Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-862 (授权机制缺失) — Vulnerability Class 5525

5525 vulnerabilities classified as CWE-862 (授权机制缺失). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-42848 Lenovo Personal Cloud Storage 安全漏洞 — Personal Cloud Storage A1 4.3 Medium2022-05-18
CVE-2022-29611 SAP NetWeaver Application Server 安全漏洞 — SAP NetWeaver Application Server for ABAP and ABAP Platform 8.8 -2022-05-11
CVE-2022-1442 Metform Elementor Contact Form Builder <= 2.1.3 - Sensitive Information Disclosure — MetForm – Contact Form, Survey, Quiz, & Custom Form Builder for Elementor 7.5 High2022-05-10
CVE-2022-29176 Unauthorized gem takeover for some gems on rubygems.org — rubygems.org 9.9 Critical2022-05-05
CVE-2021-44055 Information leakage in Video Station — Video Station 5.3 Medium2022-05-05
CVE-2022-28789 Voice Note 安全漏洞 — Voice Note 6.2 Medium2022-05-03
CVE-2021-25002 Tipsacarrier < 1.5.0.5 - Unauthenticated Orders Disclosure — Tipsacarrier 7.5 -2022-05-02
CVE-2022-1511 Missing Authorization in snipe/snipe-it — snipe/snipe-it 4.3 -2022-04-28
CVE-2022-1329 Elementor Website Builder 3.6.0 - 3.6.2 - Missing Authorization to Remote Code Execution — Elementor Website Builder 8.8 High2022-04-19
CVE-2022-1054 RSVP and Event Management < 2.7.8 - Unauthenticated Entries Export — RSVP and Event Management Plugin 5.3 -2022-04-18
CVE-2022-1020 Woo Product Table < 3.1.2 - Unauthenticated Arbitrary Function Call — Product Table for WooCommerce (wooproducttable) 9.8 -2022-04-18
CVE-2022-27669 SAP NetWeaver Application Server 安全漏洞 — SAP NetWeaver Application Server for Java 9.8 -2022-04-12
CVE-2022-27480 Siemens SICAM 访问控制错误漏洞 — SICAM A8000 CP-8031 7.5 -2022-04-12
CVE-2022-0919 Salon booking system < 7.6.3 - Unauthenticated Sensitive Data Disclosure — Salon booking system 5.3 -2022-04-11
CVE-2021-32503 SICK FieldEcho 资源管理错误漏洞 — SICK FTMg 8.2 -2022-04-01
CVE-2022-27658 SAP Innovation management 安全漏洞 — SAP Innovation management 7.5 -2022-03-28
CVE-2021-24978 OSMapper <= 2.1.5 - Unauthenticated Arbitrary Post Deletion — OSMapper 7.5 -2022-03-28
CVE-2021-3814 Red Hat 3scale 安全漏洞 — 3scale 7.5 -2022-03-25
CVE-2021-24950 Insight Core <= 1.0 - Subscriber+ PHP Object Injection & Stored XSS — Insight Core 6.3 -2022-03-14
CVE-2021-32472 Moodle 信息泄露漏洞 — moodle 4.3 -2022-03-11
CVE-2022-0871 Missing Authorization in gogs/gogs — gogs/gogs 7.5 -2022-03-11
CVE-2022-0932 Missing Authorization in saleor/saleor — saleor/saleor 7.1 -2022-03-11
CVE-2021-41233 Missing authorization in Nextcloud text — security-advisories 6.5 Medium2022-03-10
CVE-2022-0905 Missing Authorization in go-gitea/gitea — go-gitea/gitea 7.1 -2022-03-10
CVE-2022-26103 SAP Netweaver 安全漏洞 — SAP NetWeaver (Real Time Messaging Framework) 5.3 -2022-03-08
CVE-2022-26102 SAP NetWeaver Application Server 安全漏洞 — SAP NetWeaver Application Server for ABAP 5.4 -2022-03-08
CVE-2022-0163 Smart Forms < 2.6.71 - Subscriber+ Form Data Download — Smart Forms – when you need more than just a contact form 6.5 -2022-03-07
CVE-2021-25087 Wordpress Download Manager < 3.2.25 - Sensitive Information Disclosure — Download Manager 7.5 -2022-03-07
CVE-2022-0755 Missing Authorization in salesagility/suitecrm — salesagility/suitecrm--2022-03-07
CVE-2022-0756 Missing Authorization in salesagility/suitecrm — salesagility/suitecrm--2022-03-07

Vulnerabilities classified as CWE-862 (授权机制缺失) represent 5525 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.