Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2019-11-14 CVE-2019-15386 Missing Authorization vulnerability in Lavamobiles Z60S Firmware
The Lava Z60s Android device with a build fingerprint of LAVA/Z60s/Z60s:8.1.0/O11019/1530331229:user/release-keys contains a pre-installed app with a package name of com.mediatek.wfo.impl app (versionCode=27, versionName=8.1.0) that allows any app co-located on the device to modify a system property through an exported interface without proper authorization.
local
low complexity
lavamobiles CWE-862
5.5
2019-11-13 CVE-2019-0386 Missing Authorization vulnerability in SAP ERP Sales and S4Hana Sales
Order processing in SAP ERP Sales (corrected in SAP_APPL 6.0, 6.02, 6.03, 6.04, 6.05, 6.06, 6.16, 6.17, 6.18) and S4HANA Sales (corrected in S4CORE 1.0, 1.01, 1.02, 1.03, 1.04) does not execute the required authorization checks for an authenticated user, which can result in an escalation of privileges.
network
low complexity
sap CWE-862
6.3
2019-11-08 CVE-2019-15005 Missing Authorization vulnerability in Atlassian products
The Atlassian Troubleshooting and Support Tools plugin prior to version 1.17.2 allows an unprivileged user to initiate periodic log scans and send the results to a user-specified email address due to a missing authorization check.
network
low complexity
atlassian CWE-862
4.3
2019-11-06 CVE-2019-6121 Missing Authorization vulnerability in Nicehash Miner
An issue was discovered in NiceHash Miner before 2.0.3.0.
network
high complexity
nicehash CWE-862
3.7
2019-11-06 CVE-2019-18674 Missing Authorization vulnerability in Joomla Joomla!
An issue was discovered in Joomla! before 3.9.13.
network
low complexity
joomla CWE-862
5.3
2019-11-01 CVE-2019-16909 Missing Authorization vulnerability in Infosysta In-App & Desktop Notifications 1.6.13J8
An issue was discovered in the Infosysta "In-App & Desktop Notifications" app before 1.6.14_J8 for Jira.
network
low complexity
infosysta CWE-862
4.3
2019-10-31 CVE-2019-16907 Missing Authorization vulnerability in Infosysta In-App & Desktop Notifications 1.6.13J8
An issue was discovered in the Infosysta "In-App & Desktop Notifications" app 1.6.13_J8 for Jira.
network
low complexity
infosysta CWE-862
5.3
2019-10-31 CVE-2019-16906 Missing Authorization vulnerability in Infosysta In-App & Desktop Notifications 1.6.13J8
An issue was discovered in the Infosysta "In-App & Desktop Notifications" app 1.6.13_J8 for Jira.
network
low complexity
infosysta CWE-862
7.5
2019-10-31 CVE-2019-5095 Missing Authorization vulnerability in Tempo 4.10.0
An issue summary information disclosure vulnerability exists in Atlassian Jira Tempo plugin, version 4.10.0.
network
low complexity
tempo CWE-862
4.3
2019-10-23 CVE-2019-18383 Missing Authorization vulnerability in Terra-Master Fs-210 Firmware 4.0.19
An issue was discovered on TerraMaster FS-210 4.0.19 devices.
network
low complexity
terra-master CWE-862
7.5