Vulnerability index

Browse CVEs

3,012 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Privilege ManagementCWE-269 × clear
Hilink Ai Life CRITICAL 9.8
CVE-2022-48283

A piece of Huawei whole-home intelligence software has an Incorrect Privilege Assignment vulnerability. Successful exploitation of this vulnerability…

No fix yet
Fix from $2,300 2023-02-27
Thingsboard HIGH 8.8
CVE-2022-48341

ThingsBoard 3.4.1 could allow a remote authenticated attacker to achieve Vertical Privilege Escalation. A Tenant Administrator can obtain System Admi…

Mitigation only
Fix from $1,950 2023-02-23
Db2 HIGH 7.5
CVE-2022-43927

IBM Db2 for Linux, UNIX and Windows 10.5, 11.1, and 11.5 is vulnerable to information Disclosure due to improper privilege management when a speciall…

Patch available
Fix from $1,950 2023-02-17
Fortiproxy MEDIUM 6.0
CVE-2022-38378

An improper privilege management vulnerability [CWE-269] in Fortinet FortiOS version 7.2.0 and before 7.0.7 and FortiProxy version 7.2.0 through 7.2.…

Fix: 7.0.8 / 7.2.1+
Fix from $1,600 2023-02-16
Virtual Apps And Desktops HIGH 7.8
CVE-2023-24483

A vulnerability has been identified that, if exploited, could result in a local user elevating their privilege level to NT AUTHORITY\SYSTEM on a Citr…

Fix: 2212+
Fix from $1,950 2023-02-16
Armoury Crate HIGH 7.8
CVE-2022-42455

ASUS EC Tool driver (aka d.sys) 1beb15c90dcf7a5234ed077833a0a3e900969b60be1d04fcebce0a9f8994bdbb, as signed by ASUS and shipped with multiple ASUS so…

Fix: 5.3.4.1+
Fix from $1,950 2023-02-15
Shenyu HIGH 8.8
CVE-2022-42735

Improper Privilege Management vulnerability in Apache Software Foundation Apache ShenYu. ShenYu Admin allows low-privilege low-level administrators…

Mitigation only
Fix from $1,950 2023-02-15
Pc Settings Tool HIGH 7.8
CVE-2023-25011

PC settings tool Ver10.1.26.0 and earlier, PC settings tool Ver11.0.22.0 and earlier allows a attacker to write to the registry as administrator priv…

Fix: after 11.0.22.0
Fix from $1,950 2023-02-15
Azure App Service On Azure Stack HIGH 8.7
CVE-2023-21777

Azure App Service on Azure Stack Hub Elevation of Privilege Vulnerability

Patch available
Fix from $1,950 2023-02-14
Timescaledb HIGH 8.8
CVE-2023-25149

TimescaleDB, an open-source time-series SQL database, has a privilege escalation vulnerability in versions 2.8.0 through 2.9.2. During installation, …

Fix: after 2.9.2
Fix from $1,950 2023-02-14
Alienware Update HIGH 7.8
CVE-2022-34384

Dell SupportAssist Client Consumer (version 3.11.1 and prior), SupportAssist Client Commercial (version 3.2 and prior), Dell Command | Update, Dell U…

Fix: 4.5.0+
Fix from $1,950 2023-02-11
Android HIGH 7.8
CVE-2023-21421

Improper Handling of Insufficient Permissions or Privileges vulnerability in KnoxCustomManagerService prior to SMR Jan-2023 Release 1 allows attacker…

Mitigation only
Fix from $1,950 2023-02-09
Emui HIGH 7.5
CVE-2022-48286

The multi-screen collaboration module has a privilege escalation vulnerability. Successful exploitation of this vulnerability may affect data confide…

No fix yet
Fix from $1,950 2023-02-09
Endgame HIGH 7.8
CVE-2022-38777

An issue was discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged users to elevate their privi…

Fix: 3.62.3 / 7.17.9+
Fix from $1,950 2023-02-08
Rancher HIGH 8.8
CVE-2022-43759

A Improper Privilege Management vulnerability in SUSE Rancher, allows users with access to the escalate verb on PRTBs to escalate permissions for any…

Fix: 2.5.17 / 2.6.10+
Fix from $1,950 2023-02-07
Another Eden HIGH 7.8
CVE-2022-48019

The components wfshbr64.sys and wfshbr32.sys in Another Eden before v3.0.20 and before v2.14.200 allows attackers to perform privilege escalation via…

Fix: after 3.0.20
Fix from $1,950 2023-02-06
Workstation HIGH 8.4
CVE-2023-20854

VMware Workstation contains an arbitrary file deletion vulnerability. A malicious actor with local user privileges on the victim's machine may exploi…

Patch available
Fix from $1,950 2023-02-03
Mremoteng HIGH 7.8
CVE-2020-24307

An issue in mRemoteNG v1.76.20 allows attackers to escalate privileges via a crafted executable file. NOTE: third parties were unable to reproduce an…

No fix yet
Fix from $1,950 2023-02-02
Support Assistant HIGH 7.8
CVE-2022-23455

Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of in…

Fix: 9.11+
Fix from $1,950 2023-02-01
Hpsfviewer HIGH 7.8
CVE-2022-3990

HPSFViewer might allow Escalation of Privilege. This potential vulnerability was remediated on July 29th, 2022. Customers who opted for automatic upd…

Fix: 8.6.3.1+
Fix from $1,950 2023-02-01
Elite Dragonfly Firmware HIGH 7.8
CVE-2021-3808

Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code exec…

Mitigation only
Fix from $1,950 2023-02-01
Elite Dragonfly Firmware HIGH 7.8
CVE-2021-3809

Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code exec…

Mitigation only
Fix from $1,950 2023-02-01
340 G3 Firmware HIGH 7.8
CVE-2021-3439

HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these pote…

Fix: 01.04.01 / 01.09.00+
Fix from $1,950 2023-02-01
Emc Powerscale Onefs CRITICAL 9.8
CVE-2022-45101

Dell PowerScale OneFS 9.0.0.x - 9.4.0.x, contains an Improper Handling of Insufficient Privileges vulnerability in NFS. A remote unauthenticated atta…

Fix: 9.1.0.25 / 9.2.1.18+
Fix from $2,300 2023-02-01
Nessus HIGH 8.8
CVE-2023-0524

As part of our Security Development Lifecycle, a potential privilege escalation issue was identified internally. This could allow a malicious actor w…

Mitigation only
Fix from $1,950 2023-02-01
Storage Plug In HIGH 8.8
CVE-2022-4041

Incorrect Privilege Assignment vulnerability in Hitachi Storage Plug-in for VMware vCenter allows remote authenticated users to cause privilege escal…

Mitigation only
Fix from $1,950 2023-01-31
Storage Plug In HIGH 8.8
CVE-2022-4441

Incorrect Privilege Assignment vulnerability in Hitachi Storage Plug-in for VMware vCenter allows remote authenticated users to cause privilege escal…

Mitigation only
Fix from $1,950 2023-01-31
Security Manager HIGH 8.8
CVE-2022-46357

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and informat…

Fix: 3.9+
Fix from $1,950 2023-01-30
Security Manager HIGH 8.8
CVE-2022-46358

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and informat…

Fix: 3.9+
Fix from $1,950 2023-01-30
Security Manager HIGH 8.8
CVE-2022-46359

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and informat…

Fix: 3.9+
Fix from $1,950 2023-01-30