Filtered by CWE-862
Total 3285 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-38437 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
CVE-2023-38442 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
CVE-2023-38438 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
CVE-2023-38439 2 Google, Unisoc 8 Android, Sc9832e, Sc9863a and 5 more 2024-10-02 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
CVE-2023-38440 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
CVE-2023-38441 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
CVE-2023-38448 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
CVE-2023-38454 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 5.5 Medium
In vowifi service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges
CVE-2023-38456 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 7.8 High
In vowifiservice, there is a possible missing permission check.This could lead to local escalation of privilege with no additional execution privileges
CVE-2023-38457 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
CVE-2023-38462 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
CVE-2023-38463 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-02 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
CVE-2023-38465 2 Google, Unisoc 13 Android, S8000, Sc9832e and 10 more 2024-10-02 5.5 Medium
In ims service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges
CVE-2023-38466 2 Google, Unisoc 13 Android, S8000, Sc9832e and 10 more 2024-10-02 5.5 Medium
In ims service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges
CVE-2023-38461 2 Google, Unisoc 9 Android, Sc7731e, Sc9832e and 6 more 2024-10-01 5.5 Medium
In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges
CVE-2023-4105 1 Mattermost 1 Mattermost 2024-10-01 3.1 Low
Mattermost fails to delete the attachments when deleting a message in a thread allowing a simple user to still be able to access and download the attachment of a deleted message
CVE-2023-4106 1 Mattermost 1 Mattermost 2024-10-01 6.3 Medium
Mattermost fails to check if the requesting user is a guest before performing different actions to public playbooks, resulting a guest being able to view, join, edit, export and archive public playbooks.
CVE-2023-4302 1 Jenkins 1 Fortify 2024-10-01 4.2 Medium
A missing permission check in Jenkins Fortify Plugin 22.1.38 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.
CVE-2023-24674 1 Bludit 1 Bludit 2024-10-01 7.8 High
Permissions vulnerability found in Bludit CMS v.4.0.0 allows local attackers to escalate privileges via the role:admin parameter.
CVE-2023-5525 1 Limitloginattempts 1 Limit Login Attempts Reloaded 2024-10-01 4.3 Medium
The Limit Login Attempts Reloaded WordPress plugin before 2.25.26 is missing authorization on the `toggle_auto_update` AJAX action, allowing any user with a valid nonce to toggle the auto-update status of the plugin.