CWE-284

Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

5,303 vulnerabilities with CWE-284
CVE-2023-45217 HIGH
Intel Power Gadget < 3.6.0 - Authenticated Privilege Escalation via Local Access
CVSS 8.8
CVE-2023-43748 HIGH
Intel(R) GPA Framework <2023.3 - Privilege Escalation
CVSS 7.8
CVE-2023-43487 MEDIUM
Intel(R) CST < 2.1.10300 - Authenticated Denial of Service via Local Access
CVSS 4.7
CVE-2023-40071 HIGH
Intel Graphics Performance Analyzers < 2023.3 - Authenticated Privilege Escalation via Local Access
CVSS 7.3
CVE-2023-40070 HIGH
Intel Power Gadget for macOS - Authenticated Privilege Escalation via Local Access
CVSS 8.8
CVE-2023-39433 MEDIUM
Intel(R) CST <2.1.10300 - Privilege Escalation
CVSS 4.4
CVE-2023-6810 MEDIUM
ClickCease Click Fraud Protection <3.2.4 - Info Disclosure
CVSS 4.3
CVE-2023-49473 CRITICAL
Shenzhen JF6000 - Incorrect Access Control
CVSS 9.8
CVE-2023-38298 HIGH
TCL 30Z A3X 20XE 10L - Unauthenticated IMEI Leak via System Property
CVSS 8.8
CVE-2023-38297 HIGH
Android App - Local Privilege Escalation
CVSS 8.4
CVE-2023-38296 HIGH
TCL 30Z and A3X - Unauthenticated ICCID Exposure via System Property
CVSS 8.0
CVE-2023-45744 HIGH
Peplink Smart Reader Firmware 1.2.0 - Unauthenticated Configuration Modification via /cgi-bin/upload_config.cgi
CVSS 8.3
CVE-2023-45209 MEDIUM
Peplink Smart Reader Firmware 1.2.0 - Unauthenticated Information Disclosure via /cgi-bin/download_config.cgi
CVSS 5.3
CVE-2023-43491 MEDIUM
Peplink Smart Reader <1.2.0 - Info Disclosure
CVSS 5.3
CVE-2023-52537 HIGH
Huawei EMUI and HarmonyOS - Improper Access Control in HwIms Module
CVSS 7.5
CVE-2023-36644 HIGH
ITB-GmbH TradePro <9.5 - Info Disclosure
CVSS 7.5
CVE-2023-36643 HIGH
ITB-GmbH TradePro <9.5 - Info Disclosure
CVSS 7.5
CVE-2023-50702 HIGH
Sikka SSCWindowsService 5 - Privilege Escalation
CVSS 8.8
CVE-2023-49978 HIGH
Customer Support System v1 - Improper Access Control
CVSS 8.8
CVE-2023-6785 MEDIUM
Download Manager <= 3.2.84 - Unauthenticated Arbitrary File Download
CVSS 5.3
CVE-2023-36554 HIGH
Fortinet FortiManager <7.4.0 - Privilege Escalation
CVSS 8.1
CVE-2023-51786 CRITICAL
Lustre <2.15.4 - Privilege Escalation
CVSS 9.1
CVE-2023-43318 HIGH
TP-Link JetStream Smart Switch TL-SG2210P 5.0 - Privilege Escalation
CVSS 8.8
CVE-2023-38946 HIGH
Multilaser RE160 Firmware v5.07.51_pt_MTL01 and v5.07.52_pt_MTL01 - Improper Access Control via Crafted Cookie
CVSS 8.8
CVE-2023-38945 CRITICAL
Multilaser RE160 <5.07.52 - Auth Bypass
CVSS 9.8
Details
Vulnerabilities 5,303