Vulnerabilities > Missing Authorization
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-10-08 | CVE-2019-0367 | Missing Authorization vulnerability in SAP Netweaver Process Integration 1.0/2.0 SAP NetWeaver Process Integration (B2B Toolkit), before versions 1.0 and 2.0, does not perform necessary authorization checks for an authenticated user, allowing the import of B2B table content that leads to Missing Authorization Check. | 4.3 |
2019-10-01 | CVE-2019-17055 | Missing Authorization vulnerability in multiple products base_sock_create in drivers/isdn/mISDN/socket.c in the AF_ISDN network module in the Linux kernel through 5.3.2 does not enforce CAP_NET_RAW, which means that unprivileged users can create a raw socket, aka CID-b91ee4aa2a21. | 3.3 |
2019-09-27 | CVE-2019-9380 | Missing Authorization vulnerability in Google Android 10.0 In the settings UI, there is a possible spoofing vulnerability due to a missing permission check. | 6.5 |
2019-09-27 | CVE-2019-9377 | Missing Authorization vulnerability in Google Android 10.0 In FingerprintService, there is a possible bypass for operating system protections that isolate user profiles from each other due to a missing permission check. | 3.3 |
2019-09-27 | CVE-2019-9351 | Missing Authorization vulnerability in Google Android 10.0 In SyncStatusObserver, there is a possible bypass for operating system protections that isolate user profiles from each other due to a missing permission check. | 3.3 |
2019-09-27 | CVE-2019-9323 | Missing Authorization vulnerability in Google Android 10.0 In the Wallpaper Manager service, there is a possible information disclosure due to a missing permission check. | 5.3 |
2019-09-27 | CVE-2019-9295 | Missing Authorization vulnerability in Google Android 10.0 In com.android.apps.tag, there is a possible bypass of user interaction requirements due to a missing permission check. | 7.8 |
2019-09-27 | CVE-2019-9263 | Missing Authorization vulnerability in Google Android 10.0 In telephony, there is a possible bypass of user interaction requirements due to missing permission checks. | 7.8 |
2019-09-26 | CVE-2019-16738 | Missing Authorization vulnerability in multiple products In MediaWiki through 1.33.0, Special:Redirect allows information disclosure of suppressed usernames via a User ID Lookup. | 5.3 |
2019-09-25 | CVE-2019-10409 | Missing Authorization vulnerability in Jenkins Project Inheritance A missing permission check in Jenkins Project Inheritance Plugin 2.0.0 and earlier allowed attackers with Overall/Read permission to trigger project generation from templates. | 4.3 |