Filtered by CWE-862
Total 3284 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-38443 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-11 7.8 High
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
CVE-2023-38444 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-11 7.8 High
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
CVE-2023-38449 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-11 7.8 High
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
CVE-2023-38450 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-11 7.8 High
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
CVE-2023-38451 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-11 7.8 High
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
CVE-2023-38452 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-11 7.8 High
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
CVE-2023-38453 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-11 7.8 High
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
CVE-2024-25929 1 Multivendorx 1 Product Catalog Mode For Woocommerce 2024-10-11 6.5 Medium
Missing Authorization vulnerability in MultiVendorX Product Catalog Enquiry for WooCommerce by MultiVendorX.This issue affects Product Catalog Enquiry for WooCommerce by MultiVendorX: from n/a through 5.0.5.
CVE-2023-3426 1 Liferay 2 Digital Experience Platform, Liferay Portal 2024-10-11 4.3 Medium
The organization selector in Liferay Portal 7.4.3.81 through 7.4.3.85, and Liferay DXP 7.4 update 81 through 85 does not check user permission, which allows remote authenticated users to obtain a list of all organizations.
CVE-2024-25092 1 Xlplugins 1 Nextmove 2024-10-11 8.8 High
Missing Authorization vulnerability in XLPlugins NextMove Lite.This issue affects NextMove Lite: from n/a through 2.17.0.
CVE-2024-24716 1 Getawesomesupport 1 Awesome Support 2024-10-11 5.4 Medium
Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a through 6.1.6.
CVE-2023-34003 1 Woocommerce 1 Box Office 2024-10-11 6.5 Medium
Missing Authorization vulnerability in Woo WooCommerce Box Office.This issue affects WooCommerce Box Office: from n/a through 1.1.51.
CVE-2023-31080 1 Unlimited-elements 1 Unlimited Elements For Elementor 2024-10-11 8.3 High
Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates).This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): from n/a through 1.5.65.
CVE-2024-30464 1 Wpzoom 1 Social Icons Widget 2024-10-10 5.4 Medium
Missing Authorization vulnerability in WPZOOM Social Icons Widget & Block by WPZOOM.This issue affects Social Icons Widget & Block by WPZOOM: from n/a through 4.2.15.
CVE-2023-4124 1 Answer 1 Answer 2024-10-10 6.5 Medium
Missing Authorization in GitHub repository answerdev/answer prior to v1.1.1.
CVE-2024-30465 1 Pagelayer 1 Pagelayer 2024-10-10 6.5 Medium
Missing Authorization vulnerability in Pagelayer Team PageLayer.This issue affects PageLayer: from n/a through 1.8.1.
CVE-2023-37860 1 Phoenixcontact 12 Wp 6070-wvps, Wp 6070-wvps Firmware, Wp 6101-wxps and 9 more 2024-10-10 7.5 High
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote unauthenticated attacker can obtain the r/w community string of the SNMPv2 daemon.
CVE-2023-37862 1 Phoenixcontact 12 Wp 6070-wvps, Wp 6070-wvps Firmware, Wp 6101-wxps and 9 more 2024-10-10 8.2 High
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an unauthenticated remote attacker can access upload-functions of the HTTP API. This might cause certificate errors for SSL-connections and might result in a partial denial-of-service.
CVE-2021-25093 1 Ylefebvre 1 Link Library 2024-10-10 7.5 High
The Link Library WordPress plugin before 7.2.8 does not have authorisation in place when deleting links, allowing unauthenticated users to delete arbitrary links via a crafted request
CVE-2023-33917 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-10 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges