Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2019-10-14 CVE-2019-9745 Improper Privilege Management vulnerability in Cloudcti HIP Integrator Recognition Configuration Tool
CloudCTI HIP Integrator Recognition Configuration Tool allows privilege escalation via its EXQUISE integration.
local
low complexity
cloudcti CWE-269
7.2
2019-10-14 CVE-2019-14838 Improper Privilege Management vulnerability in Redhat products
A flaw was found in wildfly-core before 7.2.5.GA.
network
low complexity
redhat CWE-269
4.0
2019-10-08 CVE-2018-21025 Improper Privilege Management vulnerability in Centreon VM 19.04.2/19.04.3
In Centreon VM through 19.04.3, centreon-backup.pl allows attackers to become root via a crafted script, due to incorrect rights of sourced configuration files.
network
low complexity
centreon CWE-269
critical
10.0
2019-10-07 CVE-2019-15747 Improper Privilege Management vulnerability in Sitos SIX 6.2.1
SITOS six Build v6.2.1 allows a user with the user role of Seminar Coordinator to escalate their permission to the Systemadministrator role due to insufficient checks on the server side.
network
low complexity
sitos CWE-269
6.5
2019-09-30 CVE-2019-4112 Improper Privilege Management vulnerability in IBM Websphere Extreme Scale
IBM WebSphere eXtreme Scale 8.6 Admin Console allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm CWE-269
3.3
2019-09-27 CVE-2018-9425 Improper Privilege Management vulnerability in Google Android 10.0
In Platform, there is a possible bypass of user interaction requirements due to missing permission checks.
local
low complexity
google CWE-269
4.6
2019-09-26 CVE-2019-11279 Improper Privilege Management vulnerability in Cloudfoundry UAA Release
CF UAA versions prior to 74.1.0 can request scopes for a client that shouldn't be allowed by submitting an array of requested scopes.
network
low complexity
cloudfoundry CWE-269
6.5
2019-09-24 CVE-2019-14220 Improper Privilege Management vulnerability in Bluestacks
An issue was discovered in BlueStacks 4.110 and below on macOS and on 4.120 and below on Windows.
local
low complexity
bluestacks CWE-269
4.9
2019-09-20 CVE-2019-11280 Improper Privilege Management vulnerability in Pivotal Software Pivotal Application Service
Pivotal Apps Manager, included in Pivotal Application Service versions 2.3.x prior to 2.3.18, 2.4.x prior to 2.4.14, 2.5.x prior to 2.5.10, and 2.6.x prior to 2.6.5, contains an invitations microservice which allows users to invite others to their organizations.
network
low complexity
pivotal-software CWE-269
6.5
2019-09-20 CVE-2016-11011 Improper Privilege Management vulnerability in Usabilitydynamics Wp-Invoice
The wp-invoice plugin before 4.1.1 for WordPress has wpi_update_user_option privilege escalation.
network
low complexity
usabilitydynamics CWE-269
4.0