Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2023-08-09 CVE-2023-37862 Missing Authorization vulnerability in Phoenixcontact products
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an unauthenticated remote attacker can access upload-functions of the HTTP API.
network
low complexity
phoenixcontact CWE-862
8.2
2023-08-08 CVE-2023-37492 Missing Authorization vulnerability in SAP Netweaver Application Server Abap
SAP NetWeaver Application Server ABAP and ABAP Platform - versions SAP_BASIS 700, SAP_BASIS 701, SAP_BASIS 702, SAP_BASIS 731, SAP_BASIS 740, SAP_BASIS 750, SAP_BASIS 752, SAP_BASIS 753, SAP_BASIS 754, SAP_BASIS 755, SAP_BASIS 756, SAP_BASIS 757, SAP_BASIS 758, SAP_BASIS 793, SAP_BASIS 804, does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.
network
low complexity
sap CWE-862
6.5
2023-08-07 CVE-2023-33906 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33907 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In Contacts Service, there is a possible missing permission check.
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33908 Missing Authorization vulnerability in Google Android 11.0/12.0
In ims service, there is a possible missing permission check.
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33909 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In Contacts service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33910 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33911 Missing Authorization vulnerability in Google Android 10.0/11.0/9.0
In vowifi service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33912 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In Contacts service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
local
low complexity
google CWE-862
5.5
2023-08-04 CVE-2023-38494 Missing Authorization vulnerability in Metersphere
MeterSphere is an open-source continuous testing platform.
network
low complexity
metersphere CWE-862
7.5