Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2022-10-12 CVE-2022-2249 Improper Privilege Management vulnerability in Avaya Aura Communication Manager
Privilege escalation related vulnerabilities were discovered in Avaya Aura Communication Manager that may allow local administrative users to escalate their privileges.
local
low complexity
avaya CWE-269
6.7
2022-10-07 CVE-2022-3422 Improper Privilege Management vulnerability in Tooljet
Account Takeover :: when see the info i can see the hash pass i can creaked it ...............
network
low complexity
tooljet CWE-269
7.5
2022-10-06 CVE-2022-2637 Improper Privilege Management vulnerability in Hitachi Storage Plug-In 04.8.0
Incorrect Privilege Assignment vulnerability in Hitachi Hitachi Storage Plug-in for VMware vCenter allows remote authenticated users to cause privilege escalation.This issue affects Hitachi Storage Plug-in for VMware vCenter: from 04.8.0 before 04.9.0.
network
low complexity
hitachi CWE-269
8.8
2022-09-28 CVE-2022-39032 Improper Privilege Management vulnerability in Lcnet Smart Evision 2022.02.21
Smart eVision has an improper privilege management vulnerability.
network
low complexity
lcnet CWE-269
8.8
2022-09-27 CVE-2022-41604 Improper Privilege Management vulnerability in Checkpoint Zonealarm
Check Point ZoneAlarm Extreme Security before 15.8.211.19229 allows local users to escalate privileges.
local
low complexity
checkpoint CWE-269
8.8
2022-09-21 CVE-2022-3068 Improper Privilege Management vulnerability in Octoprint
Improper Privilege Management in GitHub repository octoprint/octoprint prior to 1.8.3.
network
low complexity
octoprint CWE-269
8.8
2022-09-20 CVE-2022-3079 Improper Privilege Management vulnerability in Festo Cpx-Cec-C1 Firmware and Cpx-Cmxx Firmware
Festo control block CPX-CEC-C1 and CPX-CMXX in multiple versions allow unauthenticated, remote access to critical webpage functions which may cause a denial of service.
network
low complexity
festo CWE-269
7.5
2022-09-19 CVE-2022-38351 Improper Privilege Management vulnerability in Supremainc Biostar 2 2.8.16
A vulnerability in Suprema BioStar (aka Bio Star) 2 v2.8.16 allows attackers to escalate privileges to System Administrator via a crafted PUT request to the update profile page.
network
low complexity
supremainc CWE-269
8.8
2022-09-19 CVE-2022-40142 Improper Privilege Management vulnerability in Trendmicro Apex ONE 2019
A security link following local privilege escalation vulnerability in Trend Micro Apex One and Trend Micro Apex One as a Service agents could allow a local attacker to create a writable folder in an arbitrary location and escalate privileges on affected installations.
local
low complexity
trendmicro CWE-269
7.8
2022-09-15 CVE-2022-36075 Improper Privilege Management vulnerability in Nextcloud Files Access Control
Nextcloud files access control is a nextcloud app to manage access control for files.
network
low complexity
nextcloud CWE-269
4.3