Incorrect access control in the /api/License/deactivateOffline endpoint of CAXPerts UniversalPlantViewer WebServices Server v2.7.6 allows authenticat…
Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over a network.
Improper access control in Microsoft 365 Copilot for iOS allows an unauthorized attacker to elevate privileges over a network.
Improper access control in Windows Kernel allows an authorized attacker to bypass a security feature locally.
Improper access control in Extensible Storage Engine (ESENT) allows an authorized attacker to elevate privileges locally.
Improper access control in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.
Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.
Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally.
Improper access control in Windows System allows an unauthorized attacker to bypass a security feature locally.
Improper access control in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.
Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally.
Improper access control in Windows Remote Help Defense allows an authorized attacker to elevate privileges locally.
Improper access control in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.
Improper access control in Windows Audio Compression Manager (ACM) allows an authorized attacker to elevate privileges locally.
Improper access control in Windows Server allows an authorized attacker to elevate privileges locally.
Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally.
Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally.
Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally.
A weakness has been identified in code-projects Online Job Portal 1.0. This affects an unknown function of the file /JobSeekerInsert.php. Executing a…
Cockpit CMS contains a missing authorization vulnerability in the Bucket file storage API (/system/buckets/api). The api() method in modules/System/C…
EIPStackGroup OpENer 2.3.0 (commit 76b95cf) suffers from an Incorrect Access Control vulnerability in its handling of encapsulation sessions. When th…
A flaw has been found in WuzhiCMS up to 4.1.0. Affected by this vulnerability is the function config/listimage of the file /index.php?m=attachment&f=…
A vulnerability was determined in hcr707305003 shiroiAdmin 1.1/1.3. Affected is the function FileController::upload of the file app/common/controller…
A security vulnerability has been detected in QILING Disk Master 6.0.0.0. The impacted element is an unknown function in the library diskbckp.sys of …
A weakness has been identified in MiniTool Partition Wizard up to 13.6. The affected element is an unknown function in the library pwdrvio.sys of the…
The charging station websocket endpoint accepts connections without proper authentication, which could lead to privilege escalation.
Capgo before 12.128.2 contains an authorization bypass vulnerability where write-scoped API keys can directly mutate protected channel configuration …
Improper Privilege Management, Improper Access Control vulnerability in Apache IoTDB. Authenticated users can escalate to full tree-path access by re…
Incorrect Authorization, Improper Access Control vulnerability in Apache IoTDB. Authorization bypass in /rest/v2/fastLastQuery exposes last-value dat…