Weaknesses of type CWE-284
4,356 resultsCVE-2022-20780CRITICALCisco Enterprise NFV Infrastructure Software VulnerabilitiesEPSS 10.9%CVE-2018-10630—For Crestron TSW-X60 version prior to 2.001.0037.001 and MC3 version prior to 1.502.0047.001, The devices are shipped with authentication diEPSS 10.9%CVE-2022-20777CRITICALCisco Enterprise NFV Infrastructure Software VulnerabilitiesEPSS 10.8%CVE-2023-28810MEDIUMSome access control/intercom products have unauthorized modification of device network configuration vulnerabilities. Attackers can modify dEPSS 10.4%CVE-2024-1675HIGHInsufficient policy enforcement in Download in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass filesystem restrictiEPSS 10.4%CVE-2018-7364HIGHAll versions up to ZXINOS-RESV1.01.43 of the ZTE ZXIN10 product European region are impacted by improper access control vulnerability. Due tEPSS 10.3%CVE-2022-20779CRITICALCisco Enterprise NFV Infrastructure Software VulnerabilitiesEPSS 10.2%CVE-2023-26347HIGHCVE-2023-38205 issues | ColdFusion Admin Panel AccessEPSS 10.1%CVE-2025-2546MEDIUMD-Link DIR-618/DIR-605L Firewall Service formAdvFirewall access controlEPSS 9.9%CVE-2021-24215—Controlled Admin Access < 1.5.2 - Improper Access Control & Privilege EscalationEPSS 9.7%CVE-2025-4270MEDIUMTOTOLINK A720R Config cstecgi.cgi information disclosureEPSS 9.7%CVE-2025-43563CRITICALColdFusion | Improper Access Control (CWE-284)EPSS 9.3%CVE-2022-1631MEDIUMUsers Account Pre-Takeover or Users Account Takeover. in microweber/microweberEPSS 8.8%CVE-2025-2993MEDIUMTenda FH1202 default.cfg access controlEPSS 8.5%CVE-2025-4902MEDIUMD-Link DI-7003GV2 versionupdate.data sub_48F4F0 information disclosureEPSS 8.5%CVE-2019-11634CRITICALCitrix Workspace App before 1904 for Windows has Incorrect Access Control.EPSS 8.1%KEVCVE-2017-12171MEDIUMA regression was found in the Red Hat Enterprise Linux 6.9 version of httpd 2.2.15-60, causing comments in the "Allow" and "Deny" configuratEPSS 8.1%CVE-2025-3663MEDIUMTOTOLINK A3700R Password cstecgi.cgi setWiFiEasyGuestCfg access controlEPSS 8.0%CVE-2022-36923MEDIUMZoho ManageEngine OpManager, OpManager Plus, OpManager MSP, Network Configuration Manager, NetFlow Analyzer, Firewall Analyzer, and OpUtils EPSS 7.9%CVE-2018-15640HIGHImproper access control in the Helpdesk App of Odoo Enterprise 10.0 through 12.0 allows remote authenticated attackers to obtain elevated prEPSS 7.9%