CWE-284

Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

5,270 vulnerabilities with CWE-284
CVE-2025-43408 LOW
macOS < 14.8.2, < 15.7.2, < 26.1 - Unauthenticated User Data Exposure via Lock Screen
CVSS 2.4
CVE-2025-43407 HIGH
iPadOS < 26.1 - Improper Access Control via Sandbox Escape
CVSS 7.8
CVE-2025-43396 MEDIUM
macOS < 14.8.2, < 15.7.2, < 26.1 - Unprotected User Data Exposure via Sandbox Bypass
CVSS 5.5
CVE-2025-43335 MEDIUM
macOS < 14.8.2, < 15.7.2, < 26.1 - Unprotected User Data Exposure
CVSS 5.5
CVE-2025-43334 MEDIUM
macOS < 14.8.2, < 15.7.2, < 26.1 - Unprotected User Data Exposure via Improper Access Control
CVSS 5.5
CVE-2025-43322 MEDIUM
macOS < 14.8.2, < 15.7.2, < 26.1 - Unprotected User Data Exposure via Logic Issue
CVSS 5.5
CVE-2025-43309 LOW
iPadOS < 26.0 - Unauthenticated Notification Content Exposure from Lock Screen
CVSS 2.4
CVE-2025-12593 MEDIUM
Simple Online Hotel Reservation System 2.0 - Unrestricted Upload
CVSS 4.7
CVE-2025-63562 MEDIUM
Summerpearlgroup Vacation Rental Management Platform < 1.0.2 - Improper Access Control
CVSS 6.3
CVE-2025-29270 CRITICAL
Deep Sea Electronics DSE855 <1.1.26 - Privilege Escalation
CVSS 10.0
CVE-2025-48983 CRITICAL
Veeam Backup & Replication 12.0.0.1402-12.3.2.4165 - Authenticated Remote Code Execution via Mount Service
CVSS 9.9
CVE-2025-63423 HIGH
Italy Wireless Mini Router - Info Disclosure
CVSS 7.5
CVE-2025-63422 HIGH
Each Italy Wireless Mini Router - Privilege Escalation
CVSS 7.5
CVE-2025-61120 HIGH
AG Life Logger Android App <1.0.2.72 - Info Disclosure
CVSS 7.5
CVE-2025-61119 HIGH
Kanova Android App 1.0.27 - Info Disclosure
CVSS 7.5
CVE-2025-61114 HIGH
2nd Line Android App <v1.2.92 - Info Disclosure
CVSS 7.5
CVE-2025-61118 HIGH
mCarFix Motorists App <2.3 - Privilege Escalation
CVSS 7.5
CVE-2025-61117 HIGH
Senza: Keto & Fasting Android App <2.10.15 - Privilege Escalation
CVSS 7.5
CVE-2025-61116 HIGH
AdForest Classified Android App <4.0.12 - Info Disclosure
CVSS 7.5
CVE-2025-61115 HIGH
ABC Fine Wine & Spirits Android App <v.11.27.5 - Auth Bypass
CVSS 7.5
CVE-2025-61113 HIGH
TalkTalk 3.3.6 Android App - Info Disclosure
CVSS 7.5
CVE-2025-43027 CRITICAL
Genetec Security Center - Privilege Escalation
CVSS 9.8
CVE-2025-61234 HIGH
Dataphone A920 v2025.07.161103 - Info Disclosure
CVSS 7.5
CVE-2025-61156 HIGH
ThreatFire System Monitor <4.7.0.53 - Privilege Escalation
CVSS 7.8
CVE-2025-27093 MEDIUM
Sliver <1.5.43-1.6.0-dev - Command Injection
CVSS 6.3
Details
Vulnerabilities 5,270