Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2022-03-11 CVE-2022-22141 Improper Privilege Management vulnerability in Yokogawa products
'Long-term Data Archive Package' service implemented in the following Yokogawa Electric products creates some named pipe with imporper ACL configuration.
4.4
2022-03-10 CVE-2022-24750 Improper Privilege Management vulnerability in Uvnc Ultravnc
UltraVNC is a free and open source remote pc access software.
local
low complexity
uvnc CWE-269
7.8
2022-03-10 CVE-2022-20051 Improper Privilege Management vulnerability in Google Android 11.0/12.0
In ims service, there is a possible unexpected application behavior due to incorrect privilege assignment.
local
low complexity
google CWE-269
2.1
2022-03-09 CVE-2022-23296 Improper Privilege Management vulnerability in Microsoft products
Windows Installer Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2022-03-08 CVE-2022-24408 Improper Privilege Management vulnerability in Siemens Sinumerik MC Firmware and Sinumerik ONE Firmware
A vulnerability has been identified in SINUMERIK MC (All versions < V1.15 SP1), SINUMERIK ONE (All versions < V6.15 SP1).
local
low complexity
siemens CWE-269
7.2
2022-03-08 CVE-2022-25311 Improper Privilege Management vulnerability in Siemens Sinec Network Management System and Sinema Server
A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All versions < V1.0.3), SINEMA Server V14 (All versions).
local
low complexity
siemens CWE-269
7.3
2022-03-03 CVE-2022-25089 Improper Privilege Management vulnerability in Kofax Printix 1.3.1106.0
Printix Secure Cloud Print Management through 1.3.1106.0 incorrectly uses Privileged APIs to modify values in HKEY_LOCAL_MACHINE via UITasks.PersistentRegistryData.
network
low complexity
kofax CWE-269
7.5
2022-02-25 CVE-2022-23921 Improper Privilege Management vulnerability in GE Proficy Cimplicitiy
Exploitation of this vulnerability may result in local privilege escalation and code execution.
local
high complexity
ge CWE-269
3.7
2022-02-24 CVE-2022-25636 Improper Privilege Management vulnerability in multiple products
net/netfilter/nf_dup_netdev.c in the Linux kernel 5.4 through 5.6.10 allows local users to gain privileges because of a heap out-of-bounds write.
local
low complexity
linux debian netapp oracle CWE-269
7.8
2022-02-20 CVE-2022-25372 Improper Privilege Management vulnerability in Pritunl Pritunl-Client-Electron
Pritunl Client through 1.2.3019.52 on Windows allows local privilege escalation, related to an ACL entry for CREATOR OWNER in platform_windows.go.
local
low complexity
pritunl CWE-269
7.2