CWE-284

Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

5,306 vulnerabilities with CWE-284
CVE-2022-27635 HIGH
Intel Killer and PROSet/Wireless WiFi - Privilege Escalation via Improper Access Control
CVSS 8.2
CVE-2022-34453 HIGH
Dell XtremIO X2 Firmware < 6.4.1-11 - Authenticated Improper Access Control in QoS Policy Management
CVSS 7.6
CVE-2022-43702 HIGH
ARM Compiler 5.00-5.06 and ARM Compiler for Functional Safety 6.6-6.6.5 - Improper Access Control in Installer Directory
CVSS 7.8
CVE-2022-39946 HIGH
FortiNAC <= 9.4.2, <= 9.2.7, 9.1, 8.8, 8.7, 8.6, 8.5 - Authenticated Unauthorized JSP Calls via Crafted HTTP Requests
CVSS 7.6
CVE-2022-40529 HIGH
Qualcomm AQT1000 Firmware - Memory Corruption via Improper Access Control in Kernel Mapping
CVSS 7.1
CVE-2022-46279 MEDIUM
Intel(R) Retail Edge <3.0.301126-RELEASE - Info Disclosure
CVSS 5.0
CVE-2022-42465 HIGH
Intel One Boot Flash Update < 14.1.30 - Privilege Escalation via Kernel Mode Driver
CVSS 7.2
CVE-2022-41784 HIGH
Intel(R) OFU <14.1.30 - Privilege Escalation
CVSS 8.8
CVE-2022-41769 MEDIUM
Intel(R) Connect M <1.82 - Privilege Escalation
CVSS 4.8
CVE-2022-41690 HIGH
Intel(R) Retail Edge Mobile <3.4.7 - Privilege Escalation
CVSS 7.1
CVE-2022-41621 LOW
Intel(R) QAT <1.9.0 - Info Disclosure
CVSS 3.3
CVE-2022-40972 MEDIUM
Intel QAT <1.9.0 - Privilege Escalation
CVSS 6.7
CVE-2022-40207 HIGH
Intel System Usage Report < 2.4.8989 - Authenticated Privilege Escalation via Local Access
CVSS 8.2
CVE-2022-32582 MEDIUM
Intel NUC 11 Performance Kit Firmware < patgl357.0050 - Denial of Service via Improper Access Control
CVSS 5.3
CVE-2022-32578 MEDIUM
Intel NUC Pro Software Suite < 2.0.0.3 - Authenticated Privilege Escalation via Local Access
CVSS 6.7
CVE-2022-47542 HIGH
Red Gate SQL Monitor 11.0.14-12.1.46 - Remote Privilege Escalation via Improper Access Control
CVSS 8.8
CVE-2022-24972 MEDIUM
TP-Link TL-WR940N 3.20.1 Build 200316 Rel.34392n - Unauthenticated Sensitive Information Disclosure via httpd Service
CVSS 6.5
CVE-2022-2259 MEDIUM
Octopus Server 2019.1.0-2022.3.11098 - Improper Access Control in Workerpool View
CVSS 4.3
CVE-2022-40539 HIGH
Qualcomm Automotive Android OS - Memory Corruption via Improper Array Index Validation
CVSS 8.4
CVE-2022-4331 MEDIUM
GitLab EE <15.7.8-<15.9.2 - Privilege Escalation
CVSS 5.7
CVE-2022-23240 MEDIUM
Active IQ Unified Manager < 9.11P1 - Unauthenticated EMS Subscription Update
CVSS 6.5
CVE-2022-32902 MEDIUM
macOS 11.0-11.7 - Privacy Preferences Bypass via Logic Issue
CVSS 5.5
CVE-2022-38935 HIGH
NiterForum <2.5.0-beta - Privilege Escalation
CVSS 8.8
CVE-2022-46892 CRITICAL
Ampere Altra/A AltraMax <2.10c - Privilege Escalation
CVSS 9.8
CVE-2022-33243 HIGH
Qualcomm APQ8096AU and related firmware - Memory Corruption via Improper Access Control in IPC
CVSS 8.4
Details
Vulnerabilities 5,306