Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2020-12-18 CVE-2020-13515 Missing Authorization vulnerability in Nzxt CAM 4.8.0
A privilege escalation vulnerability exists in the WinRing0x64 Driver IRP 0x9c40a148 functionality of NZXT CAM 4.8.0.
local
low complexity
nzxt CWE-862
7.2
2020-12-18 CVE-2020-13514 Missing Authorization vulnerability in Nzxt CAM 4.8.0
A privilege escalation vulnerability exists in the WinRing0x64 Driver Privileged I/O Write IRPs functionality of NZXT CAM 4.8.0.
local
low complexity
nzxt CWE-862
7.2
2020-12-18 CVE-2020-13513 Missing Authorization vulnerability in Nzxt CAM 4.8.0
A privilege escalation vulnerability exists in the WinRing0x64 Driver Privileged I/O Write IRPs functionality of NZXT CAM 4.8.0.
local
low complexity
nzxt CWE-862
7.2
2020-12-18 CVE-2020-13512 Missing Authorization vulnerability in Nzxt CAM 4.8.0
A privilege escalation vulnerability exists in the WinRing0x64 Driver Privileged I/O Write IRPs functionality of NZXT CAM 4.8.0.
local
low complexity
nzxt CWE-862
7.2
2020-12-15 CVE-2020-29480 Missing Authorization vulnerability in multiple products
An issue was discovered in Xen through 4.14.x.
local
low complexity
xen debian fedoraproject CWE-862
2.3
2020-12-15 CVE-2020-29479 Missing Authorization vulnerability in multiple products
An issue was discovered in Xen through 4.14.x.
local
low complexity
xen debian fedoraproject CWE-862
8.8
2020-12-15 CVE-2020-27777 Missing Authorization vulnerability in multiple products
A flaw was found in the way RTAS handled memory accesses in userspace to kernel communication.
local
low complexity
linux redhat CWE-862
6.7
2020-12-15 CVE-2020-0485 Missing Authorization vulnerability in Google Android 11.0
In areFunctionsSupported of UsbBackend.java, there is a possible access to tethering from a guest account due to a missing permission check.
local
low complexity
google CWE-862
4.6
2020-12-15 CVE-2020-0475 Missing Authorization vulnerability in Google Android 11.0
In createInputConsumer of WindowManagerService.java, there is a possible way to block and intercept input events due to a missing permission check.
network
google CWE-862
6.8
2020-12-14 CVE-2020-0440 Missing Authorization vulnerability in Google Android 11.0
In createVirtualDisplay of DisplayManagerService.java, there is a possible way to create a trusted virtual display due to a missing permission check.
local
low complexity
google CWE-862
7.2