Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2021-08-12 CVE-2020-24576 Improper Privilege Management vulnerability in Netskope
Netskope Client through 77 allows low-privileged users to elevate their privileges to NT AUTHORITY\SYSTEM.
network
low complexity
netskope CWE-269
8.8
2021-08-11 CVE-2021-37627 Improper Privilege Management vulnerability in Contao
Contao is an open source CMS that allows creation of websites and scalable web applications.
network
low complexity
contao CWE-269
7.2
2021-08-10 CVE-2021-21567 Improper Privilege Management vulnerability in Dell Powerscale Onefs 9.0.0.0/9.1.0.0
Dell PowerScale OneFS 9.1.0.x contains an improper privilege management vulnerability.
local
low complexity
dell CWE-269
7.8
2021-08-10 CVE-2021-38140 Improper Privilege Management vulnerability in SET User Project SET User
The set_user extension module before 2.0.1 for PostgreSQL allows a potential privilege escalation using RESET SESSION AUTHORIZATION after set_user().
network
low complexity
set-user-project CWE-269
critical
9.8
2021-08-04 CVE-2021-1572 Improper Privilege Management vulnerability in Cisco Confd and Network Services Orchestrator
A vulnerability in ConfD could allow an authenticated, local attacker to execute arbitrary commands at the level of the account under which ConfD is running, which is commonly root.
local
low complexity
cisco CWE-269
7.8
2021-08-03 CVE-2019-14453 Improper Privilege Management vulnerability in Comelitgroup Away From Home 2.8.0
An issue was discovered in Comelit "App lejos de casa (web)" 2.8.0.
network
low complexity
comelitgroup CWE-269
8.8
2021-08-03 CVE-2021-22421 Improper Privilege Management vulnerability in Huawei Harmonyos 2.0
A component of the HarmonyOS has a Improper Privilege Management vulnerability.
local
low complexity
huawei CWE-269
7.8
2021-08-02 CVE-2021-22396 Improper Privilege Management vulnerability in Huawei Ecns280 TD Firmware and Ese620X Vess Firmware
There is a privilege escalation vulnerability in some Huawei products.
local
low complexity
huawei CWE-269
7.8
2021-08-02 CVE-2021-37167 Improper Privilege Management vulnerability in Swisslog-Healthcare Hmi-3 Control Panel Firmware
An insecure permissions issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7.
network
low complexity
swisslog-healthcare CWE-269
critical
9.8
2021-08-02 CVE-2021-33526 Improper Privilege Management vulnerability in Mbconnectline Mbdialup 3.9R0.0
In MB connect line mbDIALUP versions <= 3.9R0.0 a low privileged local attacker can send a command to the service running with NT AUTHORITY\SYSTEM instructing it to execute a malicous OpenVPN configuration resulting in arbitrary code execution with the privileges of the service.
local
low complexity
mbconnectline CWE-269
7.8