Vulnerability index

Browse CVEs

3,012 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Privilege ManagementCWE-269 × clear
HIGH 8.8 CVE-2022-4808 Improper Privilege Management in GitHub repository usememos/memos prior to 0.9.1. Memos 0.9.1+ Fix from $1,9502022-12-28 MEDIUM 6.4 CVE-2022-46172 authentik is an open-source Identity provider focused on flexibility and versatility. In versions prior to 2022.10.4, and 2022.11.4, any authenticate… Authentik 2022.10.4 / 2022.11.4+ Fix from $1,6002022-12-28 CRITICAL 9.8 CVE-2022-45963 h3c firewall <= 3.10 ESS6703 has a privilege bypass vulnerability. Secpath F5030 Firmware after 3.10_ess6703 Fix from $2,3002022-12-27 HIGH 7.8 CVE-2022-37706EPSS 6% enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and the system library function mis… Enlightenment 0.25.4+ Fix from $1,9502022-12-25 HIGH 8.4 CVE-2022-41290 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the rm_rlcache_file command to obtain root … Vios Patch available Fix from $1,9502022-12-23 HIGH 7.2 CVE-2022-38757 A vulnerability has been identified in Micro Focus ZENworks 2020 Update 3a and prior versions. This vulnerability allows administrators with rights t… Zenworks 2020+ Fix from $1,9502022-12-23 HIGH 8.1 CVE-2022-4687 Incorrect Use of Privileged APIs in GitHub repository usememos/memos prior to 0.9.0. Memos 0.9.0+ Fix from $1,9502022-12-23 HIGH 7.8 CVE-2022-46334 Proofpoint Enterprise Protection (PPS/PoD) contains a vulnerability which allows the pps user to escalate to root privileges due to unnecessary permi… Enterprise Protection after 8.19.0 Fix from $1,9502022-12-21 HIGH 8.8 CVE-2022-38065 A privilege escalation vulnerability exists in the oslo.privsep functionality of OpenStack git master 05194e7618 and prior. Overly permissive functio… Openstack No fix yet Fix from $1,9502022-12-21 HIGH 8.8 CVE-2022-38060 A privilege escalation vulnerability exists in the sudo functionality of OpenStack Kolla git master 05194e7618. A misconfiguration in /etc/sudoers wi… Kolla Mitigation only Fix from $1,9502022-12-21 HIGH 7.8 CVE-2022-42046 wfshbr64.sys and wfshbr32.sys specially crafted IOCTL allows arbitrary user to perform local privilege escalation Heaven Burns Red after 2.5.0 Fix from $1,9502022-12-20 CRITICAL 9.8 CVE-2022-46327 Some smartphones have configuration issues. Successful exploitation of this vulnerability may cause privilege escalation, which results in system ser… Harmonyos 2.0+ Fix from $2,3002022-12-20 HIGH 7.2 CVE-2022-31707 vRealize Operations (vROps) contains a privilege escalation vulnerability. VMware has evaluated the severity of this issue to be in the Important sev… Vrealize Operations 8.6.4.20823815+ Fix from $1,9502022-12-16 HIGH 7.1 CVE-2022-42855 A logic issue was addressed with improved state management. This issue is fixed in tvOS 16.2, macOS Monterey 12.6.2, macOS Ventura 13.1, iOS 15.7.2 a… Ipados 12.6.2 / 15.7.2+ Fix from $1,9502022-12-15 HIGH 7.8 CVE-2022-42849 An access issue existed with privileged API calls. This issue was addressed with additional restrictions. This issue is fixed in iOS 16.2 and iPadOS … Ipados 9.2 / 16.2+ Fix from $1,9502022-12-15 HIGH 7.8 CVE-2022-44689 Windows Subsystem for Linux (WSL2) Kernel Elevation of Privilege Vulnerability Windows Subsystem For Linux Patch available Fix from $1,9502022-12-13 MEDIUM 6.5 CVE-2022-38124 Debug tool in Secomea SiteManager allows logged-in administrator to modify system state in an unintended manner. Sitemanager 1129 Firmware 10.0.622425017+ Fix from $1,6002022-12-13 HIGH 7.5 CVE-2022-41268 In some SAP standard roles in SAP Business Planning and Consolidation - versions - SAP_BW 750, 751, 752, 753, 754, 755, 756, 757, DWCORE 200, 300, CP… Business Planning And Consolidation No fix yet Fix from $1,9502022-12-13 CRITICAL 9.8 CVE-2022-4314 Improper Privilege Management in GitHub repository ikus060/rdiffweb prior to 2.5.2. Rdiffweb 2.5.2+ Fix from $2,3002022-12-12 MEDIUM 5.5 CVE-2022-37929 Improper Privilege Management vulnerability in Hewlett Packard Enterprise Nimble Storage Hybrid Flash Arrays and Nimble Storage Secondary Flash Array… Sf100 Firmware 5.2.1.900+ Fix from $1,6002022-12-12 CRITICAL 9.8 CVE-2021-3919 A potential security vulnerability has been identified in OMEN Gaming Hub and in HP Command Center which may allow escalation of privilege and/or den… Command Center 1.10.30.0 / 1101.2112.1.0+ Fix from $2,3002022-12-12 HIGH 8.8 CVE-2022-3641 Elevation of privilege in the Azure SQL Data Source in Devolutions Remote Desktop Manager 2022.3.13 to 2022.3.24 allows an authenticated user to spoo… Remote Desktop Manager 2022.3.26+ Fix from $1,9502022-12-12 HIGH 7.2 CVE-2022-41948 DHIS 2 is an open source information system for data capture, management, validation, analytics and visualization. Affected versions are subject to a… Dhis 2 2.36.12.1 / 2.37.8.1+ Fix from $1,9502022-12-08 HIGH 8.8 CVE-2022-42888 Unauth. Privilege Escalation vulnerability in ARMember premium plugin <= 5.5.1 on WordPress. Armember after 5.5.1 Fix from $1,9502022-12-06 HIGH 8.8 CVE-2022-4173 A vulnerability within the malware removal functionality of Avast and AVG Antivirus allowed an attacker with write access to the filesystem, to escal… Avast after 22.9 Fix from $1,9502022-12-06 MEDIUM 6.7 CVE-2022-32633 In Wi-Fi, there is a possible memory access violation due to a logic error. This could lead to local escalation of privilege with System execution pr… Android Mitigation only Fix from $1,6002022-12-05 HIGH 8.8 CVE-2022-4281 A vulnerability has been found in Facepay 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /fac… Facepay Mitigation only Fix from $1,9502022-12-05 HIGH 8.8 CVE-2022-46410 An issue was discovered in Veritas NetBackup Flex Scale through 3.0. An attacker with non-root privileges may escalate privileges to root by using sp… Netbackup Flex Scale Appliance after 3.0 Fix from $1,9502022-12-04 MEDIUM 6.5 CVE-2022-23737 An improper privilege management vulnerability was identified in GitHub Enterprise Server that allowed users with improper privileges to create or de… Enterprise Server 3.2.20 / 3.3.15+ Fix from $1,6002022-12-01 HIGH 7.8 CVE-2022-3088 UC-8100A-ME-T System Image: Versions v1.0 to v1.6, UC-2100 System Image: Versions v1.0 to v1.12, UC-2100-W System Image: Versions v1.0 to v 1.12,&nbs… Uc 2101 Lx Firmware after 1.12 Fix from $1,9502022-11-28