Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-862 (授权机制缺失) — Vulnerability Class 5531

5531 vulnerabilities classified as CWE-862 (授权机制缺失). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-1641 Accordion <= 2.2.96 - Missing Authorization to Authenticated(Contributor+) Post Duplication — Accordions 5.4 Medium2024-04-09
CVE-2024-2033 Video Conferencing with Zoom <= 4.4.5 - Sensitive Information Exposure — Video Conferencing with Zoom 4.3 Medium2024-04-09
CVE-2024-31368 WordPress Soledad theme <= 8.4.2 - Unauthenticated Broken Access Control vulnerability — Soledad 6.5 Medium2024-04-09
CVE-2024-31367 WordPress Soledad theme <= 8.4.2 - Authenticated Broken Access Control vulnerability — Soledad 7.1 High2024-04-09
CVE-2024-31366 WordPress Post Type Builder (PTB) plugin <= 2.0.8 - Auth. Arbitrary Post/Page Creation vulnerability — Post Type Builder (PTB) 7.1 High2024-04-09
CVE-2024-30217 Missing Authorization check in SAP S/4 HANA (Cash Management) — SAP S/4 HANA (Cash Management) 4.3 Medium2024-04-09
CVE-2024-30216 Missing Authorization check in SAP S/4 HANA (Cash Management) — SAP S/4 HANA (Cash Management) 4.3 Medium2024-04-09
CVE-2024-28167 Missing Authorization check in SAP Group Reporting Data Collection (Enter Package Data) — SAP Group Reporting Data Collection (Enter Package Data) 6.5 Medium2024-04-09
CVE-2024-31375 WordPress WP2LEADS plugin <= 3.2.7 - Broken Access Control vulnerability — WP2LEADS 5.4 Medium2024-04-08
CVE-2024-1385 WP-Stateless – Google Cloud Storage <= 3.4.0 - Missing Authorization to Limited Arbitrary Options Update — WP-Stateless – Google Cloud Storage 7.1 High2024-04-06
CVE-2024-3216 WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels <= 4.4.2 - Missing Authorization to Unauthenticated Settings Reset — WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes & Shipping Labels 5.3 Medium2024-04-06
CVE-2024-1994 Image Watermark <= 1.7.3 - Missing Authorization to Authenticated (Subscriber+) Watermark Modification — Image Watermark 4.3 Medium2024-04-06
CVE-2024-27911 Lenovo Printer 安全漏洞 — Printers 7.5 High2024-04-05
CVE-2024-27910 Lenovo Printer 安全漏洞 — Printers 5.3 Medium2024-04-05
CVE-2024-0394 Rapid7 Minerva Armor Privilege Escalation — Minerva 7.8 High2024-04-03
CVE-2024-1807 Product Sort and Display for WooCommerce <= 2.4.1 - Missing Authorization — Product Sort and Display for WooCommerce 6.5 Medium2024-04-02
CVE-2024-1732 Sharkdropship for AliExpress Dropshipping and Affiliate <= 2.2.4 - Missing Authorization to Unauthenticated Arbitrary Post Deletion — Sharkdropship & affiliate for AliExpress 5.3 Medium2024-04-02
CVE-2024-31099 WordPress Phlox Core Elements plugin <= 2.15.7 - Broken Access Control vulnerability — Shortcodes and extra features for Phlox theme 6.4 Medium2024-04-01
CVE-2024-2086 Integrate Google Drive <= 1.3.8 - Missing Authorization to Unauthenticated Settings Modification and Export — File Manager for Google Drive – Integrate Google Drive 10.0 Critical2024-03-30
CVE-2024-30463 WordPress BEAR plugin <= 1.1.4.3 - Broken Access Control vulnerability — BEAR 4.3 Medium2024-03-29
CVE-2024-30477 WordPress Klarna Payments for WooCommerce plugin <= 3.2.4 - Broken Access Control vulnerability — Klarna Payments for WooCommerce 5.3 Medium2024-03-29
CVE-2024-30508 WordPress WP Hotel Booking plugin <= 2.0.9.2 - Broken Access Control vulnerability — WP Hotel Booking 6.5 Medium2024-03-29
CVE-2024-30505 WordPress Church Admin plugin <= 4.1.18 - Broken Access Control vulnerability — Church Admin 5.4 Medium2024-03-29
CVE-2024-30487 WordPress MP3 Audio Player for Music, Radio & Podcast by Sonaar plugin <= 5.1 - Broken Access Control vulnerability — MP3 Audio Player for Music, Radio & Podcast by Sonaar 7.6 High2024-03-29
CVE-2024-2848 Responsive <= 5.0.2 - Missing Authorization to HTML Injection — Responsive 7.5 High2024-03-29
CVE-2024-2476 OceanWP <= 3.5.4 - Missing Authorization to Sensitive Information Exposure via Limited Local File Inclusion — OceanWP 4.3 Medium2024-03-29
CVE-2024-2844 Easy Appointments <= 3.11.18 - Insufficient Authorization — Easy Appointments 4.3 Medium2024-03-29
CVE-2024-29241 Synology Surveillance Station 安全漏洞 — Surveillance Station 9.9 Critical2024-03-28
CVE-2024-29240 Synology Surveillance Station 安全漏洞 — Surveillance Station 4.3 Medium2024-03-28
CVE-2024-29229 Synology Surveillance Station 安全漏洞 — Surveillance Station 7.7 High2024-03-28

Vulnerabilities classified as CWE-862 (授权机制缺失) represent 5531 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.