Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2021-09-03 CVE-2021-39192 Improper Privilege Management vulnerability in Ghost
Ghost is a Node.js content management system.
network
low complexity
ghost CWE-269
6.5
2021-09-02 CVE-2021-36930 Improper Privilege Management vulnerability in Microsoft Edge
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
5.3
2021-09-01 CVE-2021-30355 Improper Privilege Management vulnerability in Amazon Kindle Firmware
Amazon Kindle e-reader prior to and including version 5.13.4 improperly manages privileges, allowing the framework user to elevate privileges to root.
network
amazon CWE-269
critical
9.3
2021-08-30 CVE-2021-37911 Improper Privilege Management vulnerability in Benq Eh600 Firmware
The management interface of BenQ smart wireless conference projector does not properly control user's privilege.
low complexity
benq CWE-269
8.3
2021-08-27 CVE-2021-39167 Improper Privilege Management vulnerability in Openzeppelin Contracts
OpenZepplin is a library for smart contract development.
network
low complexity
openzeppelin CWE-269
7.5
2021-08-27 CVE-2021-39168 Improper Privilege Management vulnerability in Openzeppelin Contracts
OpenZepplin is a library for smart contract development.
network
low complexity
openzeppelin CWE-269
7.5
2021-08-26 CVE-2021-36931 Improper Privilege Management vulnerability in Microsoft Edge Chromium
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
4.4
2021-08-25 CVE-2021-1579 Improper Privilege Management vulnerability in Cisco products
A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Application Policy Infrastructure Controller (Cloud APIC) could allow an authenticated, remote attacker with Administrator read-only credentials to elevate privileges on an affected system.
network
low complexity
cisco CWE-269
8.8
2021-08-23 CVE-2021-29802 Improper Privilege Management vulnerability in IBM Resilient Security Orchestration Automation and Response
IBM Security SOAR performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.
network
low complexity
ibm CWE-269
5.0
2021-08-19 CVE-2021-24038 Improper Privilege Management vulnerability in Oculus Desktop 1.44.0.32849
Due to a bug with management of handles in OVRServiceLauncher.exe, an attacker could expose a privileged process handle to an unprivileged process, leading to local privilege escalation.
local
low complexity
oculus CWE-269
4.6