Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-862

MITRE ↗

Missing Authorization

472
CRITICAL
2,109
HIGH
6,422
MEDIUM
212
LOW
9,386 CVEs · Page 154/188
5.5
CVE-2023-33891

In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit

5.5
CVE-2023-33892

In fastDial service, there is a missing permission check. This could lead to local information disclosure with no additi

5.5
CVE-2023-33893

In fastDial service, there is a missing permission check. This could lead to local information disclosure with no additi

5.5
CVE-2023-33894

In fastDial service, there is a missing permission check. This could lead to local information disclosure with no additi

5.5
CVE-2023-33895

In fastDial service, there is a missing permission check. This could lead to local information disclosure with no additi

5.5
CVE-2023-33898

In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit

5.5
CVE-2023-33899

In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit

5.5
CVE-2023-33900

In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit

5.5
CVE-2023-33901

In bluetooth service, there is a missing permission check. This could lead to local information disclosure with no addit

5.5
CVE-2023-33902

In bluetooth service, there is a missing permission check. This could lead to local information disclosure with no addit

5.5
CVE-2023-33906

In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with n

5.5
CVE-2023-33907

In Contacts Service, there is a possible missing permission check. This could lead to local information disclosure with

5.5
CVE-2023-33908

In ims service, there is a possible missing permission check. This could lead to local information disclosure with no ad

5.5
CVE-2023-33909

In Contacts service, there is a possible missing permission check.This could lead to local information disclosure with n

5.5
CVE-2023-33910

In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with n

5.5
CVE-2023-33911

In vowifi service, there is a possible missing permission check.This could lead to local information disclosure with no

5.5
CVE-2023-33912

In Contacts service, there is a possible missing permission check.This could lead to local information disclosure with n

5.5
CVE-2023-40216

OpenBSD 7.3 before errata 014 is missing an argument-count bounds check in console terminal emulation. This could cause

5.5
CVE-2023-21234

In launchConfirmationActivity of ChooseLockSettingsHelper.java, there is a possible way to enable developer options with

5.5
CVE-2023-21288

In visitUris of Notification.java, there is a possible way to reveal images across users due to a missing permission che

5.5
CVE-2023-41750

Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux

5.5
CVE-2023-33916

In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no a

5.5
CVE-2023-33917

In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no a

5.5
CVE-2023-33918

In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no a

5.5
CVE-2023-38436

In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no a

5.5
CVE-2023-38437

In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no a

5.5
CVE-2023-38438

In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no a

5.5
CVE-2023-38439

In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no a

5.5
CVE-2023-38440

In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no a

5.5
CVE-2023-38441

In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no a

5.5
CVE-2023-38442

In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no a

5.5
CVE-2023-38445

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additi

5.5
CVE-2023-38446

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additi

5.5
CVE-2023-38447

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additi

5.5
CVE-2023-38448

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additi

5.5
CVE-2023-38454

In vowifi service, there is a possible missing permission check.This could lead to local information disclosure with no

5.5
CVE-2023-38457

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additi

5.5
CVE-2023-38461

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additi

5.5
CVE-2023-38462

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additi

5.5
CVE-2023-38463

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additi

5.5
CVE-2023-38465

In ims service, there is a possible missing permission check. This could lead to local information disclosure with no ad

5.5
CVE-2023-38466

In ims service, there is a possible missing permission check. This could lead to local information disclosure with no ad

5.5
CVE-2023-20824

In duraspeed, there is a possible information disclosure due to a missing permission check. This could lead to local inf

5.5
CVE-2023-20825

In duraspeed, there is a possible information disclosure due to a missing permission check. This could lead to local inf

5.5
CVE-2023-20826

In cta, there is a possible information disclosure due to a missing permission check. This could lead to local informati

5.5
CVE-2023-4104

An invalid Polkit Authentication check and missing authentication requirements for D-Bus methods allowed any local user

5.5
CVE-2023-35677

In onCreate of DeviceAdminAdd.java, there is a possible way to forcibly add a device admin due to a missing permission c

5.5
CVE-2023-43090

A vulnerability was found in GNOME Shell. GNOME Shell's lock screen allows an unauthenticated local user to view windows

5.5
CVE-2023-5321

Missing Authorization in GitHub repository hamza417/inure prior to build94.

5.5
CVE-2023-44210

Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr

Frequently Asked Questions

What is CWE-862?

CWE-862 (Missing Authorization) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-862?

There are 10,347 CVE records associated with CWE-862 in our database. Of these, 472 are critical severity, 2109 are high severity, and 6422 are medium severity.

How can I protect against CWE-862 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-862 using AI-powered security agents.

Detect CWE-862 Vulnerabilities

CyberStrike's AI agents automatically detect missing authorization vulnerabilities across your infrastructure.

Get Started