Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2021-11-10 CVE-2021-42291 Improper Privilege Management vulnerability in Microsoft products
Active Directory Domain Services Elevation of Privilege Vulnerability
network
high complexity
microsoft CWE-269
7.5
2021-11-10 CVE-2021-42302 Improper Privilege Management vulnerability in Microsoft Azure Real Time Operating System
Azure RTOS Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
6.6
2021-11-10 CVE-2021-42303 Improper Privilege Management vulnerability in Microsoft Azure Real Time Operating System
Azure RTOS Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
6.6
2021-11-10 CVE-2021-42304 Improper Privilege Management vulnerability in Microsoft Azure Real Time Operating System
Azure RTOS Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
6.6
2021-11-10 CVE-2021-42319 Improper Privilege Management vulnerability in Microsoft Visual Studio 2017 and Visual Studio 2019
Visual Studio Elevation of Privilege Vulnerability
local
high complexity
microsoft CWE-269
4.7
2021-11-10 CVE-2021-42322 Improper Privilege Management vulnerability in Microsoft Visual Studio Code
Visual Studio Code Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-11-10 CVE-2021-36957 Improper Privilege Management vulnerability in Microsoft products
Windows Desktop Bridge Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-11-09 CVE-2019-18916 Improper Privilege Management vulnerability in HP products
A potential security vulnerability has been identified for HP LaserJet Solution Software (for certain HP LaserJet Printers) which may lead to unauthorized elevation of privilege on the client.
local
low complexity
hp CWE-269
4.6
2021-11-05 CVE-2021-25508 Improper Privilege Management vulnerability in Samsung Smartthings
Improper privilege management vulnerability in API Key used in SmartThings prior to 1.7.73.22 allows an attacker to abuse the API key without limitation.
network
low complexity
samsung CWE-269
7.5
2021-11-04 CVE-2021-40124 Improper Privilege Management vulnerability in Cisco Anyconnect Secure Mobility Client
A vulnerability in the Network Access Manager (NAM) module of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to escalate privileges on an affected device.
local
low complexity
cisco CWE-269
7.8