Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2021-07-23 CVE-2020-14032 Improper Privilege Management vulnerability in Asrock Box-R1000 Firmware
ASRock 4x4 BOX-R1000 before BIOS P1.40 allows privilege escalation via code execution in the SMM.
network
low complexity
asrock CWE-269
7.5
2021-07-22 CVE-2021-1092 Improper Privilege Management vulnerability in Nvidia GPU Display Driver 427.33/452.96/462.31
NVIDIA GPU Display Driver for Windows contains a vulnerability in the NVIDIA Control Panel application where it is susceptible to a Windows file system symbolic link attack where an unprivileged attacker can cause the applications to overwrite privileged files, resulting in potential denial of service or data loss.
local
low complexity
nvidia CWE-269
3.6
2021-07-16 CVE-2021-34455 Improper Privilege Management vulnerability in Microsoft products
Windows File History Service Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-07-16 CVE-2021-34456 Improper Privilege Management vulnerability in Microsoft products
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-07-16 CVE-2021-34459 Improper Privilege Management vulnerability in Microsoft products
Windows AppContainer Elevation Of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-07-16 CVE-2021-34460 Improper Privilege Management vulnerability in Microsoft products
Storage Spaces Controller Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-07-16 CVE-2021-34461 Improper Privilege Management vulnerability in Microsoft Windows 10 and Windows Server 2016
Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-07-16 CVE-2021-34481 Improper Privilege Management vulnerability in Microsoft products
<p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations.
network
low complexity
microsoft CWE-269
8.8
2021-07-15 CVE-2021-33505 Improper Privilege Management vulnerability in Falco
A local malicious user can circumvent the Falco detection engine through 0.28.1 by running a program that alters arguments of system calls being executed.
local
low complexity
falco CWE-269
4.6
2021-07-14 CVE-2021-31961 Improper Privilege Management vulnerability in Microsoft products
Windows InstallService Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
6.1