Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2022-10-21 CVE-2022-34438 Improper Privilege Management vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.4.0.x, contain a privilege context switching error.
local
low complexity
dell CWE-269
6.7
2022-10-19 CVE-2022-41835 Improper Privilege Management vulnerability in F5 F5Os-A and F5Os-C
In F5OS-A version 1.x before 1.1.0 and F5OS-C version 1.x before 1.5.0, excessive file permissions in F5OS allows an authenticated local attacker to execute limited set of commands in a container and impact the F5OS controller.
local
low complexity
f5 CWE-269
8.8
2022-10-18 CVE-2022-22239 Improper Privilege Management vulnerability in Juniper Junos OS Evolved
An Execution with Unnecessary Privileges vulnerability in Management Daemon (mgd) of Juniper Networks Junos OS Evolved allows a locally authenticated attacker with low privileges to escalate their privileges on the device and potentially remote systems.
local
low complexity
juniper CWE-269
8.8
2022-10-17 CVE-2022-3421 Improper Privilege Management vulnerability in Google Drive
An attacker can pre-create the `/Applications/Google\ Drive.app/Contents/MacOS` directory which is expected to be owned by root to be owned by a non-root user.
local
low complexity
google CWE-269
7.3
2022-10-12 CVE-2022-2249 Improper Privilege Management vulnerability in Avaya Aura Communication Manager
Privilege escalation related vulnerabilities were discovered in Avaya Aura Communication Manager that may allow local administrative users to escalate their privileges.
local
low complexity
avaya CWE-269
6.7
2022-10-07 CVE-2022-3422 Improper Privilege Management vulnerability in Tooljet
Account Takeover :: when see the info i can see the hash pass i can creaked it ...............
network
low complexity
tooljet CWE-269
7.5
2022-10-06 CVE-2022-2637 Improper Privilege Management vulnerability in Hitachi Storage Plug-In 04.8.0
Incorrect Privilege Assignment vulnerability in Hitachi Hitachi Storage Plug-in for VMware vCenter allows remote authenticated users to cause privilege escalation.This issue affects Hitachi Storage Plug-in for VMware vCenter: from 04.8.0 before 04.9.0.
network
low complexity
hitachi CWE-269
8.8
2022-09-28 CVE-2022-39032 Improper Privilege Management vulnerability in Lcnet Smart Evision 2022.02.21
Smart eVision has an improper privilege management vulnerability.
network
low complexity
lcnet CWE-269
8.8
2022-09-27 CVE-2022-41604 Improper Privilege Management vulnerability in Checkpoint Zonealarm
Check Point ZoneAlarm Extreme Security before 15.8.211.19229 allows local users to escalate privileges.
local
low complexity
checkpoint CWE-269
8.8
2022-09-13 CVE-2022-22483 Improper Privilege Management vulnerability in IBM DB2
IBM Db2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to an information disclosure in some scenarios due to unauthorized access caused by improper privilege management when CREATE OR REPLACE command is used.
network
low complexity
ibm CWE-269
6.5