Vulnerability index

Browse CVEs

3,012 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Privilege ManagementCWE-269 × clear
CRITICAL 9.8 CVE-2022-48283 A piece of Huawei whole-home intelligence software has an Incorrect Privilege Assignment vulnerability. Successful exploitation of this vulnerability… Hilink Ai Life No fix yet Fix from $2,3002023-02-27 HIGH 8.8 CVE-2022-48341 ThingsBoard 3.4.1 could allow a remote authenticated attacker to achieve Vertical Privilege Escalation. A Tenant Administrator can obtain System Admi… Thingsboard Mitigation only Fix from $1,9502023-02-23 HIGH 7.5 CVE-2022-43927 IBM Db2 for Linux, UNIX and Windows 10.5, 11.1, and 11.5 is vulnerable to information Disclosure due to improper privilege management when a speciall… Db2 Patch available Fix from $1,9502023-02-17 MEDIUM 6.0 CVE-2022-38378 An improper privilege management vulnerability [CWE-269] in Fortinet FortiOS version 7.2.0 and before 7.0.7 and FortiProxy version 7.2.0 through 7.2.… Fortiproxy 7.0.8 / 7.2.1+ Fix from $1,6002023-02-16 HIGH 7.8 CVE-2023-24483 A vulnerability has been identified that, if exploited, could result in a local user elevating their privilege level to NT AUTHORITY\SYSTEM on a Citr… Virtual Apps And Desktops 2212+ Fix from $1,9502023-02-16 HIGH 7.8 CVE-2022-42455 ASUS EC Tool driver (aka d.sys) 1beb15c90dcf7a5234ed077833a0a3e900969b60be1d04fcebce0a9f8994bdbb, as signed by ASUS and shipped with multiple ASUS so… Armoury Crate 5.3.4.1+ Fix from $1,9502023-02-15 HIGH 8.8 CVE-2022-42735 Improper Privilege Management vulnerability in Apache Software Foundation Apache ShenYu. ShenYu Admin allows low-privilege low-level administrators… Shenyu Mitigation only Fix from $1,9502023-02-15 HIGH 7.8 CVE-2023-25011 PC settings tool Ver10.1.26.0 and earlier, PC settings tool Ver11.0.22.0 and earlier allows a attacker to write to the registry as administrator priv… Pc Settings Tool after 11.0.22.0 Fix from $1,9502023-02-15 HIGH 8.7 CVE-2023-21777 Azure App Service on Azure Stack Hub Elevation of Privilege Vulnerability Azure App Service On Azure Stack Patch available Fix from $1,9502023-02-14 HIGH 8.8 CVE-2023-25149 TimescaleDB, an open-source time-series SQL database, has a privilege escalation vulnerability in versions 2.8.0 through 2.9.2. During installation, … Timescaledb after 2.9.2 Fix from $1,9502023-02-14 HIGH 7.8 CVE-2022-34384 Dell SupportAssist Client Consumer (version 3.11.1 and prior), SupportAssist Client Commercial (version 3.2 and prior), Dell Command | Update, Dell U… Alienware Update 4.5.0+ Fix from $1,9502023-02-11 HIGH 7.8 CVE-2023-21421 Improper Handling of Insufficient Permissions or Privileges vulnerability in KnoxCustomManagerService prior to SMR Jan-2023 Release 1 allows attacker… Android Mitigation only Fix from $1,9502023-02-09 HIGH 7.5 CVE-2022-48286 The multi-screen collaboration module has a privilege escalation vulnerability. Successful exploitation of this vulnerability may affect data confide… Emui No fix yet Fix from $1,9502023-02-09 HIGH 7.8 CVE-2022-38777 An issue was discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged users to elevate their privi… Endgame 3.62.3 / 7.17.9+ Fix from $1,9502023-02-08 HIGH 8.8 CVE-2022-43759 A Improper Privilege Management vulnerability in SUSE Rancher, allows users with access to the escalate verb on PRTBs to escalate permissions for any… Rancher 2.5.17 / 2.6.10+ Fix from $1,9502023-02-07 HIGH 7.8 CVE-2022-48019 The components wfshbr64.sys and wfshbr32.sys in Another Eden before v3.0.20 and before v2.14.200 allows attackers to perform privilege escalation via… Another Eden after 3.0.20 Fix from $1,9502023-02-06 HIGH 8.4 CVE-2023-20854 VMware Workstation contains an arbitrary file deletion vulnerability. A malicious actor with local user privileges on the victim's machine may exploi… Workstation Patch available Fix from $1,9502023-02-03 HIGH 7.8 CVE-2020-24307 An issue in mRemoteNG v1.76.20 allows attackers to escalate privileges via a crafted executable file. NOTE: third parties were unable to reproduce an… Mremoteng No fix yet Fix from $1,9502023-02-02 HIGH 7.8 CVE-2022-23455 Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of in… Support Assistant 9.11+ Fix from $1,9502023-02-01 HIGH 7.8 CVE-2022-3990 HPSFViewer might allow Escalation of Privilege. This potential vulnerability was remediated on July 29th, 2022. Customers who opted for automatic upd… Hpsfviewer 8.6.3.1+ Fix from $1,9502023-02-01 HIGH 7.8 CVE-2021-3808 Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code exec… Elite Dragonfly Firmware Mitigation only Fix from $1,9502023-02-01 HIGH 7.8 CVE-2021-3809 Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code exec… Elite Dragonfly Firmware Mitigation only Fix from $1,9502023-02-01 HIGH 7.8 CVE-2021-3439 HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these pote… 340 G3 Firmware 01.04.01 / 01.09.00+ Fix from $1,9502023-02-01 CRITICAL 9.8 CVE-2022-45101 Dell PowerScale OneFS 9.0.0.x - 9.4.0.x, contains an Improper Handling of Insufficient Privileges vulnerability in NFS. A remote unauthenticated atta… Emc Powerscale Onefs 9.1.0.25 / 9.2.1.18+ Fix from $2,3002023-02-01 HIGH 8.8 CVE-2023-0524 As part of our Security Development Lifecycle, a potential privilege escalation issue was identified internally. This could allow a malicious actor w… Nessus Mitigation only Fix from $1,9502023-02-01 HIGH 8.8 CVE-2022-4041 Incorrect Privilege Assignment vulnerability in Hitachi Storage Plug-in for VMware vCenter allows remote authenticated users to cause privilege escal… Storage Plug In Mitigation only Fix from $1,9502023-01-31 HIGH 8.8 CVE-2022-4441 Incorrect Privilege Assignment vulnerability in Hitachi Storage Plug-in for VMware vCenter allows remote authenticated users to cause privilege escal… Storage Plug In Mitigation only Fix from $1,9502023-01-31 HIGH 8.8 CVE-2022-46357 Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and informat… Security Manager 3.9+ Fix from $1,9502023-01-30 HIGH 8.8 CVE-2022-46358 Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and informat… Security Manager 3.9+ Fix from $1,9502023-01-30 HIGH 8.8 CVE-2022-46359 Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and informat… Security Manager 3.9+ Fix from $1,9502023-01-30