Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2023-12-07 CVE-2023-5713 Missing Authorization vulnerability in Bowo System Dashboard 2.8.7
The System Dashboard plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the sd_option_value() function hooked via an AJAX action in all versions up to, and including, 2.8.7.
network
low complexity
bowo CWE-862
4.3
2023-12-07 CVE-2023-5714 Missing Authorization vulnerability in Bowo System Dashboard 2.8.7
The System Dashboard plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the sd_db_specs() function hooked via an AJAX action in all versions up to, and including, 2.8.7.
network
low complexity
bowo CWE-862
4.3
2023-12-06 CVE-2023-46354 Missing Authorization vulnerability in Myprestamodules Orders (Csv, Excel) Export PRO
In the module "Orders (CSV, Excel) Export PRO" (ordersexport) < 5.2.0 from MyPrestaModules for PrestaShop, a guest can download personal information without restriction.
network
low complexity
myprestamodules CWE-862
7.5
2023-12-06 CVE-2023-44113 Missing Authorization vulnerability in Huawei Emui and Harmonyos
Vulnerability of missing permission verification for APIs in the Designed for Reliability (DFR) module.
network
low complexity
huawei CWE-862
7.5
2023-12-04 CVE-2023-40089 Missing Authorization vulnerability in Google Android 14.0
In getCredentialManagerPolicy of DevicePolicyManagerService.java, there is a possible method for users to select credential managers without permission due to a missing permission check.
local
low complexity
google CWE-862
7.8
2023-12-04 CVE-2023-40094 Missing Authorization vulnerability in Google Android
In keyguardGoingAway of ActivityTaskManagerService.java, there is a possible lock screen bypass due to a missing permission check.
local
low complexity
google CWE-862
7.8
2023-12-04 CVE-2023-32855 Missing Authorization vulnerability in multiple products
In aee, there is a possible escalation of privilege due to a missing permission check.
6.7
2023-12-04 CVE-2023-42671 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check.
local
low complexity
google CWE-862
5.5
2023-12-04 CVE-2023-42672 Missing Authorization vulnerability in Google Android 11.0/12.0
In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check.
local
low complexity
google CWE-862
5.5
2023-12-04 CVE-2023-42673 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check.
local
low complexity
google CWE-862
5.5