Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-862

MITRE ↗

Missing Authorization

472
CRITICAL
2,109
HIGH
6,422
MEDIUM
212
LOW
9,386 CVEs · Page 155/188
5.5
CVE-2023-44214

Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux

5.5
CVE-2023-45240

Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux

5.5
CVE-2023-45242

Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Cyber Protec

5.5
CVE-2023-45243

Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Cyber Protec

5.5
CVE-2023-45245

Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux

5.5
CVE-2023-21291

In visitUris of Notification.java, there is a possible way to reveal image contents from another user due to a missing p

5.5
CVE-2023-40633

In phasecheckserver, there is a possible missing permission check. This could lead to local information disclosure with

5.5
CVE-2023-40637

In telecom service, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-40639

In SoundRecorder service, there is a possible missing permission check. This could lead to local information disclosure

5.5
CVE-2023-40640

In SoundRecorder service, there is a possible missing permission check. This could lead to local information disclosure

5.5
CVE-2023-40641

In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no addi

5.5
CVE-2023-40642

In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no addi

5.5
CVE-2023-40643

In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no addi

5.5
CVE-2023-40644

In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no addi

5.5
CVE-2023-40645

In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no addi

5.5
CVE-2023-40646

In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no addi

5.5
CVE-2023-40647

In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no addi

5.5
CVE-2023-40648

In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no addi

5.5
CVE-2023-40649

In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no addi

5.5
CVE-2023-40650

In Telecom service, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-21294

In Slice, there is a possible disclosure of installed packages due to a missing permission check. This could lead to loc

5.5
CVE-2023-21321

In Package Manager, there is a possible cross-user settings disclosure due to a missing permission check. This could lea

5.5
CVE-2023-21329

In Activity Manager, there is a possible way to determine whether an app is installed due to a missing permission check.

5.5
CVE-2023-21340

In Telecomm, there is a possible way to get the call state due to a missing permission check. This could lead to local i

5.5
CVE-2023-21382

In Content Resolver, there is a possible method to access metadata about existing content providers on the device due to

5.5
CVE-2023-42631

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42632

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42633

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42634

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42635

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42636

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42637

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42638

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42639

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42640

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42641

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42642

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42643

In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n

5.5
CVE-2023-42644

In dm service, there is a possible missing permission check. This could lead to local information disclosure with no add

5.5
CVE-2023-42646

In Ifaa service, there is a possible missing permission check. This could lead to local information disclosure with no a

5.5
CVE-2023-42648

In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no a

5.5
CVE-2023-42650

In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no a

5.5
CVE-2023-42651

In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no a

5.5
CVE-2023-42652

In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no a

5.5
CVE-2023-42654

In dm service, there is a possible missing permission check. This could lead to local information disclosure with no add

5.5
CVE-2023-42671

In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th

5.5
CVE-2023-42672

In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th

5.5
CVE-2023-42673

In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th

5.5
CVE-2023-42674

In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th

5.5
CVE-2023-42675

In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th

Frequently Asked Questions

What is CWE-862?

CWE-862 (Missing Authorization) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-862?

There are 10,347 CVE records associated with CWE-862 in our database. Of these, 472 are critical severity, 2109 are high severity, and 6422 are medium severity.

How can I protect against CWE-862 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-862 using AI-powered security agents.

Detect CWE-862 Vulnerabilities

CyberStrike's AI agents automatically detect missing authorization vulnerabilities across your infrastructure.

Get Started