CWE-284

Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

5,303 vulnerabilities with CWE-284
CVE-2023-49545 HIGH
Customer Support System v1 - Unauthenticated Directory Listing
CVSS 7.5
CVE-2023-49543 CRITICAL
Book Store Management System v1 - Unauthenticated Improper Access Control
CVSS 9.8
CVE-2023-51774 HIGH
json-jwt 1.16.0-1.16.5 - Identity Check Bypass via Sign/Encryption Confusion
CVSS 8.4
CVE-2023-49931 CRITICAL
Couchbase Server 5.0.0-7.2.3 - Improper Access Control via /diag/eval cURL Calls
CVSS 9.8
CVE-2023-49930 CRITICAL
Couchbase Server 7.1.5-7.2.3 - Improper Access Control via /diag/eval cURL Calls
CVSS 9.8
CVE-2023-42945 MEDIUM
macOS Sonoma <14.1 - Privilege Escalation
CVSS 5.5
CVE-2023-42859 MEDIUM
macOS 12.0-12.7.0 - Unprotected File System Modification
CVSS 5.5
CVE-2023-42853 MEDIUM
macOS < 12.7.1 - Unprotected User Data Exposure via Logic Issue
CVSS 5.5
CVE-2023-42838 HIGH
macOS 12.0-12.7.1 - Improper Access Control
CVSS 8.6
CVE-2023-47422 HIGH
Tenda TX9 AX3 AX9 AX12 Firmware - Unauthenticated Authentication Bypass via Crafted URL
CVSS 8.8
CVE-2023-6259 HIGH
Brivo ACS100-ACS300 <6.2.4.3 - Privilege Escalation
CVSS 7.1
CVE-2023-50257 CRITICAL
eProsima Fast DDS < 2.6.7 - Unauthenticated Denial of Service via RTPS Disconnect Packet Spoofing
CVSS 9.6
CVE-2023-52375 HIGH
Huawei EMUI and HarmonyOS - Denial of Service via WindowManagerServices Permission Control
CVSS 7.5
CVE-2023-52367 HIGH
Huawei EMUI and HarmonyOS - Improper Access Control in Media Library Module
CVSS 7.7
CVE-2023-39244 HIGH
DELL ESI for SAP LAMA < 10.0.0.0 - Unauthenticated Information Disclosure in EHAC Component
CVSS 7.3
CVE-2023-40161 MEDIUM
Intel Unite < 4.2.35041 - Authenticated Privilege Escalation via Local Access
CVSS 6.6
CVE-2023-39941 HIGH
Intel System Usage Report for Gameplay < 2.4.10587 - Unauthenticated Denial of Service via Adjacent Access
CVSS 7.1
CVE-2023-39432 MEDIUM
Intel Ethernet Adapter Complete Driver < 28.2 - Authenticated Privilege Escalation via Local Access
CVSS 6.7
CVE-2023-39425 HIGH
Intel Driver & Support Assistant < 23.4.33 - Authenticated Privilege Escalation via Local Access
CVSS 8.8
CVE-2023-38561 MEDIUM
Intel(R) XTU <7.12.0.29 - Privilege Escalation
CVSS 5.5
CVE-2023-35121 HIGH
Intel oneAPI DPC++/C++ Compiler < 2022.2.1 - Authenticated Privilege Escalation via Local Access
CVSS 7.8
CVE-2023-35062 MEDIUM
Intel Driver & Support Assistant < 23.4.33 - Privilege Escalation via Local Access
CVSS 6.3
CVE-2023-33875 HIGH
Intel PROSet/Wireless <22.240 - DoS
CVSS 7.1
CVE-2023-32647 MEDIUM
Intel Extreme Tuning Utility < 7.12.0.29 - Authenticated Privilege Escalation via Local Access
CVSS 6.8
CVE-2023-31271 MEDIUM
Intel(R) VROC <8.0.8.1001 - Privilege Escalation
CVSS 6.7
Details
Vulnerabilities 5,303