Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2023-5622
Under certain conditions, Nessus Network Monitor could allow a low privileged user to escalate privileges to NT AUTHORITY\SYSTEM on Windows hosts by …
Nessus Network Monitor
6.3.0+
HIGH 8.8
CVE-2023-41966
The application suffers from a privilege escalation vulnerability. A
user with read permissions can elevate privileges by sending a HTTP POST
to se…
Analog Fm Transmitter Exc5000gx Firmware
No fix yet
HIGH 7.8
CVE-2023-5671
HP Print and Scan Doctor for Windows may potentially be vulnerable to escalation of privilege. HP is releasing software updates to mitigate the poten…
Print And Scan Doctor
Mitigation only
HIGH 8.8
CVE-2023-4607
An authenticated XCC user can change permissions for any user through a crafted API command.
Thinkagile Hx5530 Firmware
Mitigation only
HIGH 7.8
CVE-2023-43506
A vulnerability in the ClearPass OnGuard Linux agent could allow malicious users on a Linux instance to elevate their user privileges to those of a h…
Clearpass Policy Manager
6.9.13 / 6.10.8+
HIGH 8.2
CVE-2023-39732
The leakage of the client secret in Tokueimaru_waiting Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast mes…
Tokueimaru Waiting
No fix yet
HIGH 8.2
CVE-2023-39733
The leakage of the client secret in TonTon-Tei Line v13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages.
Tonton Tei
No fix yet
HIGH 8.2
CVE-2023-39734
The leakage of the client secret in VISION MEAT WORKS TrackDiner10/10_mc Line v13.6.1 allows attackers to obtain the channel access token and send cr…
Trackdiner10\/10 Mc
No fix yet
HIGH 8.2
CVE-2023-39740
The leakage of the client secret in Onigiriya-musubee Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast mess…
Onigiriya Musubee
No fix yet
MEDIUM 5.5
CVE-2021-26734
Zscaler Client Connector Installer on Windows before version 3.4.0.124 improperly handled directory junctions during uninstallation. A local adversar…
Client Connector
3.4.0.124+
HIGH 7.8
CVE-2023-34045
VMware Fusion(13.x prior to 13.5) contains a local privilege escalation vulnerability that occurs during
installation for the first time (the user n…
Fusion
13.5+
HIGH 7.8
CVE-2023-46277
please (aka pleaser) through 0.5.4 allows privilege escalation through the TIOCSTI and/or TIOCLINUX ioctl. (If both TIOCSTI and TIOCLINUX are disable…
Please
after 0.5.4
HIGH 7.8
CVE-2023-27793
An issue discovered in IXP Data Easy Install v.6.6.14884.0 allows local attackers to gain escalated privileges via weak encoding of sensitive informa…
Easyinstall
No fix yet
HIGH 7.8
CVE-2023-27795
An issue found in IXP Data Easy Install v.6.6.14884.0 allows a local attacker to gain privileges via a static XOR key.
Easyinstall
No fix yet
HIGH 7.8
CVE-2023-45883
A privilege escalation vulnerability exists within the Qumu Multicast Extension v2 before 2.0.63 for Windows. When a standard user triggers a repair …
Qumu
2.0.63+
HIGH 8.8
CVE-2023-41715
SonicOS post-authentication Improper Privilege Management vulnerability in the SonicOS SSL VPN Tunnel allows users to elevate their privileges inside…
Sonicos
6.5.4.4-44v-21-2340 / 6.5.4.13-105n+
HIGH 8.2
CVE-2023-22099
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.…
Vm Virtualbox
7.0.12+
HIGH 7.8
CVE-2023-20598
An improper privilege management in the AMD Radeon™ Graphics driver may allow an authenticated attacker to craft an IOCTL request to gain I/O control…
Radeon Software
23.q4 / 23.9.2+
HIGH 8.8
CVE-2023-43120
An issue discovered in Extreme Networks Switch Engine (EXOS) before 32.5.1.5, before 22.7 and before 31.7.1 allows attackers to gain escalated privil…
Exos
22.7 / 31.7.1+
HIGH 7.2
CVE-2023-4822
Grafana is an open-source platform for monitoring and observability. The vulnerability impacts Grafana instances with several organizations, and allo…
Grafana
9.4.16 / 9.5.11+
CRITICAL 9.8
CVE-2023-44809
D-Link device DIR-820L 1.05B03 is vulnerable to Insecure Permissions.
Dir 820l Firmware
No fix yet
HIGH 7.8
CVE-2023-38280
IBM HMC (Hardware Management Console) 10.1.1010.0 and 10.2.1030.0 could allow a local user to escalate their privileges to root access on a restricte…
Hardware Management Console
Patch available
HIGH 7.8
CVE-2023-40377
Backup, Recovery, and Media Services (BRMS) for IBM i 7.2, 7.3, and 7.4 contains a local privilege escalation vulnerability. A malicious actor with …
I
Patch available
HIGH 7.8
CVE-2023-40378
IBM Directory Server for IBM i contains a local privilege escalation vulnerability. A malicious actor with command line access to the host operating…
I
Patch available
HIGH 7.8
CVE-2023-27316
SnapCenter versions 4.8 through 4.9 are susceptible to a
vulnerability which may allow an authenticated SnapCenter Server user to
become an admin u…
Snapcenter
after 4.9
HIGH 7.8
CVE-2023-38817
An issue in Inspect Element Ltd Echo.ac v.5.2.1.0 allows a local attacker to gain privileges via a crafted command to the echo_driver.sys component. …
Anti Cheat Tool
5.2.1.0+
HIGH 8.8
CVE-2023-43960
An issue in DLINK DPH-400SE FRU 2.2.15.8 allows a remote attacker to escalate privileges via the User Modify function in the Maintenance/Access funct…
Dph 400se Firmware
No fix yet
MEDIUM 6.7
CVE-2023-4936
It is possible to sideload a compromised DLL during the installation at elevated privilege.
Displaylink
11.2+
CRITICAL 9.8
CVE-2023-44105
Vulnerability of permissions not being strictly verified in the window management module.Successful exploitation of this vulnerability may cause feat…
Harmonyos
No fix yet
CRITICAL 9.8
CVE-2023-44106
API permission management vulnerability in the Fwk-Display module.Successful exploitation of this vulnerability may cause features to perform abnorma…
Harmonyos
No fix yet