Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-284 (访问控制不恰当) — Vulnerability Class 2041

2041 vulnerabilities classified as CWE-284 (访问控制不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-26360 Adobe ColdFusion Improper Access Control Arbitrary code execution — ColdFusion 8.6 High2023-03-23
CVE-2023-1557 SourceCodester E-Commerce System Username access control — E-Commerce System 6.3 Medium2023-03-22
CVE-2023-27578 Galaxy vulnerable to unauthorized modification of pages/visualizations due to insufficient permission check — galaxy 9.1 Critical2023-03-20
CVE-2023-1491 Max Secure Anti Virus Plus IoControlCode MaxCryptMon.sys 0x220020 access control — Anti Virus Plus 4.4 Medium2023-03-18
CVE-2023-1490 Max Secure Anti Virus Plus IoControlCode SDActMon.sys 0x220020 access control — Anti Virus Plus 4.4 Medium2023-03-18
CVE-2023-1489 Lespeed WiseCleaner Wise System Monitor IoControlCode WiseHDInfo64.dll 0x9C402088 access control — WiseCleaner Wise System Monitor 7.8 High2023-03-18
CVE-2023-1486 Lespeed WiseCleaner Wise Force Deleter IoControlCode WiseUnlock64.sys 0x220004 access control — WiseCleaner Wise Force Deleter 4.4 Medium2023-03-18
CVE-2023-1453 Watchdog Anti-Virus IoControlCode wsdk-driver.sys 0x80002008 access control — Anti-Virus 4.4 Medium2023-03-17
CVE-2023-0811 Omron PLC CJ series 访问控制错误漏洞 — CJ1M SYSMAC CJ-series 9.1 Critical2023-03-16
CVE-2023-1432 SourceCodester Online Food Ordering System POST Request access control — Online Food Ordering System 7.3 High2023-03-16
CVE-2023-21457 SAMSUNG Mobile devices 安全漏洞 — Samsung Mobile Devices 4.1 Medium2023-03-16
CVE-2023-21463 SAMSUNG Mobile devices 安全漏洞 — MyFiles 4.0 Medium2023-03-16
CVE-2023-21465 SAMSUNG Mobile Devices 安全漏洞 — Bixby Touch 5.5 Medium2023-03-16
CVE-2023-27268 Improper Access Control in SAP NetWeaver AS Java (Object Analyzing Service) — NetWeaver AS Java (Object Analyzing Service) 5.3 Medium2023-03-14
CVE-2023-26460 Improper Access Control in SAP NetWeaver AS Java (Cache Management Service) — NetWeaver AS for Java 5.3 Medium2023-03-14
CVE-2023-23911 Rocket Chat 加密问题漏洞 — Rocket.Chat 7.5 -2023-03-10
CVE-2023-25605 Fortinet FortiSOAR 安全漏洞 — FortiSOAR 7.5 High2023-03-07
CVE-2022-40539 Improper Validation of Array Index in Automotive Android OS — Snapdragon 8.4 High2023-03-07
CVE-2023-26471 XWiki Platform users may execute anything with superadmin right through comments and async macro — xwiki-platform 10.0 Critical2023-03-02
CVE-2023-26473 XWiki Platform allows unprivileged users to make arbitrary select queries using DatabaseListProperty and suggest.vm — xwiki-platform 6.5 Medium2023-03-02
CVE-2023-26474 XWiki Platform vulnerable to privilege escalation via properties with wiki syntax that are executed with wrong author — xwiki-platform 10.0 Critical2023-03-02
CVE-2023-25821 Nextcloud download permissions can be changed by resharer — security-advisories 5.7 Medium2023-02-24
CVE-2023-1007 Twister Antivirus IoControlCode filmfd.sys 0x801120E4 access control — Antivirus 5.3 Medium2023-02-24
CVE-2023-0998 SourceCodester Alphaware Simple E-Commerce System Payment summary.php access control — Alphaware Simple E-Commerce System 6.5 Medium2023-02-24
CVE-2023-0963 SourceCodester Music Gallery Site POST Request Users.php access control — Music Gallery Site 7.3 High2023-02-22
CVE-2023-22920 Zyxel LTE3316-M604 安全漏洞 — LTE3316-M604 9.8 Critical2023-02-21
CVE-2023-0916 SourceCodester Auto Dealer Management System Users.php access control — Auto Dealer Management System 6.3 Medium2023-02-19
CVE-2023-22232 Adobe Connect Improper Access Control Security feature bypass — Connect 5.3 Medium2023-02-17
CVE-2023-23923 Moodle: possible to set the preferred "start page" of other users 8.2 -2023-02-17
CVE-2023-24484 A malicious user can cause log files to be written to a directory that they do not have permission to write to. — Citrix Workspace App for Windows--2023-02-16

Vulnerabilities classified as CWE-284 (访问控制不恰当) represent 2041 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.