Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2020-05-14 CVE-2020-12068 Improper Privilege Management vulnerability in Codesys products
An issue was discovered in CODESYS Development System before 3.5.16.0.
network
low complexity
codesys CWE-269
6.4
2020-05-14 CVE-2020-0109 Improper Privilege Management vulnerability in Google Android 10.0/9.0
In simulatePackageSuspendBroadcast of NotificationManagerService.java, there is a missing permission check.
local
low complexity
google CWE-269
4.6
2020-05-14 CVE-2020-0105 Improper Privilege Management vulnerability in Google Android 10.0/9.0
In onKeyguardVisibilityChanged of key_store_service.cpp, there is a missing permission check.
local
low complexity
google CWE-269
4.6
2020-05-14 CVE-2020-0098 Improper Privilege Management vulnerability in Google Android
In navigateUpToLocked of ActivityStack.java, there is a possible permission bypass due to a confused deputy.
local
low complexity
google CWE-269
4.6
2020-05-14 CVE-2020-0097 Improper Privilege Management vulnerability in Google Android 10.0/9.0
In various methods of PackageManagerService.java, there is a possible permission bypass due to a missing condition for system apps.
local
low complexity
google CWE-269
4.6
2020-05-14 CVE-2020-0096 Improper Privilege Management vulnerability in Google Android 8.0/8.1/9.0
In startActivities of ActivityStartController.java, there is a possible escalation of privilege due to a confused deputy.
local
low complexity
google CWE-269
7.2
2020-05-11 CVE-2020-5836 Improper Privilege Management vulnerability in Symantec Endpoint Protection 11/11.0/11.0.1
Symantec Endpoint Protection, prior to 14.3, can potentially reset the ACLs on a file as a limited user while Symantec Endpoint Protection's Tamper Protection feature is disabled.
4.4
2020-05-11 CVE-2020-5538 Improper Privilege Management vulnerability in Jalinfotec Pallet Control 6.2/6.3
Improper Access Control in PALLET CONTROL Ver.
local
low complexity
jalinfotec CWE-269
7.2
2020-05-08 CVE-2020-7291 Improper Privilege Management vulnerability in Mcafee Active Response
Privilege Escalation vulnerability in McAfee Active Response (MAR) for Mac prior to 2.4.3 Hotfix 1 allows a malicious script or program to perform functions that the local executing user has not been granted access to.
local
low complexity
mcafee CWE-269
7.8
2020-05-08 CVE-2020-7290 Improper Privilege Management vulnerability in Mcafee Active Response
Privilege Escalation vulnerability in McAfee Active Response (MAR) for Linux prior to 2.4.3 Hotfix 1 allows a malicious script or program to perform functions that the local executing user has not been granted access to.
local
low complexity
mcafee CWE-269
7.8