VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
> Improper Handling of Insufficient Permissions or Privileges
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2025-05-14
CVE-2025-3931
A flaw was found in Yggdrasil, which acts as a system broker, allowing the processes to communicate to other children's "worker" processes through the DBus component.
local
low complexity
CWE-280
7.8
7.8
2025-05-13
CVE-2025-29826
Improper handling of insufficient permissions or privileges in Microsoft Dataverse allows an authorized attacker to elevate privileges over a network.
network
low complexity
CWE-280
7.3
7.3
2025-03-19
CVE-2024-51459
IBM InfoSphere Information Server 11.7 could allow a local user to execute privileged commands due to the improper handling of permissions.
local
low complexity
CWE-280
8.4
8.4
2024-09-30
CVE-2024-8451
Improper Handling of Insufficient Permissions or Privileges vulnerability in Planet Gs-4210-24P2S Firmware and Gs-4210-24Pl4C Firmware
Certain switch models from PLANET Technology have an SSH service that improperly handles insufficiently authenticated connection requests, allowing unauthorized remote attackers to exploit this weakness to occupy connection slots and prevent legitimate users from accessing the SSH service.
network
low complexity
planet
CWE-280
7.5
7.5