CWE-285— Improper Authorization
The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.— MITRE CWE catalog
1,587 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-285page 2 of 32
- CVE-2017-16743CRITICALCVSS 9.8EG 9.82018-01-12
An Improper Authorization issue was discovered in PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, and 48xxx Series products running firmware Version 1.0 to 1.32. A remote unauthenticated attacker may be able to craft special HTTP requests allowing a…
- CVE-2017-16773HIGHCVSS 6.5EG 8.82018-07-05
Improper authorization vulnerability in Highlight Preview in Synology Universal Search before 1.0.5-0135 allows remote authenticated users to bypass permission checks for directories in POSIX mode.
- CVE-2017-20238HIGHCVSS 7.1EG 7.12026-04-03
Hirschmann Industrial HiVision versions 06.0.00 and 07.0.00 prior to 06.0.06 and 07.0.01 contains an improper authorization vulnerability that allows read-only users to gain write access to managed devices by bypassing access control mecha…
- CVE-2017-2589HIGHCVSS 8.7EG 8.72018-07-26
It was discovered that the hawtio servlet 1.4 uses a single HttpClient instance to proxy requests with a persistent cookie store (cookies are stored locally and are not passed between the client and the end URL) which means all clients usi…
- CVE-2017-2632MEDIUMCVSS 4.9EG 4.92018-07-27
A logic error in valid_role() in CloudForms role validation before 5.7.1.3 could allow a tenant administrator to create groups with a higher privilege level than the tenant administrator should have. This would allow an attacker with tenan…
- CVE-2017-2686MEDIUMCVSS 6.5EG 6.52017-03-29
Siemens RUGGEDCOM ROX I (all versions) contain a vulnerability that could allow an authenticated user to read arbitrary files through the web interface at port 10000/TCP and access sensitive information.
- CVE-2017-2689HIGHCVSS 8.8EG 8.82017-03-29
Siemens RUGGEDCOM ROX I (all versions) allow an authenticated user to bypass access restrictions in the web interface at port 10000/TCP to obtain privileged file system access or change configuration settings.
- CVE-2017-6044CRITICALCVSS 9.8EG 9.82017-06-30
An Improper Authorization issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11. Several files and directories can be accessed without authentication, whi…
- CVE-2017-7484HIGHCVSS 7.5EG 7.52017-05-12
It was found that some selectivity estimation functions in PostgreSQL before 9.2.21, 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3 did not check user privileges before providing information from pg_st…
- CVE-2017-8252MEDIUMCVSS 5.5EG 5.52019-06-14
Kernel can inject faults in computations during the execution of TrustZone leading to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer…
- CVE-2017-8409HIGHCVSS 7.5EG 7.52019-07-02
An issue was discovered on D-Link DCS-1130 devices. The device requires that a user logging to the device to provide a username and password. However, the device does not enforce the same restriction on a specific URL thereby allowing any …
- CVE-2017-8777HIGHCVSS 7.2EG 7.22019-05-22
Open-Xchange GmbH OX Cloud Plugins 1.4.0 and earlier is affected by: Missing Authorization.
- CVE-2017-9268MEDIUMCVSS 4.4EG 6.52018-03-01
In the open build service before 201707022 the wipetrigger and rebuild actions checked the wrong project for permissions, allowing authenticated users to cause operations on projects where they did not have permissions leading to denial of…
- CVE-2017-9325HIGHCVSS 7.5EG 7.52019-07-03
The provided secure solrconfig.xml sample configuration does not enforce Sentry authorization on /update/json/docs.
- CVE-2018-0391MEDIUMCVSS 6.5EG 6.52018-08-01
A vulnerability in the password change function of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker to cause the system to become inoperable. The vulnerability is due to insufficient validation of a pass…
- CVE-2018-0393MEDIUMCVSS 6.5EG 6.52018-07-18
A Read-Only User Effect Change vulnerability in the Policy Builder interface of Cisco Policy Suite could allow an authenticated, remote attacker to make policy changes in the Policy Builder interface. The vulnerability is due to insufficie…
- CVE-2018-0459MEDIUMCVSS 6.5EG 6.52018-10-05
A vulnerability in the web-based management interface of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to cause an affected system to reboot or shut down. The vulnerability is due to ins…
- CVE-2018-0460MEDIUMCVSS 6.5EG 6.52018-10-05
A vulnerability in the REST API of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to read any file on an affected system. The vulnerability is due to insufficient authorization and parame…
- CVE-2018-1082HIGHCVSS 8.1EG 8.12018-04-04
A flaw was found in Moodle 3.4 to 3.4.1, and 3.3 to 3.3.4. If a user account using OAuth2 authentication method was once confirmed but later suspended, the user could still login to the site.
- CVE-2018-10861HIGHCVSS 8.1EG 8.12018-07-10
A flaw was found in the way ceph mon handles user requests. Any authenticated ceph user having read access to ceph can delete, create ceph storage pools and corrupt snapshot images. Ceph branches master, mimic, luminous and jewel are belie…
- CVE-2018-10906HIGHCVSS 5.3EG 7.82018-07-24
In fuse before versions 2.9.8 and 3.x before 3.2.5, fusermount is vulnerable to a restriction bypass when SELinux is active. This allows non-root users to mount a FUSE file system with the 'allow_other' mount option regardless of whether '…
- CVE-2018-1113MEDIUMCVSS 4.8EG 5.32018-07-03
setup before version 2.11.4-1.fc28 in Fedora and Red Hat Enterprise Linux added /sbin/nologin and /usr/sbin/nologin to /etc/shells. This violates security assumptions made by pam_shells and some daemons which allow access based on a user's…
- CVE-2018-1116MEDIUMCVSS 4.4EG 4.42018-07-10
A flaw was found in polkit before version 0.116. The implementation of the polkit_backend_interactive_authority_check_authorization function in polkitd allows to test for authentication and trigger authentication of unrelated processes own…
- CVE-2018-12466MEDIUMCVSS 4.4EG 6.52018-08-01
openSUSE openbuildservice before 9.2.4 allowed authenticated users to delete packages on specific projects with project links.
- CVE-2018-12467MEDIUMCVSS 6.0EG 6.52018-08-01
Authorized users of the openbuildservice before 2.9.4 could delete packages by using a malicious request against projects having the OBS:InitializeDevelPackage attribute, a similar issue to CVE-2018-7689.
- CVE-2018-13382CRITICALCVSS 9.1EG 9.1⚠ KEV2019-06-04
An Improper Authorization vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.8 and 5.4.1 to 5.4.10 and FortiProxy 2.0.0, 1.2.0 to 1.2.8, 1.1.0 to 1.1.6, 1.0.0 to 1.0.7 under SSL VPN web portal allows an unauthenticated attacker…
- CVE-2018-13908HIGHCVSS 7.8EG 7.82019-06-14
Truncated access authentication token leads to weakened access control for stored secure application data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IO…
- CVE-2018-14637MEDIUMCVSS 6.1EG 6.12018-11-30
The SAML broker consumer endpoint in Keycloak before version 4.6.0.Final ignores expiration conditions on SAML assertions. An attacker can exploit this vulnerability to perform a replay attack.
- CVE-2018-14662MEDIUMCVSS 5.7EG 5.72019-01-15
It was found Ceph versions before 13.2.4 that authenticated ceph users with read only permissions could steal dm-crypt encryption keys used in ceph disk encryption.
- CVE-2018-14666HIGHCVSS 6.8EG 7.22019-01-22
An improper authorization flaw was found in the Smart Class feature of Foreman. An attacker can use it to change configuration of any host registered in Red Hat Satellite, independent of the organization the host belongs to. This flaw affe…
- CVE-2018-14670CRITICALCVSS 9.8EG 9.82019-08-15
Incorrect configuration in deb package in ClickHouse before 1.1.54131 could lead to unauthorized use of the database.
- CVE-2018-15405MEDIUMCVSS 6.5EG 6.52018-10-05
A vulnerability in the web interface for specific feature sets of Cisco Integrated Management Controller (IMC) Supervisor and Cisco UCS Director could allow an authenticated, remote attacker to access sensitive information. The vulnerabili…
- CVE-2018-15465HIGHCVSS 8.1EG 8.12018-12-24
A vulnerability in the authorization subsystem of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, but unprivileged (levels 0 and 1), remote attacker to perform privileged actions by using the web management i…
- CVE-2018-16073MEDIUMCVSS 6.5EG 6.52019-06-27
Insufficient policy enforcement in site isolation in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass site isolation via a crafted HTML page.
- CVE-2018-16074MEDIUMCVSS 6.5EG 6.52019-06-27
Insufficient policy enforcement in site isolation in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass site isolation via a crafted HTML page.
- CVE-2018-16077MEDIUMCVSS 6.5EG 6.52019-06-27
Object lifecycle issue in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass content security policy via a crafted HTML page.
- CVE-2018-16086MEDIUMCVSS 5.4EG 5.42019-06-27
Insufficient policy enforcement in extensions API in Google Chrome prior to 69.0.3497.81 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted Chrome Extension.
- CVE-2018-17210HIGHCVSS 8.8EG 8.82019-07-20
An issue was discovered in PrinterOn Central Print Services (CPS) through 4.1.4. The core components that create and launch a print job do not perform complete verification of the session cookie that is supplied to them. As a result, an at…
- CVE-2018-17933HIGHCVSS 8.8EG 8.82018-10-30
VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662. Prior versions may also be affected) connected to the VGo XAMPP. User accounts may be able to execute commands that are outside the scope of their privileges and within the scope of an admin…
- CVE-2018-19569HIGHCVSS 8.8EG 8.82019-07-10
GitLab CE/EE, versions 8.8 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an authorization vulnerability that allows access to the web-UI as a user using a Personal Access Token of any scope.
- CVE-2018-19578MEDIUMCVSS 6.5EG 6.52019-07-10
GitLab EE, version 11.5 before 11.5.1, is vulnerable to an insecure object reference issue that permits a user with Reporter privileges to view the Jaeger Tracing Operations page.
- CVE-2018-19581HIGHCVSS 7.5EG 7.52019-07-10
GitLab EE, versions 8.3 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, is vulnerable to an insecure object reference vulnerability that allows a Guest user to set the weight of an issue they create.
- CVE-2018-20927LOWCVSS 3.8EG 3.82019-08-01
cPanel before 70.0.23 allows jailshell escape because of incorrect crontab parsing (SEC-382).
- CVE-2018-20945MEDIUMCVSS 5.7EG 5.72019-08-01
bin/csvprocess in cPanel before 68.0.27 allows insecure file operations (SEC-354).
- CVE-2018-3778MEDIUMCVSS 5.3EG 5.32018-08-08
Improper authorization in aedes version <0.35.0 will publish a LWT in a channel when a client is not authorized.
- CVE-2018-3829MEDIUMCVSS 5.3EG 5.32018-09-19
In Elastic Cloud Enterprise (ECE) versions prior to 1.1.4 it was discovered that a user could scale out allocators on new hosts with an invalid roles token. An attacker with access to the previous runner ID and IP address of the coordinato…
- CVE-2018-9867MEDIUMCVSS 5.5EG 5.52019-02-19
In SonicWall SonicOS, administrators without full permissions can download imported certificates. Occurs when administrators who are not in the SonicWall Administrators user group attempt to download imported certificates. This vulnerabili…
- CVE-2019-10154HIGHCVSS 7.5EG 7.52019-06-26
A flaw was found in Moodle before versions 3.7, 3.6.4. A web service fetching messages was not restricted to the current user's conversations.
- CVE-2019-10159MEDIUMCVSS 4.3EG 4.32019-06-14
cfme-gemset versions 5.10.4.3 and below, 5.9.9.3 and below are vulnerable to a data leak, due to an improper authorization in the migration log controller. An attacker with access to an unprivileged user can access all VM migration logs av…
- CVE-2019-10469MEDIUMCVSS 6.5EG 6.52019-10-23
A missing permission check in Jenkins ElasticBox Jenkins Kubernetes CI/CD Plugin allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method…
Map vulnerabilities like CWE-285 to your infrastructure
EchelonGraph correlates every CVE — across CWE-285 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →