Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-284 (访问控制不恰当) — Vulnerability Class 2041

2041 vulnerabilities classified as CWE-284 (访问控制不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2020-25160 B. Braun SpaceCom, Battery Pack SP with Wi-Fi, and Data module compactplus — SpaceCom 6.8 Medium2022-04-14
CVE-2021-28505 On affected Arista EOS platforms, if a VXLAN match rule exists in an IPv4 access-list that is applied to the ingress of an L2 or an L3 port/SVI, the VXLAN rule and subsequent ACL rules in that access list will ignore the specified IP protocol. — EOS 7.5 High2022-04-14
CVE-2021-40405 Reolink Rlc-410W 访问控制错误漏洞 — RLC-410W 7.5 -2022-04-14
CVE-2022-22190 Paragon Active Assurance Control Center: Information disclosure vulnerability in crafted URL — Paragon Active Assurance 7.4 High2022-04-14
CVE-2022-25755 Siemens SCALANCE 安全漏洞 — SCALANCE X302-7 EEC (230V) 7.5 -2022-04-12
CVE-2022-25650 Siemens Mendix 安全漏洞 — Mendix Applications using Mendix 7 6.5 -2022-04-12
CVE-2021-42029 Siemens SIMATIC 安全漏洞 — SIMATIC STEP 7 (TIA Portal) V15 9.8 -2022-04-12
CVE-2022-28778 Samsung Security Supporter 安全漏洞 — Samsung Security Supporter 4.4 Medium2022-04-11
CVE-2022-28777 Samsung Members 安全漏洞 — Samsung Members 4.3 Medium2022-04-11
CVE-2022-28775 Samsung Flow 安全漏洞 — Samsung Flow 5.1 Medium2022-04-11
CVE-2022-28542 Samsung Galaxy Store 安全漏洞 — Galaxy Store 6.8 Medium2022-04-11
CVE-2022-27838 Samsung FactoryCameraFB安全漏洞 — FactoryCamera 7.7 High2022-04-11
CVE-2022-27836 Samsung SMR 安全漏洞 — Samsung Mobile Devices 8.4 High2022-04-11
CVE-2022-27822 Samsung SMR 安全漏洞 — Samsung Mobile Devices 6.6 Medium2022-04-11
CVE-2022-26091 Samsung SMR 授权问题漏洞 — Samsung Mobile Devices 5.7 Medium2022-04-11
CVE-2022-25831 SAMSUNG SMR 安全漏洞 — Samsung Mobile Devices 2.0 Low2022-04-11
CVE-2022-20762 Cisco Ultra Cloud Core - Subscriber Microservices Infrastructure Privilege Escalation Vulnerability — Cisco Ultra Cloud Core - Subscriber Microservices Infrastructure 7.8 High2022-04-06
CVE-2022-0405 Improper Access Control in janeczku/calibre-web — janeczku/calibre-web 5.4 -2022-04-03
CVE-2021-28504 On Arista Strata family products which have “TCAM profile” feature enabled when Port IPv4 access-list has a rule which matches on “vxlan” as protocol then that rule and subsequent rules ( rules declared after it in ACL ) do not match on IP protocol fi ... — EOS 7.5 High2022-04-01
CVE-2021-36776 Steve API proxy impersonation — Rancher 8.8 High2022-04-01
CVE-2021-36775 Deleting PRTBs associated to a group doesn't cause deletion of corresponding RoleBindings — Rancher 8.8 High2022-04-01
CVE-2022-23730 public API安全漏洞 — LG webOS TV 9.8 -2022-03-11
CVE-2021-42855 Local privilege escalation due to misconfigured write permission on .debug_command.config file — SteelCentral AppInternals Dynamic Sampling Agent 7.8 High2022-03-09
CVE-2022-25824 Samsung Bixby Touch安全漏洞 — BixbyTouch 4.0 Medium2022-03-08
CVE-2022-24930 SAMSUNG Wear Os 安全漏洞 — Samsung Wearable Devices 4.4 Medium2022-03-08
CVE-2022-26317 Siemens Mendix 安全特征问题特征问题漏洞 — Mendix Applications using Mendix 7 7.5 -2022-03-08
CVE-2022-26313 Siemens Mendix 访问控制错误漏洞 — Mendix Forgot Password Appstore module 9.8 -2022-03-08
CVE-2022-24309 Siemens Mendix 安全漏洞 — Mendix Runtime V7 6.8 Medium2022-03-08
CVE-2021-41543 Siemens Climatix Pol909 日志信息泄露漏洞 — Climatix POL909 (AWB module) 6.5 -2022-03-08
CVE-2021-46270 JFrog Artifactory 安全漏洞 — JFrog Artifactory 2.7 Low2022-03-02

Vulnerabilities classified as CWE-284 (访问控制不恰当) represent 2041 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.