Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2023-09-15 CVE-2023-4662 Improper Privilege Management vulnerability in Saphira Connect
Execution with Unnecessary Privileges vulnerability in Saphira Saphira Connect allows Remote Code Inclusion.This issue affects Saphira Connect: before 9.
network
low complexity
saphira CWE-269
critical
9.8
2023-09-15 CVE-2023-36657 Improper Privilege Management vulnerability in Opswat Metadefender Kiosk
An issue was discovered in OPSWAT MetaDefender KIOSK 4.6.1.9996.
network
low complexity
opswat CWE-269
critical
9.8
2023-09-13 CVE-2023-4701 Improper Privilege Management vulnerability in multiple products
A Improper Privilege Management vulnerability through an incorrect use of privileged APIs in CodeMeter Runtime versions prior to 7.60c allow a local, low privileged attacker to use an API call for escalation of privileges in order gain full admin access on the host system.
local
low complexity
wibu trumpf CWE-269
7.8
2023-09-11 CVE-2023-4278 Improper Privilege Management vulnerability in Stylemixthemes Masterstudy LMS
The MasterStudy LMS WordPress Plugin WordPress plugin before 3.0.18 does not have proper checks in place during registration allowing anyone to register on the site as an instructor.
network
low complexity
stylemixthemes CWE-269
7.5
2023-09-07 CVE-2023-20193 Improper Privilege Management vulnerability in Cisco Identity Services Engine
A vulnerability in the Embedded Service Router (ESR) of Cisco ISE could allow an authenticated, local attacker to read, write, or delete arbitrary files on the underlying operating system and escalate their privileges to root.
local
low complexity
cisco CWE-269
6.7
2023-09-07 CVE-2023-20194 Improper Privilege Management vulnerability in Cisco Identity Services Engine
A vulnerability in the ERS API of Cisco ISE could allow an authenticated, remote attacker to read arbitrary files on the underlying operating system of an affected device.
network
low complexity
cisco CWE-269
4.9
2023-09-06 CVE-2023-41053 Improper Privilege Management vulnerability in Redis
Redis is an in-memory database that persists on disk.
local
low complexity
redis CWE-269
3.3
2023-09-06 CVE-2020-10129 Improper Privilege Management vulnerability in Searchblox
SearchBlox before Version 9.2.1 is vulnerable to Privileged Escalation-Lower user is able to access Admin functionality.
network
low complexity
searchblox CWE-269
8.8
2023-09-06 CVE-2023-30713 Improper Privilege Management vulnerability in Samsung Android 11.0/12.0
Improper privilege management vulnerability in FolderLockNotifier in One UI Home prior to SMR Sep-2023 Release 1 allows local attackers to change some settings of the folder lock.
local
low complexity
samsung CWE-269
5.5
2023-09-05 CVE-2023-40918 Improper Privilege Management vulnerability in Knowstreaming Project Knowstreaming 3.3.0
KnowStreaming 3.3.0 is vulnerable to Escalation of Privileges.
network
low complexity
knowstreaming-project CWE-269
8.8