Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2020-01-14 CVE-2020-0613 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles objects in memory, aka 'Windows Search Indexer Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
4.6
2020-01-14 CVE-2019-16784 Improper Privilege Management vulnerability in Pyinstaller
In PyInstaller before version 3.6, only on Windows, a local privilege escalation vulnerability is present in this particular case: If a software using PyInstaller in "onefile" mode is launched by a privileged user (at least more than the current one) which have his "TempPath" resolving to a world writable directory.
4.4
2020-01-13 CVE-2012-4761 Improper Privilege Management vulnerability in Safend Data Protector Agent 3.4.5586.9772
A Privilege Escalation vulnerability exists in the unquoted Service Binary in SDPAgent or SDBAgent in Safend Data Protector Agent 3.4.5586.9772, which could let a local malicious user obtain privileges.
local
low complexity
safend CWE-269
7.2
2020-01-13 CVE-2012-4760 Improper Privilege Management vulnerability in Safend Data Protector Agent 3.4.5586.9772
A Privilege Escalation vulnerability exists in the SDBagent service in Safend Data Protector Agent 3.4.5586.9772, which could let a local malicious user obtain privileges.
local
low complexity
safend CWE-269
7.2
2020-01-13 CVE-2020-6949 Improper Privilege Management vulnerability in Hashbrowncms Hashbrown CMS
A privilege escalation issue was discovered in the postUser function in HashBrown CMS through 1.3.3.
network
low complexity
hashbrowncms CWE-269
6.5
2020-01-13 CVE-2019-19728 Improper Privilege Management vulnerability in multiple products
SchedMD Slurm before 18.08.9 and 19.x before 19.05.5 executes srun --uid with incorrect privileges.
6.0
2020-01-13 CVE-2012-4767 Improper Privilege Management vulnerability in Safend Data Protector Agent 3.4.5586.9772
An issue exists in Safend Data Protector Agent 3.4.5586.9772 in the securitylayer.log file in the logs.9972 directory, which could let a malicious user decrypt and potentially change the Safend security policies applied to the machine.
local
low complexity
safend CWE-269
3.6
2020-01-10 CVE-2013-6231 Improper Privilege Management vulnerability in ENG Spagobi 4.0
SpagoBI before 4.1 has Privilege Escalation via an error in the AdapterHTTP script
network
low complexity
eng CWE-269
critical
9.0
2020-01-08 CVE-2020-0001 Improper Privilege Management vulnerability in Google Android
In getProcessRecordLocked of ActivityManagerService.java isolated apps are not handled correctly.
local
low complexity
google CWE-269
7.2
2020-01-08 CVE-2019-19544 Improper Privilege Management vulnerability in Broadcom CA Automic Dollar Universe 5.3.3
CA Automic Dollar Universe 5.3.3 contains a vulnerability, related to the uxdqmsrv binary being setuid root, that allows local attackers to elevate privileges.
local
low complexity
broadcom CWE-269
7.2