Falhas do tipo CWE-863

2.092 resultados
CVE-2020-25655MEDIUMAn issue was discovered in ManagedClusterView API, that could allow secrets to be disclosed to users without the correct permissions. Views EPSS 0.6%CVE-2023-3033MEDIUMMobatime web application - broken authorisation mechanismsEPSS 0.6%CVE-2024-48784CRITICALAn Incorrect Access Control issue in SAMPMAX com.sampmax.homemax 2.1.2.7 allows a remote attacker to obtain sensitive information via the fiEPSS 0.6%CVE-2023-48218MEDIUMStrapi Protected Populate Plugin leaking fields if the request fields where empty or only fields selected where not populatableEPSS 0.6%CVE-2026-35653HIGHOpenClaw < 2026.3.24 - Incorrect Authorization in POST /reset-profile via browser.requestEPSS 0.6%CVE-2024-9159MEDIUMIncorrect Authorization in gaizhenbiao/chuanhuchatgptEPSS 0.6%CVE-2026-42096HIGHBroken Access Control in Sparx Pro Cloud ServerEPSS 0.6%CVE-2022-41970LOWNextcloud Server's disabled download shares still allow download through preview imagesEPSS 0.6%CVE-2023-24999MEDIUMVault Fails to Verify if the AppRole SecretID Belongs to Role During a Destroy OperationEPSS 0.6%CVE-2023-32220HIGHMilesight NCR/Camera Authentication BypassEPSS 0.6%CVE-2020-7300MEDIUMDLP ePO extension - Improper AuthorizationEPSS 0.6%CVE-2024-7096MEDIUMPrivilege Escalation in Multiple WSO2 Products via SOAP Admin Service Due to Business Logic FlawEPSS 0.6%CVE-2025-0237MEDIUMWebChannel APIs susceptible to confused deputy attackEPSS 0.6%CVE-2024-8970HIGHIncorrect Authorization in GitLabEPSS 0.6%CVE-2024-27105HIGHFrappe File Permissions can by bypassed using certain endpointsEPSS 0.6%CVE-2023-34218CRITICALIn JetBrains TeamCity before 2023.05 bypass of permission checks allowing to perform admin actions was possibleEPSS 0.6%CVE-2023-38493HIGHPaths contain matrix variables bypass decoratorsEPSS 0.6%CVE-2023-3066HIGHMobatime mobile application - Broken authorisationEPSS 0.6%CVE-2024-23329LOWchangedetection.io API endpoint is not secured with API tokenEPSS 0.6%CVE-2024-22412LOWClickHouse's Role-based Access Control is bypassed when query caching is enabled.EPSS 0.6%