CWE-863— Incorrect Authorization
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.— MITRE CWE catalog
4,112 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-863page 26 of 83
- CVE-2021-40044HIGHCVSS 8.8EG 8.82022-02-09
There is a permission verification vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may cause unauthorized operations.
- CVE-2021-40104HIGHCVSS 7.5EG 7.52021-09-27
An issue was discovered in Concrete CMS through 8.5.5. There is an SVG sanitizer bypass.
- CVE-2021-4026MEDIUMCVSS 4.3EG 4.32021-11-30
bookstack is vulnerable to Improper Access Control
- CVE-2021-40456HIGHCVSS 5.3EG 7.52021-10-13
Windows AD FS Security Feature Bypass Vulnerability
- CVE-2021-40504MEDIUMCVSS 4.9EG 4.92021-11-10
A certain template role in SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 752, 753, 754, 755, 756, contains transport authorizations, which exceed expected display o…
- CVE-2021-40639HIGHCVSS 7.5EG 7.52021-09-15
Improper access control in Jfinal CMS 5.1.0 allows attackers to access sensitive information via /classes/conf/db.properties&config=filemanager.config.js.
- CVE-2021-40654MEDIUMCVSS 6.5EG 6.52021-09-24
An information disclosure issue exist in D-LINK-DIR-615 B2 2.01mt. An attacker can obtain a user name and password by forging a post request to the / getcfg.php page
- CVE-2021-40655CRITICALCVSS 7.5EG 9.0⚠ KEV2021-09-24
An informtion disclosure issue exists in D-LINK-DIR-605 B2 Firmware Version : 2.01MT. An attacker can obtain a user name and password by forging a post request to the / getcfg.php page
- CVE-2021-40692MEDIUMCVSS 4.3EG 4.32022-09-29
Insufficient capability checks made it possible for teachers to download users outside of their courses.
- CVE-2021-40875HIGHCVSS 7.5EG 8.02021-09-22
Improper Access Control in Gurock TestRail versions < 7.2.0.3014 resulted in sensitive information exposure. A threat actor can access the /files.md5 file on the client side of a Gurock TestRail application, disclosing a full list of appli…
- CVE-2021-40884HIGHCVSS 8.1EG 8.12021-10-11
Projectsend version r1295 is affected by sensitive information disclosure. Because of not checking authorization in ids parameter in files-edit.php and id parameter in process.php function, a user with uploader role can download and edit a…
- CVE-2021-40990MEDIUMCVSS 6.5EG 6.52021-10-15
A remote disclosure of sensitive information vulnerability was discovered in Aruba ClearPass Policy Manager version(s): ClearPass Policy Manager 6.10.x prior to 6.10.2 - - ClearPass Policy Manager 6.9.x prior to 6.9.7-HF1 - - ClearPass Pol…
- CVE-2021-40991HIGHCVSS 7.2EG 7.22021-10-15
A remote disclosure of sensitive information vulnerability was discovered in Aruba ClearPass Policy Manager version(s): ClearPass Policy Manager 6.10.x prior to 6.10.2 - - ClearPass Policy Manager 6.9.x prior to 6.9.7-HF1 - - ClearPass Pol…
- CVE-2021-41013MEDIUMCVSS 5.3EG 5.32021-12-08
An improper access control vulnerability [CWE-284] in FortiWeb versions 6.4.1 and below and 6.3.15 and below in the Report Browse section of Log & Report may allow an unauthorized and unauthenticated user to access the Log reports via thei…
- CVE-2021-41020HIGHCVSS 8.8EG 8.82022-05-04
An improper access control vulnerability [CWE-284] in FortiIsolator versions 2.3.2 and below may allow an authenticated, non privileged attacker to regenerate the CA certificate via the regeneration URL.
- CVE-2021-41082HIGHCVSS 7.5EG 7.52021-09-20
Discourse is a platform for community discussion. In affected versions any private message that includes a group had its title and participating user exposed to users that do not have access to the private messages. However, access control…
- CVE-2021-41093HIGHCVSS 7.4EG 7.42021-10-04
Wire is an open source secure messenger. In affected versions if the an attacker gets an old but valid access token they can take over an account by changing the email. This issue has been resolved in version 3.86 which uses a new endpoint…
- CVE-2021-41189HIGHCVSS 7.2EG 7.22021-10-29
DSpace is an open source turnkey repository application. In version 7.0, any community or collection administrator can escalate their permission up to become system administrator. This vulnerability only exists in 7.0 and does not impact 6…
- CVE-2021-41230MEDIUMCVSS 5.3EG 5.32021-11-05
Pomerium is an open source identity-aware access proxy. In affected versions changes to the OIDC claims of a user after initial login are not reflected in policy evaluation when using `allowed_idp_claims` as part of policy. If using `allow…
- CVE-2021-41233MEDIUMCVSS 6.5EG 6.52022-03-10
Nextcloud text is a collaborative document editing using Markdown built for the nextcloud server. Due to an issue with the Nextcloud Text application, which is by default shipped with Nextcloud Server, an attacker is able to access the fol…
- CVE-2021-41241MEDIUMCVSS 4.3EG 4.32022-03-08
Nextcloud server is a self hosted system designed to provide cloud style services. The groupfolders application for Nextcloud allows sharing a folder with a group of people. In addition, it allows setting "advanced permissions" on subfolde…
- CVE-2021-41244CRITICALCVSS 9.1EG 9.12021-11-15
Grafana is an open-source platform for monitoring and observability. In affected versions when the fine-grained access control beta feature is enabled and there is more than one organization in the Grafana instance admins are able to acces…
- CVE-2021-41325MEDIUMCVSS 6.5EG 6.52021-09-30
Broken access control for user creation in Pydio Cells 2.2.9 allows remote anonymous users to create standard users via the profile parameter. (In addition, such users can be granted several admin permissions via the Roles parameter.)
- CVE-2021-4133HIGHCVSS 8.8EG 8.82022-01-25
A flaw was found in Keycloak in versions from 12.0.0 and before 15.1.1 which allows an attacker with any existing user account to create new default user accounts via the administrative REST API even when new user registration is disabled.
- CVE-2021-41528MEDIUMCVSS 5.3EG 5.32025-02-07
An error when handling authorization related to the import / export interfaces on the RISC Platform prior to the saas-2021-12-29 release can potentially be exploited to access the import / export functionality with low privileges.
- CVE-2021-41554HIGHCVSS 8.8EG 8.82021-10-05
ARCHIBUS Web Central 21.3.3.815 (a version from 2014) does not properly validate requests for access to data and functionality in these affected endpoints: /archibus/schema/ab-edit-users.axvw, /archibus/schema/ab-data-dictionary-table.axvw…
- CVE-2021-41564MEDIUMCVSS 5.3EG 6.52021-10-08
Tad Honor viewing book list function is vulnerable to authorization bypass, thus remote attackers can use special parameters to delete articles arbitrarily without logging in.
- CVE-2021-41568MEDIUMCVSS 5.3EG 6.52021-10-08
Tad Web is vulnerable to authorization bypass, thus remote attackers can exploit the vulnerability to use the original function of viewing bulletin boards and uploading files in the system.
- CVE-2021-41571MEDIUMCVSS 6.5EG 6.52022-02-01
In Apache Pulsar it is possible to access data from BookKeeper that does not belong to the topics accessible by the authenticated user. The Admin API get-message-by-id requires the user to input a topic and a ledger id. The ledger id is a …
- CVE-2021-41591CRITICALCVSS 9.4EG 9.42021-10-04
ACINQ Eclair before 0.6.3 allows loss of funds because of dust HTLC exposure.
- CVE-2021-41592CRITICALCVSS 9.4EG 9.42021-10-04
Blockstream c-lightning through 0.10.1 allows loss of funds because of dust HTLC exposure.
- CVE-2021-41593HIGHCVSS 8.6EG 8.62021-10-04
Lightning Labs lnd before 0.13.3-beta allows loss of funds because of dust HTLC exposure.
- CVE-2021-41608HIGHCVSS 7.5EG 7.52022-01-28
A file disclosure vulnerability in the UploadedImageDisplay.aspx endpoint of SelectSurvey.NET before 5.052.000 allows a remote, unauthenticated attacker to retrieve survey user submitted data by modifying the value of the ID parameter in s…
- CVE-2021-41795MEDIUMCVSS 6.5EG 6.52021-09-29
The Safari app extension bundled with 1Password for Mac 7.7.0 through 7.8.x before 7.8.7 is vulnerable to authorization bypass. By targeting a vulnerable component of this extension, a malicious web page could read a subset of 1Password va…
- CVE-2021-41801HIGHCVSS 8.8EG 8.82021-10-11
The ReplaceText extension through 1.41 for MediaWiki has Incorrect Access Control. When a user is blocked after submitting a replace job, the job is still run, even if it may be run at a later time (due to the job queue backlog)
- CVE-2021-41805HIGHCVSS 8.8EG 8.82021-12-12
HashiCorp Consul Enterprise before 1.8.17, 1.9.x before 1.9.11, and 1.10.x before 1.10.4 has Incorrect Access Control. An ACL token (with the default operator:write permissions) in one namespace can be used for unintended privilege escalat…
- CVE-2021-41850HIGHCVSS 7.8EG 7.82022-03-11
An issue was discovered in Luna Simo PPR1.180610.011/202001031830. A pre-installed app with a package name of com.skyroam.silverhelper writes three IMEI values to system properties at system startup. The system property values can be obtai…
- CVE-2021-41873CRITICALCVSS 10.0EG 10.02021-10-26
Penguin Aurora TV Box 41502 is a high-end network HD set-top box produced by Tencent Video and Skyworth Digital. An unauthorized access vulnerability exists in the Penguin Aurora Box. An attacker can use the vulnerability to gain unauthori…
- CVE-2021-4194MEDIUMCVSS 6.5EG 6.52022-01-06
bookstack is vulnerable to Improper Access Control
- CVE-2021-41975CRITICALCVSS 7.5EG 9.12021-10-08
TadTools special page is vulnerable to authorization bypass, thus remote attackers can use the specific parameter to delete arbitrary files in the system without logging in.
- CVE-2021-41976MEDIUMCVSS 5.3EG 5.32021-10-08
Tad Uploader edit book list function is vulnerable to authorization bypass, thus remote attackers can use the function to amend the folder names in the book list without logging in.
- CVE-2021-42000MEDIUMCVSS 5.3EG 6.52022-02-10
When a password reset or password change flow with an authentication policy is configured and the adapter in the reset or change policy supports multiple parallel reset flows, an existing user can reset another existing users password.
- CVE-2021-42002CRITICALCVSS 9.8EG 9.82021-11-11
Zoho ManageEngine ADManager Plus before 7115 is vulnerable to a filter bypass that leads to file-upload remote code execution.
- CVE-2021-42025MEDIUMCVSS 6.5EG 6.52021-11-09
A vulnerability has been identified in Mendix Applications using Mendix 8 (All versions < V8.18.13), Mendix Applications using Mendix 9 (All versions < V9.6.2). Applications built with affected versions of Mendix Studio Pro do not properly…
- CVE-2021-42026MEDIUMCVSS 4.3EG 4.32021-11-09
A vulnerability has been identified in Mendix Applications using Mendix 8 (All versions < V8.18.13), Mendix Applications using Mendix 9 (All versions < V9.6.2). Applications built with affected versions of Mendix Studio Pro do not properly…
- CVE-2021-42124HIGHCVSS 8.8EG 8.82021-12-07
An improper access control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform a session takeover.
- CVE-2021-42126HIGHCVSS 8.8EG 8.82021-12-07
An improper authorization control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation.
- CVE-2021-42135HIGHCVSS 8.1EG 8.12021-10-11
HashiCorp Vault and Vault Enterprise 1.8.x through 1.8.4 may have an unexpected interaction between glob-related policies and the Google Cloud secrets engine. Users may, in some situations, have more privileges than intended, e.g., a user …
- CVE-2021-42137MEDIUMCVSS 5.3EG 5.32021-10-11
An issue was discovered in Zammad before 5.0.1. In some cases, there is improper enforcement of the privilege requirement for viewing a list of tickets that shows title, state, etc.
- CVE-2021-42192HIGHCVSS 8.8EG 8.82022-05-04
Konga v0.14.9 is affected by an incorrect access control vulnerability where a specially crafted request can lead to privilege escalation.
Map vulnerabilities like CWE-863 to your infrastructure
EchelonGraph correlates every CVE — across CWE-863 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →