Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2023-05-12 CVE-2023-29819 Improper Privilege Management vulnerability in Webroot Secureanywhere
An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to bypass protections via a crafted payload.
local
low complexity
webroot CWE-269
5.5
2023-05-09 CVE-2020-23362 Improper Privilege Management vulnerability in Yershop Project Yershop
Insecure Permissons vulnerability found in Shop_CMS YerShop all versions allows a remote attacker to escalate privileges via the cover_id parameter.
network
low complexity
yershop-project CWE-269
7.1
2023-04-28 CVE-2023-1966 Improper Privilege Management vulnerability in Illumina products
Instruments with Illumina Universal Copy Service v1.x and v2.x contain an unnecessary privileges vulnerability.
network
low complexity
illumina CWE-269
critical
9.8
2023-04-28 CVE-2023-30024 Improper Privilege Management vulnerability in Magicjack A921 Firmware 1.4
The MagicJack device, a VoIP solution for internet phone calls, contains a hidden NAND flash memory partition allowing unauthorized read/write access.
low complexity
magicjack CWE-269
6.6
2023-04-27 CVE-2023-26244 Improper Privilege Management vulnerability in Hyundai Gen5W L In-Vehicle Infotainment System Firmware 5W.Xxx.S5Wl.001.001.221129/Aeepeeur.S5Wl001.001.211214
An issue was discovered in the Hyundai Gen5W_L in-vehicle infotainment system AE_E_PE_EUR.S5W_L001.001.211214.
local
low complexity
hyundai CWE-269
7.8
2023-04-27 CVE-2023-26245 Improper Privilege Management vulnerability in Hyundai Gen5W L In-Vehicle Infotainment System Firmware 5W.Xxx.S5Wl.001.001.221129/Aeepeeur.S5Wl001.001.211214
An issue was discovered in the Hyundai Gen5W_L in-vehicle infotainment system AE_E_PE_EUR.S5W_L001.001.211214.
local
low complexity
hyundai CWE-269
7.8
2023-04-27 CVE-2023-26246 Improper Privilege Management vulnerability in Hyundai Gen5W L In-Vehicle Infotainment System Firmware 5W.Xxx.S5Wl.001.001.221129/Aeepeeur.S5Wl001.001.211214
An issue was discovered in the Hyundai Gen5W_L in-vehicle infotainment system AE_E_PE_EUR.S5W_L001.001.211214.
local
low complexity
hyundai CWE-269
7.8
2023-04-24 CVE-2023-25133 Improper Privilege Management vulnerability in Cyberpower Powerpanel 4.8.6
Improper privilege management vulnerability in default.cmd file in PowerPanel Business Local/Remote for Windows v4.8.6 and earlier, PowerPanel Business Management for Windows v4.8.6 and earlier, PowerPanel Business Local/Remote for Linux 32bit v4.8.6 and earlier, PowerPanel Business Local/Remote for Linux 64bit v4.8.6 and earlier, PowerPanel Business Management for Linux 32bit v4.8.6 and earlier, PowerPanel Business Management for Linux 64bit v4.8.6 and earlier, PowerPanel Business Local/Remote for MacOS v4.8.6 and earlier, and PowerPanel Business Management for MacOS v4.8.6 and earlier allows remote attackers to execute operation system commands via unspecified vectors.
network
low complexity
cyberpower CWE-269
critical
9.8
2023-04-21 CVE-2022-47505 Improper Privilege Management vulnerability in Solarwinds Orion Platform
The SolarWinds Platform was susceptible to the Local Privilege Escalation Vulnerability.
local
low complexity
solarwinds CWE-269
7.8
2023-04-19 CVE-2023-22645 Improper Privilege Management vulnerability in Linuxfoundation Kubewarden-Controller
An Improper Privilege Management vulnerability in SUSE kubewarden allows attackers to read arbitrary secrets if they get access to the ServiceAccount kubewarden-controller This issue affects: SUSE kubewarden kubewarden-controller versions prior to 1.6.0.
network
low complexity
linuxfoundation CWE-269
8.8