Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2022-12-10 CVE-2022-23485 Improper Privilege Management vulnerability in Sentry
Sentry is an error tracking and performance monitoring platform.
network
high complexity
sentry CWE-269
3.7
2022-12-09 CVE-2022-4264 Improper Privilege Management vulnerability in M-Files
Incorrect Privilege Assignment in M-Files Web (Classic) in M-Files before 22.8.11691.0 allows low privilege user to change some configuration.
network
low complexity
m-files CWE-269
4.3
2022-12-08 CVE-2022-41948 Improper Privilege Management vulnerability in Dhis2 Dhis 2
DHIS 2 is an open source information system for data capture, management, validation, analytics and visualization.
network
low complexity
dhis2 CWE-269
7.2
2022-12-06 CVE-2022-42888 Improper Privilege Management vulnerability in Armemberplugin Armember
Unauth.
network
low complexity
armemberplugin CWE-269
8.8
2022-12-06 CVE-2022-4173 Improper Privilege Management vulnerability in Avast and AVG Antivirus
A vulnerability within the malware removal functionality of Avast and AVG Antivirus allowed an attacker with write access to the filesystem, to escalate his privileges in certain scenarios.
network
low complexity
avast CWE-269
8.8
2022-12-05 CVE-2022-32633 Improper Privilege Management vulnerability in multiple products
In Wi-Fi, there is a possible memory access violation due to a logic error.
local
low complexity
google yoctoproject CWE-269
6.7
2022-12-05 CVE-2022-4281 Improper Privilege Management vulnerability in Facepay Project Facepay 1.0
A vulnerability has been found in Facepay 1.0 and classified as critical.
network
low complexity
facepay-project CWE-269
8.8
2022-12-02 CVE-2022-4270 Improper Privilege Management vulnerability in M-Files Server 22.2.11051.0/22.3.11237.3
Incorrect privilege assignment issue in M-Files Web in M-Files Web versions before 22.5.11436.1 could have changed permissions accidentally.
network
high complexity
m-files CWE-269
2.6
2022-12-01 CVE-2022-23737 Improper Privilege Management vulnerability in Github Enterprise Server
An improper privilege management vulnerability was identified in GitHub Enterprise Server that allowed users with improper privileges to create or delete pages via the API.
network
low complexity
github CWE-269
6.5
2022-11-30 CVE-2022-1606 Improper Privilege Management vulnerability in M-Files Server 22.2.11051.0
Incorrect privilege assignment in M-Files Server versions before 22.3.11164.0 and before 22.3.11237.1 allows user to read unmanaged objects.
network
low complexity
m-files CWE-269
4.3