Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2023-08-11 CVE-2023-4106 Missing Authorization vulnerability in Mattermost
Mattermost fails to check if the requesting user is a guest before performing different actions to public playbooks, resulting a guest being able to view, join, edit, export and archive public playbooks.
network
low complexity
mattermost CWE-862
6.5
2023-08-10 CVE-2023-40216 Missing Authorization vulnerability in Openbsd 7.3
OpenBSD 7.3 before errata 014 is missing an argument-count bounds check in console terminal emulation.
local
low complexity
openbsd CWE-862
5.5
2023-08-10 CVE-2023-4282 Missing Authorization vulnerability in Wpdeveloper Embedpress
The EmbedPress plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'admin_post_remove' and 'remove_private_data' functions in versions up to, and including, 3.8.2.
network
low complexity
wpdeveloper CWE-862
4.3
2023-08-08 CVE-2023-37492 Missing Authorization vulnerability in SAP Netweaver Application Server Abap
SAP NetWeaver Application Server ABAP and ABAP Platform - versions SAP_BASIS 700, SAP_BASIS 701, SAP_BASIS 702, SAP_BASIS 731, SAP_BASIS 740, SAP_BASIS 750, SAP_BASIS 752, SAP_BASIS 753, SAP_BASIS 754, SAP_BASIS 755, SAP_BASIS 756, SAP_BASIS 757, SAP_BASIS 758, SAP_BASIS 793, SAP_BASIS 804, does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.
network
low complexity
sap CWE-862
6.5
2023-08-07 CVE-2023-33906 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33907 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In Contacts Service, there is a possible missing permission check.
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33908 Missing Authorization vulnerability in Google Android 11.0/12.0
In ims service, there is a possible missing permission check.
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33909 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In Contacts service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33910 Missing Authorization vulnerability in Google Android 11.0/12.0/13.0
In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
local
low complexity
google CWE-862
5.5
2023-08-07 CVE-2023-33911 Missing Authorization vulnerability in Google Android 10.0/11.0/9.0
In vowifi service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
local
low complexity
google CWE-862
5.5