Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2022-07-12 CVE-2022-33709 Improper Privilege Management vulnerability in Samsung Galaxy Store 4.5.32.4/4.5.36.4
Improper input validation vulnerability in ApexPackageInstaller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities as Galaxy Store privilege.
local
low complexity
samsung CWE-269
7.8
2022-07-12 CVE-2022-33710 Improper Privilege Management vulnerability in Samsung Galaxy Store 4.5.32.4/4.5.36.4
Improper input validation vulnerability in BillingPackageInsraller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities as Galaxy Store privilege.
local
low complexity
samsung CWE-269
7.8
2022-06-30 CVE-2022-23720 Improper Privilege Management vulnerability in Pingidentity Pingid Integration for Windows Login
PingID Windows Login prior to 2.8 does not alert or halt operation if it has been provisioned with the full permissions PingID properties file.
local
low complexity
pingidentity CWE-269
8.2
2022-06-30 CVE-2017-20121 Improper Privilege Management vulnerability in Teradici Pcoip Management Console 2.2.0
A vulnerability was found in Teradici Management Console 2.2.0.
local
low complexity
teradici CWE-269
7.8
2022-06-28 CVE-2017-20107 Improper Privilege Management vulnerability in Shadeyouvpn.Com Project Shadeyouvpn.Com 2.0.1.11
A vulnerability, which was classified as problematic, was found in ShadeYouVPN.com Client 2.0.1.11.
local
low complexity
shadeyouvpn-com-project CWE-269
7.8
2022-06-24 CVE-2022-22390 Improper Privilege Management vulnerability in IBM DB2
IBM Db2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, 11.1, and 11.5 may be vulnerable to an information disclosure caused by improper privilege management when table function is used.
network
low complexity
ibm CWE-269
7.5
2022-06-24 CVE-2020-21046 Improper Privilege Management vulnerability in Softonic Eagleget 2.1.5.20
A local privilege escalation vulnerability was identified within the "luminati_net_updater_win_eagleget_com" service in EagleGet Downloader version 2.1.5.20 Stable.
local
low complexity
softonic CWE-269
7.8
2022-06-24 CVE-2022-1517 Improper Privilege Management vulnerability in Illumina Local RUN Manager 1.3/2.0/3.1
LRM utilizes elevated privileges.
network
low complexity
illumina CWE-269
critical
9.8
2022-06-23 CVE-2022-29526 Improper Privilege Management vulnerability in multiple products
Go before 1.17.10 and 1.18.x before 1.18.2 has Incorrect Privilege Assignment.
network
low complexity
golang fedoraproject netapp CWE-269
5.3
2022-06-23 CVE-2022-32535 Improper Privilege Management vulnerability in Bosch Pra-Es8P2S Firmware 1.01.05
The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 runs its web server with root privilege.
network
low complexity
bosch CWE-269
critical
9.8