CWE-612 · 10 записей
Improper Authorization of Index Containing Sensitive Information
CVE этого класса
10 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
35Наблюдать | CVE-2024-25635Эксплойта нет | IDOR Vulnerability: Allowing Organization Owner to view the other Organizations API KEY and USERSalf · alf · CWE-612 | Высокая8,8 | — | 0,7 % | 19 февр. 2024 г. |
34Наблюдать | CVE-2019-25605Эксплойта нет | EquityPandit 1.0 Insecure Logging Information Disclosureplay · equitypandit · CWE-612 | Высокая8,7 | — | 0,3 % | 22 мар. 2026 г. |
30Наблюдать | CVE-2022-35980Эксплойта нет | OpenSearch vulnerable to Improper Authorization of Index Containing Sensitive Informationamazon · opensearch · CWE-612 | Высокая7,5 | — | 1,2 % | 12 авг. 2022 г. |
27Наблюдать | CVE-2025-3654Эксплойта нет | Petlibro Smart Pet Feeder Platform through 1.7.31 Information Disclosure via API endpointpetlibro · petlibro · CWE-612 | Средняя6,9 | — | 0,3 % | 3 янв. 2026 г. |
27Наблюдать | CVE-2025-3653Эксплойта нет | Petlibro Smart Pet Feeder through 1.7.31 Platform Improper Access Control via API endpointpetlibro · petlibro · CWE-612 | Средняя6,9 | — | 0,3 % | 3 янв. 2026 г. |
27Наблюдать | CVE-2025-3660Эксплойта нет | Petlibro Smart Pet Feeder Platform through 1.7.31 Broken Access Control via API endpointpetlibro · petlibro · CWE-612 | Средняя6,9 | — | 0,2 % | 3 янв. 2026 г. |
26Наблюдать | CVE-2024-49071Эксплойта нет | Windows Defender Information Disclosure Vulnerabilitymicrosoft · defender for endpoint · CWE-612 | Средняя6,5 | — | 1,1 % | 12 дек. 2024 г. |
26Наблюдать | CVE-2023-4560Эксплойта нет | Improper Authorization of Index Containing Sensitive Information in omeka/omeka-someka · omeka s · CWE-612 | Средняя6,5 | — | 0,7 % | 27 авг. 2023 г. |
25Наблюдать | CVE-2022-41918Эксплойта нет | Issue with fine-grained access control of indices backing data streamsamazon · opensearch · CWE-612 | Средняя6,3 | — | 0,5 % | 15 нояб. 2022 г. |
15Наблюдать | CVE-2022-22565Эксплойта нет | Dell PowerScale OneFS, versions 9.0.0-9.3.0, contain an improper authorization of index containing sensitive information.dell · emc powerscale onefs · CWE-612 | Низкая3,8 | — | 0,5 % | 12 апр. 2022 г. |
- CVE-2024-2563535Наблюдать
IDOR Vulnerability: Allowing Organization Owner to view the other Organizations API KEY and USERS
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %alf · alf19 февр. 2024 г.
- CVE-2019-2560534Наблюдать
EquityPandit 1.0 Insecure Logging Information Disclosure
ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %play · equitypandit22 мар. 2026 г.
- CVE-2022-3598030Наблюдать
OpenSearch vulnerable to Improper Authorization of Index Containing Sensitive Information
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %amazon · opensearch12 авг. 2022 г.
- CVE-2025-365427Наблюдать
Petlibro Smart Pet Feeder Platform through 1.7.31 Information Disclosure via API endpoint
СредняяCVSS 6,9Эксплойта нетEPSS 0 %petlibro · petlibro3 янв. 2026 г.
- CVE-2025-365327Наблюдать
Petlibro Smart Pet Feeder through 1.7.31 Platform Improper Access Control via API endpoint
СредняяCVSS 6,9Эксплойта нетEPSS 0 %petlibro · petlibro3 янв. 2026 г.
- CVE-2025-366027Наблюдать
Petlibro Smart Pet Feeder Platform through 1.7.31 Broken Access Control via API endpoint
СредняяCVSS 6,9Эксплойта нетEPSS 0 %petlibro · petlibro3 янв. 2026 г.
- CVE-2024-4907126Наблюдать
Windows Defender Information Disclosure Vulnerability
СредняяCVSS 6,5Эксплойта нетEPSS 1 %microsoft · defender for endpoint12 дек. 2024 г.
- CVE-2023-456026Наблюдать
Improper Authorization of Index Containing Sensitive Information in omeka/omeka-s
СредняяCVSS 6,5Эксплойта нетEPSS 1 %omeka · omeka s27 авг. 2023 г.
- CVE-2022-4191825Наблюдать
Issue with fine-grained access control of indices backing data streams
СредняяCVSS 6,3Эксплойта нетEPSS 0 %amazon · opensearch15 нояб. 2022 г.
- CVE-2022-2256515Наблюдать
Dell PowerScale OneFS, versions 9.0.0-9.3.0, contain an improper authorization of index containing sensitive information.
НизкаяCVSS 3,8Эксплойта нетEPSS 0 %dell · emc powerscale onefs12 апр. 2022 г.