Vulnerabilities > Incorrect Authorization

DATE CVE VULNERABILITY TITLE RISK
2023-05-10 CVE-2022-41610 Incorrect Authorization vulnerability in Intel products
Improper authorization in Intel(R) EMA Configuration Tool before version 1.0.4 and Intel(R) MC before version 2.4 software may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-863
5.5
2023-05-10 CVE-2022-43465 Incorrect Authorization vulnerability in Intel Setup and Configuration Software
Improper authorization in the Intel(R) SCS software all versions may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-863
5.5
2023-05-10 CVE-2022-45128 Incorrect Authorization vulnerability in Intel Endpoint Management Assistant
Improper authorization in the Intel(R) EMA software before version 1.9.0.0 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-863
5.5
2023-05-09 CVE-2023-32069 Incorrect Authorization vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-863
8.8
2023-05-09 CVE-2023-31138 Incorrect Authorization vulnerability in Dhis2 Dhis 2
DHIS2 Core contains the service layer and Web API for DHIS2, an information system for data capture.
network
low complexity
dhis2 CWE-863
6.5
2023-05-09 CVE-2023-32060 Incorrect Authorization vulnerability in Dhis2 Dhis 2
DHIS2 Core contains the service layer and Web API for DHIS2, an information system for data capture.
network
low complexity
dhis2 CWE-863
6.5
2023-05-08 CVE-2023-31141 Incorrect Authorization vulnerability in Amazon Opensearch Security
OpenSearch is open-source software suite for search, analytics, and observability applications.
network
high complexity
amazon CWE-863
5.9
2023-05-08 CVE-2023-30840 Incorrect Authorization vulnerability in Linuxfoundation Fluid
Fluid is an open source Kubernetes-native distributed dataset orchestrator and accelerator for data-intensive applications.
local
low complexity
linuxfoundation CWE-863
7.8
2023-05-08 CVE-2023-1979 Incorrect Authorization vulnerability in Google web Stories
The Web Stories for WordPress plugin supports the WordPress built-in functionality of protecting content with a password.
network
low complexity
google CWE-863
6.5
2023-05-08 CVE-2023-2534 Incorrect Authorization vulnerability in Otrs
Improper Authorization vulnerability in OTRS AG OTRS 8 (Websocket API backend) allows any as Agent authenticated attacker to track user behaviour and to gain live insight into overall system usage.
network
low complexity
otrs CWE-863
8.1