Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-284 (访问控制不恰当) — Vulnerability Class 2041

2041 vulnerabilities classified as CWE-284 (访问控制不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-26678 Windows Defender Application Control Security Feature Bypass Vulnerability — Windows 10 Version 1809 8.4 High2025-04-08
CVE-2025-21197 Windows NTFS Information Disclosure Vulnerability — Windows 10 Version 1507 6.5 Medium2025-04-08
CVE-2025-27744 Microsoft Office Elevation of Privilege Vulnerability — Microsoft Office 2016 7.8 High2025-04-08
CVE-2025-3398 lenve VBlog WebSecurityConfig.java configure access control — VBlog 6.3 Medium2025-04-08
CVE-2025-21425 Improper Access Control in Automotive Linux OS — Snapdragon 7.3 High2025-04-07
CVE-2025-3325 iteaj iboot 物联网网关 Admin Password pwd access control — iboot 物联网网关 4.3 Medium2025-04-06
CVE-2025-3305 1902756969/code-projects IKUN_Library Borrow MvcConfig.java addInterceptors access control — IKUN_Library 4.3 Medium2025-04-05
CVE-2025-3298 SourceCodester Online Eyewear Shop Registration Master.php access control — Online Eyewear Shop 4.3 Medium2025-04-05
CVE-2025-3256 xujiangfei admintwo updateSet access control — admintwo 6.3 Medium2025-04-04
CVE-2025-3255 xujiangfei admintwo home access control — admintwo 4.3 Medium2025-04-04
CVE-2025-3237 Tenda FH1202 wrlwpsset access control — FH1202 5.3 Medium2025-04-04
CVE-2025-1865 Local Privilege Escalation in Virtual CloneDrive Kernel Driver — Virtual CloneDrive 7.8 High2025-04-04
CVE-2025-3236 Tenda FH1202 Web Management Interface VirSerDMZ access control — FH1202 5.3 Medium2025-04-04
CVE-2025-31484 conda-forge infrastructure uses a bad token for Azure's cf-staging access — infrastructure 8.8AIHighAI2025-04-02
CVE-2025-3082 User may override a view's collation and gain unauthorized access to underlying data — MongoDB Server 3.1 Low2025-04-01
CVE-2025-2996 Tenda FH1202 Web Management Interface SysToolDDNS access control — FH1202 5.3 Medium2025-03-31
CVE-2025-2995 Tenda FH1202 Web Management Interface SysToolChangePwd access control — FH1202 5.3 Medium2025-03-31
CVE-2025-2994 Tenda FH1202 Web Management Interface qossetting access control — FH1202 5.3 Medium2025-03-31
CVE-2025-2993 Tenda FH1202 default.cfg access control — FH1202 5.3 Medium2025-03-31
CVE-2025-2992 Tenda FH1202 Web Management Interface AdvSetWrlsafeset access control — FH1202 5.3 Medium2025-03-31
CVE-2025-2991 Tenda FH1202 Web Management Interface AdvSetWrlmacfilter access control — FH1202 5.3 Medium2025-03-31
CVE-2025-2990 Tenda FH1202 Web Management Interface AdvSetWrlGstset access control — FH1202 5.3 Medium2025-03-31
CVE-2025-2989 Tenda FH1202 Web Management Interface AdvSetWrl access control — FH1202 5.3 Medium2025-03-31
CVE-2025-2955 TOTOLINK A3000RU IBMS Configuration File ExportIbmsConfig.sh access control — A3000RU 5.3 Medium2025-03-30
CVE-2025-2954 mannaandpoem OpenManus File file_saver.py execute access control — OpenManus 3.3 Low2025-03-30
CVE-2025-20230 Missing Access Control and Incorrect Ownership of Data in App Key Value Store (KVStore) collections in the Splunk Secure Gateway App — Splunk Enterprise 4.3 Medium2025-03-26
CVE-2025-20229 Remote Code Execution through file upload to “$SPLUNK_HOME/var/run/splunk/apptemp“ directory in Splunk Enterprise — Splunk Enterprise 8.0 High2025-03-26
CVE-2025-2499 Devolutions Remote Desktop Manager 安全漏洞 — Remote Desktop Manager 8.1AIHighAI2025-03-26
CVE-2023-52972 Huawei PCs 安全漏洞 — YutuFZ-5651S1 5.5 Medium2025-03-26
CVE-2025-2688 TOTOLINK A3000RU Syslog Configuration File ExportSyslog.sh access control — A3000RU 4.3 Medium2025-03-24

Vulnerabilities classified as CWE-284 (访问控制不恰当) represent 2041 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.