Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-862 (授权机制缺失) — Vulnerability Class 5525

5525 vulnerabilities classified as CWE-862 (授权机制缺失). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-3656 KVM 安全漏洞 — KVM 8.8 -2022-03-04
CVE-2021-41112 Missing Authorization in Rundeck — rundeck 8.1 High2022-02-28
CVE-2021-25042 WP Visitor Statistics (Real Time Traffic) < 5.5 - Arbitrary IP Address Exclusion to Stored XSS — WP Visitor Statistics (Real Time Traffic) 5.4 -2022-02-28
CVE-2021-25011 WP Google Map < 1.8.1 - Subscriber+ Arbitrary Post Deletion and Plugin's Settings Update — Maps Plugin using Google Maps for WordPress – WP Google Map 5.7 -2022-02-28
CVE-2021-24977 Use Any Font < 6.2.1 - Unauthenticated Arbitrary CSS Appending — Use Any Font | Custom Font Uploader 6.1 -2022-02-28
CVE-2021-24730 Logo Showcase with Slick Slider < 1.2.5 - Subscriber+ Arbitrary Media Title/Description/Alt Text/URL Update — Logo Showcase with Slick Slider – Logo Carousel, Logo Slider & Logo Grid 4.3 -2022-02-28
CVE-2022-0726 Missing Authorization in chocobozzz/peertube — chocobozzz/peertube 5.4 -2022-02-23
CVE-2021-25075 Duplicate Page or Post < 1.5.1 - Arbitrary Settings Update to Stored XSS — Duplicate Page or Post 5.7 -2022-02-21
CVE-2020-25718 Samba 信息泄露漏洞 — samba 8.1 -2022-02-18
CVE-2022-0611 Missing Authorization in snipe/snipe-it — snipe/snipe-it 6.3 Medium2022-02-15
CVE-2022-0588 Missing Authorization in librenms/librenms — librenms/librenms 7.1 High2022-02-15
CVE-2022-0579 Missing Authorization in snipe/snipe-it — snipe/snipe-it 6.5 Medium2022-02-14
CVE-2021-25018 PPOM for WooCommerce < 24.0 - Subscriber+ Settings Update to Stored XSS — PPOM for WooCommerce 5.4 -2022-02-14
CVE-2021-25014 Ibtana < 1.1.4.9 - Subscriber+ Settings Update to Stored XSS — Ibtana – WordPress Website Builder 3.5 -2022-02-14
CVE-2022-22535 SAP ERP HCM 安全漏洞 — SAP ERP HCM (Portugal)--2022-02-09
CVE-2022-24317 Schneider Electric Interactive Graphical SCADA System 安全漏洞 — Interactive Graphical SCADA System Data Server (V15.0.0.22020 and prior) 7.5 -2022-02-09
CVE-2022-23621 Missing authorization in xwiki-platform — xwiki-platform 5.5 Medium2022-02-09
CVE-2022-23617 Missing authorization in xwiki-platform — xwiki-platform 6.5 Medium2022-02-09
CVE-2022-21660 Missing authorization in gin-vue-admin — gin-vue-admin 8.1 High2022-02-09
CVE-2021-25084 Advanced Cron Manager - Subscriber+ Arbitrary Events/Schedules Creation/Deletion — Advanced Cron Manager 4.3 -2022-02-07
CVE-2021-24993 Ultimate Product Catalog < 5.0.26 - Subscriber+ Arbitrary Product Creation & Settings Update — Ultimate Product Catalog – WordPress Catalog Plugin 4.3 -2022-02-07
CVE-2021-24839 SupportCandy < 2.2.5 - Unauthenticated Arbitrary Ticket Deletion — SupportCandy – Helpdesk & Support Ticket System 7.5 -2022-02-07
CVE-2022-0218 WP HTML Mail <= 3.0.9 Missing Authorization on REST-API Route — WP HTML Mail 8.3 High2022-02-04
CVE-2021-25093 Link Library < 7.2.8 - Unauthenticated Arbitrary Links Deletion — Link Library 7.5 -2022-02-01
CVE-2021-44795 Modifying User Permissions via Unauthorized Access in Single Connect — Single Connect 5.3 Medium2022-01-27
CVE-2021-44794 Information Leakege via Unauthorized Access in Single Connect — Single Connect 5.3 Medium2022-01-27
CVE-2021-44793 Information Leakege via Unauthorized Access in Single Connect — Single Connect 8.6 High2022-01-27
CVE-2021-44792 Information Leakege via Unauthorized Access in Single Connect — Single Connect 5.3 Medium2022-01-27
CVE-2022-23945 Apache ShenYu missing authentication allows gateway registration — Apache ShenYu (incubating) 9.1 -2022-01-25
CVE-2022-23944 Apache ShenYu 2.4.1 Improper access control — Apache ShenYu (incubating) 9.1 -2022-01-25

Vulnerabilities classified as CWE-862 (授权机制缺失) represent 5525 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.