Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2023-09-15 CVE-2023-4662 Improper Privilege Management vulnerability in Saphira Connect
Execution with Unnecessary Privileges vulnerability in Saphira Saphira Connect allows Remote Code Inclusion.This issue affects Saphira Connect: before 9.
network
low complexity
saphira CWE-269
critical
9.8
2023-09-15 CVE-2023-36657 Improper Privilege Management vulnerability in Opswat Metadefender Kiosk
An issue was discovered in OPSWAT MetaDefender KIOSK 4.6.1.9996.
network
low complexity
opswat CWE-269
critical
9.8
2023-09-07 CVE-2023-20193 Improper Privilege Management vulnerability in Cisco Identity Services Engine
A vulnerability in the Embedded Service Router (ESR) of Cisco ISE could allow an authenticated, local attacker to read, write, or delete arbitrary files on the underlying operating system and escalate their privileges to root.
local
low complexity
cisco CWE-269
6.7
2023-09-07 CVE-2023-20194 Improper Privilege Management vulnerability in Cisco Identity Services Engine
A vulnerability in the ERS API of Cisco ISE could allow an authenticated, remote attacker to read arbitrary files on the underlying operating system of an affected device.
network
low complexity
cisco CWE-269
4.9
2023-09-06 CVE-2023-41053 Improper Privilege Management vulnerability in Redis
Redis is an in-memory database that persists on disk.
local
low complexity
redis CWE-269
3.3
2023-09-06 CVE-2020-10129 Improper Privilege Management vulnerability in Searchblox
SearchBlox before Version 9.2.1 is vulnerable to Privileged Escalation-Lower user is able to access Admin functionality.
network
low complexity
searchblox CWE-269
8.8
2023-09-06 CVE-2023-30713 Improper Privilege Management vulnerability in Samsung Android 11.0/12.0
Improper privilege management vulnerability in FolderLockNotifier in One UI Home prior to SMR Sep-2023 Release 1 allows local attackers to change some settings of the folder lock.
local
low complexity
samsung CWE-269
5.5
2023-09-05 CVE-2023-40918 Improper Privilege Management vulnerability in Knowstreaming Project Knowstreaming 3.3.0
KnowStreaming 3.3.0 is vulnerable to Escalation of Privileges.
network
low complexity
knowstreaming-project CWE-269
8.8
2023-09-01 CVE-2023-4697 Improper Privilege Management vulnerability in Usememos Memos
Improper Privilege Management in GitHub repository usememos/memos prior to 0.13.2.
network
low complexity
usememos CWE-269
8.8
2023-08-31 CVE-2023-31175 Improper Privilege Management vulnerability in Selinc Sel-5037 SEL Grid Configurator
An Execution with Unnecessary Privileges vulnerability in the Schweitzer Engineering Laboratories SEL-5037 SEL Grid Configurator could allow an attacker to run system commands with the highest level privilege on the system. See Instruction Manual Appendix A and Appendix E dated 20230615 for more details. This issue affects SEL-5037 SEL Grid Configurator: before 4.5.0.20.
network
low complexity
selinc CWE-269
critical
9.8