Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2019-10-15 CVE-2019-12944 Missing Authorization vulnerability in Gluehome Glue Smart Lock Firmware 2.7.8
Glue Smart Lock 2.7.8 devices do not properly block guest access in certain situations where the network connection is unavailable.
network
low complexity
gluehome CWE-862
7.5
2019-10-08 CVE-2019-0367 Missing Authorization vulnerability in SAP Netweaver Process Integration 1.0/2.0
SAP NetWeaver Process Integration (B2B Toolkit), before versions 1.0 and 2.0, does not perform necessary authorization checks for an authenticated user, allowing the import of B2B table content that leads to Missing Authorization Check.
network
low complexity
sap CWE-862
4.0
2019-10-01 CVE-2019-17055 Missing Authorization vulnerability in multiple products
base_sock_create in drivers/isdn/mISDN/socket.c in the AF_ISDN network module in the Linux kernel through 5.3.2 does not enforce CAP_NET_RAW, which means that unprivileged users can create a raw socket, aka CID-b91ee4aa2a21.
3.3
2019-09-27 CVE-2019-9380 Missing Authorization vulnerability in Google Android 10.0
In the settings UI, there is a possible spoofing vulnerability due to a missing permission check.
network
google CWE-862
4.3
2019-09-27 CVE-2019-9377 Missing Authorization vulnerability in Google Android 10.0
In FingerprintService, there is a possible bypass for operating system protections that isolate user profiles from each other due to a missing permission check.
local
low complexity
google CWE-862
2.1
2019-09-27 CVE-2019-9351 Missing Authorization vulnerability in Google Android 10.0
In SyncStatusObserver, there is a possible bypass for operating system protections that isolate user profiles from each other due to a missing permission check.
local
low complexity
google CWE-862
2.1
2019-09-27 CVE-2019-9323 Missing Authorization vulnerability in Google Android 10.0
In the Wallpaper Manager service, there is a possible information disclosure due to a missing permission check.
network
low complexity
google CWE-862
5.0
2019-09-27 CVE-2019-9295 Missing Authorization vulnerability in Google Android 10.0
In com.android.apps.tag, there is a possible bypass of user interaction requirements due to a missing permission check.
local
low complexity
google CWE-862
4.6
2019-09-27 CVE-2019-9263 Missing Authorization vulnerability in Google Android 10.0
In telephony, there is a possible bypass of user interaction requirements due to missing permission checks.
local
low complexity
google CWE-862
4.6
2019-09-26 CVE-2019-16738 Missing Authorization vulnerability in multiple products
In MediaWiki through 1.33.0, Special:Redirect allows information disclosure of suppressed usernames via a User ID Lookup.
network
low complexity
mediawiki fedoraproject debian CWE-862
5.3