Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2017-08-18 CVE-2017-8446 Improper Privilege Management vulnerability in Elasticsearch X-Pack and X-Pack Reporting
The Reporting feature in X-Pack in versions prior to 5.5.2 and standalone Reporting plugin versions versions prior to 2.4.6 had an impersonation vulnerability.
network
low complexity
elasticsearch CWE-269
5.3
2017-08-17 CVE-2017-6767 Improper Privilege Management vulnerability in Cisco Application Policy Infrastructure Controller
A vulnerability in Cisco Application Policy Infrastructure Controller (APIC) could allow an authenticated, remote attacker to gain higher privileges than the account is assigned.
network
high complexity
cisco CWE-269
7.1
2017-08-14 CVE-2017-9662 Improper Privilege Management vulnerability in Fujielectric Monitouch V-Sft 5.4.42.0
An Improper Privilege Management issue was discovered in Fuji Electric Monitouch V-SFT versions prior to Version 5.4.43.0.
local
low complexity
fujielectric CWE-269
5.3
2017-08-08 CVE-2017-10142 Improper Privilege Management vulnerability in Oracle Hospitality Reporting and Analytics 8.5.1/9.0.0
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: Mobile Apps).
network
low complexity
oracle CWE-269
5.4
2017-08-08 CVE-2017-10104 Improper Privilege Management vulnerability in Oracle Java Advanced Management Console 2.6
Vulnerability in the Java Advanced Management Console component of Oracle Java SE (subcomponent: Server).
network
low complexity
oracle CWE-269
7.4
2017-08-08 CVE-2017-10103 Improper Privilege Management vulnerability in Oracle Flexcube Private Banking
Vulnerability in the Oracle FLEXCUBE Private Banking component of Oracle Financial Services Applications (subcomponent: Miscellaneous).
network
low complexity
oracle CWE-269
6.5
2017-08-08 CVE-2017-10098 Improper Privilege Management vulnerability in Oracle Flexcube Universal Banking
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Infrastructure).
network
low complexity
oracle CWE-269
5.4
2017-08-08 CVE-2017-10094 Improper Privilege Management vulnerability in Oracle Agile Product Lifecycle Management Framework 9.3.5/9.3.6
Vulnerability in the Oracle Agile PLM component of Oracle Supply Chain Products Suite (subcomponent: Security).
network
low complexity
oracle CWE-269
5.4
2017-08-08 CVE-2017-10046 Improper Privilege Management vulnerability in Oracle Primavera P6 Enterprise Project Portfolio Management
Vulnerability in the Primavera P6 Enterprise Project Portfolio Management component of Oracle Primavera Products Suite (subcomponent: Web Access).
network
low complexity
oracle CWE-269
5.4
2017-08-08 CVE-2017-10000 Improper Privilege Management vulnerability in Oracle Hospitality Reporting and Analytics 8.5.1/9.0.0
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: Reporting).
network
low complexity
oracle CWE-269
7.7