Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2023-04-06 CVE-2023-20655 Improper Privilege Management vulnerability in Google Android
In mmsdk, there is a possible escalation of privilege due to a parcel format mismatch.
local
low complexity
google CWE-269
7.8
2023-04-05 CVE-2023-0959 Improper Privilege Management vulnerability in Imaworldhealth Bhima 1.27.0
Bhima version 1.27.0 allows a remote attacker to update the privileges of any account registered in the application via a malicious link sent to an administrator.
network
low complexity
imaworldhealth CWE-269
6.5
2023-04-05 CVE-2023-28855 Improper Privilege Management vulnerability in Teclib-Edition Fields
Fields is a GLPI plugin that allows users to add custom fields on GLPI items forms.
network
low complexity
teclib-edition CWE-269
6.5
2023-04-05 CVE-2023-28632 Improper Privilege Management vulnerability in Glpi-Project Glpi
GLPI is a free asset and IT management software package.
network
low complexity
glpi-project CWE-269
8.1
2023-04-04 CVE-2022-48227 Improper Privilege Management vulnerability in Gbgplc Acuant Asureid Sentinel
An issue was discovered in Acuant AsureID Sentinel before 5.2.149.
local
low complexity
gbgplc CWE-269
7.8
2023-04-04 CVE-2022-48226 Improper Privilege Management vulnerability in Gbgplc Acuant Acufill SDK
An issue was discovered in Acuant AcuFill SDK before 10.22.02.03.
local
low complexity
gbgplc CWE-269
7.8
2023-03-31 CVE-2023-1762 Improper Privilege Management vulnerability in PHPmyfaq
Improper Privilege Management in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
network
low complexity
phpmyfaq CWE-269
8.8
2023-03-29 CVE-2017-6894 Improper Privilege Management vulnerability in Flexera Flexnet Manager and Flexnet Manager Suite 2015
A vulnerability exists in FlexNet Manager Suite releases 2015 R2 SP3 and earlier (including FlexNet Manager Platform 9.2 and earlier) that affects the inventory gathering components and can be exploited by local users to perform certain actions with elevated privileges on the local system.
local
low complexity
flexera CWE-269
7.8
2023-03-29 CVE-2023-0664 Improper Privilege Management vulnerability in multiple products
A flaw was found in the QEMU Guest Agent service for Windows.
local
low complexity
qemu redhat fedoraproject CWE-269
7.8
2023-03-23 CVE-2023-28436 Improper Privilege Management vulnerability in Tailscale
Tailscale is software for using Wireguard and multi-factor authentication (MFA).
low complexity
tailscale CWE-269
8.0