Vulnerabilities > Incorrect Authorization

DATE CVE VULNERABILITY TITLE RISK
2021-02-17 CVE-2020-24494 Incorrect Authorization vulnerability in Intel products
Insufficient access control in the firmware for the Intel(R) 722 Ethernet Controllers before version 1.4.3 may allow a privileged user to potentially enable denial of service via local access.
local
low complexity
intel CWE-863
2.1
2021-02-17 CVE-2020-24493 Incorrect Authorization vulnerability in Intel Ethernet Network Adapter 700 Firmware 7.3
Insufficient access control in the firmware for the Intel(R) 700-series of Ethernet Controllers before version 8.0 may allow a privileged user to potentially enable denial of service via local access.
local
low complexity
intel CWE-863
2.1
2021-02-17 CVE-2020-24492 Incorrect Authorization vulnerability in Intel products
Insufficient access control in the firmware for the Intel(R) 722 Ethernet Controllers before version 1.5 may allow a privileged user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-863
2.1
2021-02-17 CVE-2020-0525 Incorrect Authorization vulnerability in Intel Ethernet Controller I210 Firmware
Improper access control in firmware for the Intel(R) Ethernet I210 Controller series of network adapters before version 3.30 may allow a privileged user to potentially enable denial of service via local access.
local
low complexity
intel CWE-863
2.1
2021-02-17 CVE-2020-0523 Incorrect Authorization vulnerability in Intel Ethernet Controller I210 Firmware
Improper access control in the firmware for the Intel(R) Ethernet I210 Controller series of network adapters before version 3.30 may potentially allow a privileged user to enable a denial of service via local access.
local
low complexity
intel CWE-863
2.1
2021-02-12 CVE-2021-26753 Incorrect Authorization vulnerability in Nedi 1.9C
NeDi 1.9C allows an authenticated user to inject PHP code in the System Files function on the endpoint /System-Files.php via the txt HTTP POST parameter.
network
low complexity
nedi CWE-863
6.5
2021-02-11 CVE-2021-20188 Incorrect Authorization vulnerability in multiple products
A flaw was found in podman before 1.7.0.
6.9
2021-02-10 CVE-2021-27177 Incorrect Authorization vulnerability in Fiberhome Hg6245D Firmware
An issue was discovered on FiberHome HG6245D devices through RP2613.
network
low complexity
fiberhome CWE-863
7.5
2021-02-05 CVE-2020-8806 Incorrect Authorization vulnerability in Electriccoin Zcashd
Electric Coin Company Zcashd before 2.1.1-1 allows attackers to trigger consensus failure and double spending.
network
low complexity
electriccoin CWE-863
5.0
2021-02-05 CVE-2020-10539 Incorrect Authorization vulnerability in Epikur 20.1.0.1
An issue was discovered in Epikur before 20.1.1.
network
low complexity
epikur CWE-863
7.5