CWE-284

Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

5,300 vulnerabilities with CWE-284
CVE-2025-30438 MEDIUM
iPadOS < 18.4 - Improper Access Control
CVSS 5.5
CVE-2025-30433 CRITICAL
iPadOS < 17.7.6 - Improper Access Control
CVSS 9.8
CVE-2025-30425 MEDIUM
Safari < 18.4 - User Tracking in Private Browsing Mode via State Management
CVSS 4.3
CVE-2025-24272 MEDIUM
macOS < 13.7.5, < 14.7.5, < 15.4 - Unprotected File System Modification via Improper Access Control
CVSS 6.8
CVE-2025-24248 MEDIUM
macOS < 15.4 - Unprotected User Device Enumeration via Apple Account
CVSS 5.0
CVE-2025-24241 CRITICAL
macOS < 13.7.5, 14.7.5, 15.4 - Unprotected User Data Exposure via Pasteboard
CVSS 9.8
CVE-2025-24236 MEDIUM
macOS < 14.7.5 and < 15.4 - Unprotected User Data Exposure via Sandbox Restriction Bypass
CVSS 5.5
CVE-2025-24229 HIGH
macOS < 13.7.5, 14.7.5, 15.4 - Unprotected User Data Exposure via Sandbox Bypass
CVSS 7.4
CVE-2025-24218 MEDIUM
macOS < 15.4 - Unprotected User Contact Data Exposure via Log Entry
CVSS 5.5
CVE-2025-24215 MEDIUM
iPadOS < 17.7.6 and macOS < 13.7.5, < 14.7.5, < 15.4 - Unauthorized Private Information Access
CVSS 5.5
CVE-2025-24214 MEDIUM
iPadOS < 18.4 - Unprotected User Data Exposure via Text Field Logging
CVSS 5.5
CVE-2025-24205 MEDIUM
iPadOS < 17.7.6 - Improper Access Control
CVSS 5.5
CVE-2025-24202 MEDIUM
iPadOS < 18.4 - Unprotected User Data Exposure via Logging Issue
CVSS 5.5
CVE-2025-24198 MEDIUM
iPadOS < 17.7.6 - Unauthenticated Sensitive Data Exposure via Siri on Locked Device
CVSS 6.6
CVE-2025-24193 LOW
iPadOS < 18.4 - Unauthenticated Programmatic Photo Access via USB-C
CVSS 2.4
CVE-2025-24173 HIGH
iPadOS < 17.7.6 - Improper Access Control via Entitlement Check Bypass
CVSS 7.8
CVE-2025-31125 MEDIUM KEV
Vite Development Server - Path Traversal
CVSS 5.3
CVE-2025-22940 CRITICAL
Adtran 411 ONT L80.00.0011.M2 - Unauthenticated Admin Password Change
CVSS 9.1
CVE-2025-2996 MEDIUM
Tenda FH1202 1.2.0.14(408) - Info Disclosure
CVSS 5.3
CVE-2025-2995 MEDIUM
Tenda FH1202 1.2.0.14(408) - Info Disclosure
CVSS 5.3
CVE-2025-2994 MEDIUM
Tenda FH1202 1.2.0.14(408) - Info Disclosure
CVSS 5.3
CVE-2025-2993 MEDIUM
Tenda FH1202 1.2.0.14(408) - Info Disclosure
CVSS 5.3
CVE-2025-2992 MEDIUM
Tenda FH1202 1.2.0.14(408 - Improper Access Controls
CVSS 5.3
CVE-2025-2991 MEDIUM
Tenda FH1202 1.2.0.14(408) - Info Disclosure
CVSS 5.3
CVE-2025-2990 MEDIUM
Tenda FH1202 1.2.0.14(408) - Info Disclosure
CVSS 5.3
Details
Vulnerabilities 5,300