Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2020-06-23 CVE-2020-5345 Missing Authorization vulnerability in Dell products
Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an authorization bypass vulnerability.
network
low complexity
dell CWE-862
5.4
2020-06-23 CVE-2020-14971 Missing Authorization vulnerability in Pi-Hole
Pi-hole through 5.0 allows code injection in piholedhcp (the Static DHCP Leases section) by modifying Teleporter backup files and then restoring them.
local
low complexity
pi-hole CWE-862
7.8
2020-06-22 CVE-2020-14944 Missing Authorization vulnerability in Globalradar BSA Radar 1.6.7234.24750
Global RADAR BSA Radar 1.6.7234.24750 and earlier lacks valid authorization controls in multiple functions.
network
low complexity
globalradar CWE-862
critical
9.8
2020-06-22 CVE-2020-14969 Missing Authorization vulnerability in Misp 2.4.127
app/Model/Attribute.php in MISP 2.4.127 lacks an ACL lookup on attribute correlations.
network
low complexity
misp CWE-862
7.5
2020-06-19 CVE-2020-13276 Missing Authorization vulnerability in Gitlab
User is allowed to set an email as a notification email even without verifying the new email in all previous GitLab CE/EE versions through 13.0.1
network
low complexity
gitlab CWE-862
4.3
2020-06-19 CVE-2019-20887 Missing Authorization vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.7.1, 5.6.4, 5.5.3, and 4.10.6.
network
low complexity
mattermost CWE-862
4.3
2020-06-19 CVE-2019-20885 Missing Authorization vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.8.0.
network
low complexity
mattermost CWE-862
7.5
2020-06-19 CVE-2018-21257 Missing Authorization vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.1.
network
low complexity
mattermost CWE-862
5.3
2020-06-19 CVE-2018-21251 Missing Authorization vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.2 and 5.1.1.
network
low complexity
mattermost CWE-862
critical
9.8
2020-06-18 CVE-2020-3245 Missing Authorization vulnerability in Cisco Smart Software Manager On-Prem
A vulnerability in the web application of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to create arbitrary user accounts.
network
low complexity
cisco CWE-862
5.3