulnerability in Sguda U-Lock Firmware
SGUDA U-Lock central lock control service’s lock management function has incorrect authorization.
network
low complexity
sguda CWE-863
8.8
2023-06-02 CVE-2022-46308 Incorrect Authorization vulnerability in Sguda U-Lock Firmware
SGUDA U-Lock central lock control service’s user management function has incorrect authorization.
network
low complexity
sguda CWE-863
8.8
2023-06-02 CVE-2023-28698 Incorrect Authorization vulnerability in Wddgroup Fantsy 2.1.8
Wade Graphic Design FANTSY has a vulnerability of insufficient authorization check.
network
low complexity
wddgroup CWE-863
critical
9.8
2023-05-31 CVE-2023-34218 Incorrect Authorization vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05 bypass of permission checks allowing to perform admin actions was possible
network
low complexity
jetbrains CWE-863
critical
9.8
2023-05-31 CVE-2023-34219 Incorrect Authorization vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2023.05 improper permission checks allowed users without appropriate permissions to edit Build Configuration settings via REST API
network
low complexity
jetbrains CWE-863
4.3
2023-05-31 CVE-2023-28352 Incorrect Authorization vulnerability in Faronics Insight 10.0.19045
An issue was discovered in Faronics Insight 10.0.19045 on Windows.
low complexity
faronics CWE-863
7.4