Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2019-09-11 CVE-2019-16098 Improper Privilege Management vulnerability in MSI Afterburner 4.6.2.15658
The driver in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any authenticated user to read and write to arbitrary memory, I/O ports, and MSRs.
local
low complexity
msi CWE-269
7.2
2019-09-10 CVE-2019-15896 Improper Privilege Management vulnerability in Lifterlms
An issue was discovered in the LifterLMS plugin through 3.34.5 for WordPress.
network
low complexity
lifterlms CWE-269
7.5
2019-09-10 CVE-2019-16202 Improper Privilege Management vulnerability in Misp
MISP before 2.4.115 allows privilege escalation in certain situations.
network
low complexity
misp CWE-269
4.0
2019-09-10 CVE-2017-18596 Improper Privilege Management vulnerability in Elementor Page Builder
The elementor plugin before 1.8.0 for WordPress has incorrect access control for internal functions.
network
low complexity
elementor CWE-269
6.5
2019-09-09 CVE-2019-6997 Improper Privilege Management vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition 10.x (starting in 10.7) and 11.x before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1.
network
low complexity
gitlab CWE-269
4.0
2019-09-09 CVE-2019-6996 Improper Privilege Management vulnerability in Gitlab
An issue was discovered in GitLab Enterprise Edition 10.x (starting in 10.6) and 11.x before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1.
network
low complexity
gitlab CWE-269
4.0
2019-09-09 CVE-2019-6794 Improper Privilege Management vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1.
network
low complexity
gitlab CWE-269
4.0
2019-09-09 CVE-2019-6789 Improper Privilege Management vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1.
network
low complexity
gitlab CWE-269
4.0
2019-09-09 CVE-2018-21013 Improper Privilege Management vulnerability in Upperthemes Swape 1.1/1.2
The Swape theme before 1.2.1 for WordPress has incorrect access control, as demonstrated by allowing new administrator accounts via vectors involving xmlPath to wp-admin/admin-ajax.php.
network
low complexity
upperthemes CWE-269
7.5
2019-09-06 CVE-2019-9443 Improper Privilege Management vulnerability in Google Android
In the Android kernel in the vl53L0 driver there is a possible out of bounds write due to a permissions bypass.
local
low complexity
google CWE-269
4.6