Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2020-10-14 CVE-2020-0412 Missing Authorization vulnerability in Google Android
In setProcessMemoryTrimLevel of ActivityManagerService.java, there is a missing permission check.
local
low complexity
google CWE-862
3.3
2020-10-14 CVE-2020-0378 Missing Authorization vulnerability in Google Android 10.0/11.0/9.0
In onWnmFrameReceived of PasspointManager.java, there is a missing permission check.
local
low complexity
google CWE-862
5.5
2020-10-14 CVE-2020-0246 Missing Authorization vulnerability in Google Android 10.0/11.0
In getCarrierPrivilegeStatus of UiccAccessRule.java, there is a missing permission check.
local
low complexity
google CWE-862
5.5
2020-10-13 CVE-2020-15251 Missing Authorization vulnerability in Mirahezebots Channelmgnt 1.0.0/1.0.1/1.0.2
In the Channelmgnt plug-in for Sopel (a Python IRC bot) before version 1.0.3, malicious users are able to op/voice and take over a channel.
network
low complexity
mirahezebots CWE-862
6.5
2020-10-09 CVE-2020-13626 Missing Authorization vulnerability in Oneplus APP Locker 20201006
OnePlus App Locker through 2020-10-06 allows physically proximate attackers to use Google Assistant to bypass an authorization check in order to send an SMS message when the SMS application is locked.
low complexity
oneplus CWE-862
4.6
2020-10-06 CVE-2020-26598 Missing Authorization vulnerability in Google Android 8.0/8.1/9.0
An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, and 9.0 software.
network
low complexity
google CWE-862
7.5
2020-09-30 CVE-2020-25781 Missing Authorization vulnerability in Mantisbt
An issue was discovered in file_download.php in MantisBT before 2.24.3.
network
low complexity
mantisbt CWE-862
4.3
2020-09-30 CVE-2020-13794 Missing Authorization vulnerability in Linuxfoundation Harbor
Harbor 1.9.* 1.10.* and 2.0.* allows Exposure of Sensitive Information to an Unauthorized Actor.
network
low complexity
linuxfoundation CWE-862
4.3
2020-09-30 CVE-2020-13319 Missing Authorization vulnerability in Gitlab
An issue has been discovered in GitLab affecting versions prior to 13.1.2, 13.0.8 and 12.10.13.
network
low complexity
gitlab CWE-862
4.3
2020-09-30 CVE-2020-13296 Missing Authorization vulnerability in Gitlab
An issue has been discovered in GitLab affecting versions >=10.7 <13.0.14, >=13.1.0 <13.1.8, >=13.2.0 <13.2.6.
network
low complexity
gitlab CWE-862
8.8