The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.
1,331 vulnerabilities with CWE-285
CVE-2015-1000007
HIGH
wptf-image-gallery <v1.03 - Info Disclosure
CVSS 7.5
CVE-2014-6049
LOW
phpmyfaq < 2.8.13 - Authenticated Authorization Bypass via Instance ID Parameter
CVSS 2.7
CVE-2014-9950
HIGH
Android - Improper Authorization in Core Kernel
CVSS 7.8
CVE-2014-9945
HIGH
Android TrustZone - Improper Authorization
CVSS 7.8
CVE-2014-2349
Emerson DeltaV 10.3.1 11.3 11.3.1 12.3 - Unauthenticated Hardcoded Credential Bypass via TCP Session
CVE-2013-7245
HIGH
SAP Sybase ASE 15.7 - Unauthenticated Database Dump via Backup Server
CVSS 7.5
Details
Vulnerabilities
1,331
Exploit Likelihood
High