Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2021-11-10 CVE-2021-42302 Improper Privilege Management vulnerability in Microsoft Azure Real Time Operating System
Azure RTOS Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
6.6
2021-11-10 CVE-2021-42303 Improper Privilege Management vulnerability in Microsoft Azure Real Time Operating System
Azure RTOS Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
6.6
2021-11-10 CVE-2021-42304 Improper Privilege Management vulnerability in Microsoft Azure Real Time Operating System
Azure RTOS Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
6.6
2021-11-10 CVE-2021-42319 Improper Privilege Management vulnerability in Microsoft Visual Studio 2017
Visual Studio Elevation of Privilege Vulnerability
local
high complexity
microsoft CWE-269
4.7
2021-11-10 CVE-2021-42322 Improper Privilege Management vulnerability in Microsoft Visual Studio Code
Visual Studio Code Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-11-10 CVE-2021-36957 Improper Privilege Management vulnerability in Microsoft products
Windows Desktop Bridge Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-11-09 CVE-2019-18916 Improper Privilege Management vulnerability in HP products
A potential security vulnerability has been identified for HP LaserJet Solution Software (for certain HP LaserJet Printers) which may lead to unauthorized elevation of privilege on the client.
local
low complexity
hp CWE-269
7.8
2021-11-05 CVE-2021-25508 Improper Privilege Management vulnerability in Samsung Smartthings
Improper privilege management vulnerability in API Key used in SmartThings prior to 1.7.73.22 allows an attacker to abuse the API key without limitation.
network
low complexity
samsung CWE-269
critical
9.8
2021-11-04 CVE-2021-40124 Improper Privilege Management vulnerability in Cisco Anyconnect Secure Mobility Client
A vulnerability in the Network Access Manager (NAM) module of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to escalate privileges on an affected device.
local
low complexity
cisco CWE-269
7.8
2021-11-02 CVE-2021-41022 Improper Privilege Management vulnerability in Fortinet Fortisiem
A improper privilege management in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows attacker to execute privileged code or commands via powershell scripts
local
low complexity
fortinet CWE-269
7.8