Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2024-04-17 CVE-2023-52642 Missing Authorization vulnerability in multiple products
In the Linux kernel, the following vulnerability has been resolved: media: rc: bpf attach/detach requires write permission Note that bpf attach/detach also requires CAP_NET_ADMIN.
local
low complexity
linux debian CWE-862
7.8
2024-04-10 CVE-2024-31997 Missing Authorization vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-862
8.8
2024-04-10 CVE-2024-31987 Missing Authorization vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-862
8.8
2024-04-10 CVE-2024-31981 Missing Authorization vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-862
8.8
2024-04-10 CVE-2024-31983 Missing Authorization vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-862
8.8
2024-04-10 CVE-2024-31297 Missing Authorization vulnerability in Wpexperts Wholesale for Woocommerce
Missing Authorization vulnerability in WPExperts Wholesale For WooCommerce.This issue affects Wholesale For WooCommerce: from n/a through 2.3.0.
network
low complexity
wpexperts CWE-862
5.3
2024-04-10 CVE-2024-1042 Missing Authorization vulnerability in Wpmilitary WP Radio
The WP Radio – Worldwide Online Radio Stations Directory for WordPress plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on multiple AJAX functions in all versions up to, and including, 3.1.9.
network
low complexity
wpmilitary CWE-862
5.4
2024-04-09 CVE-2024-1352 Missing Authorization vulnerability in Radiustheme Classified Listing
The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to unauthorized access & modification of data due to a missing capability check on the rtcl_import_location() rtcl_import_category() functions in all versions up to, and including, 3.0.4.
network
low complexity
radiustheme CWE-862
5.3
2024-04-09 CVE-2024-3097 Missing Authorization vulnerability in Imagely Nextgen Gallery
The WordPress Gallery Plugin – NextGEN Gallery plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_item function in versions up to, and including, 3.59.
network
low complexity
imagely CWE-862
5.3
2024-04-09 CVE-2024-3213 Missing Authorization vulnerability in Relevanssi
The Relevanssi – A Better Search plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the relevanssi_update_counts() function in all versions up to, and including, 4.22.1.
network
low complexity
relevanssi CWE-862
8.2