Vulnerabilities (CVE)

Filtered by CWE-285
Total 1064 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-9945 1 Google 1 Android 2026-06-17 9.3 HIGH 7.8 HIGH
In TrustZone in all Android releases from CAF using the Linux kernel, an Improper Authorization vulnerability could potentially exist.
CVE-2014-6049 1 Phpmyfaq 1 Phpmyfaq 2026-06-17 5.5 MEDIUM 2.7 LOW
phpMyFAQ before 2.8.13 allows remote authenticated users with admin privileges to bypass authorization via a crafted instance ID parameter.
CVE-2014-2349 1 Emerson 1 Deltav 2026-06-17 6.2 MEDIUM N/A
Emerson DeltaV 10.3.1, 11.3, 11.3.1, and 12.3 uses hardcoded credentials for diagnostic services, which allows remote attackers to bypass intended access restrictions via a TCP session, as demonstrated by a session that uses the telnet program.
CVE-2013-7245 1 Sybase 1 Adaptive Server Enterprise 2026-06-17 5.0 MEDIUM 7.5 HIGH
The Backup Server component in SAP Sybase ASE 15.7 before SP51 allows remote attackers to bypass access restrictions and perform database dumps by leveraging failure to validate credentials, aka SAP Security Note 1927859.