Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2021-07-14 CVE-2021-33751 Improper Privilege Management vulnerability in Microsoft products
Storage Spaces Controller Elevation of Privilege Vulnerability
local
high complexity
microsoft CWE-269
7.0
2021-07-14 CVE-2021-34477 Improper Privilege Management vulnerability in Microsoft products
Visual Studio Code .NET Runtime Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-07-14 CVE-2021-34488 Improper Privilege Management vulnerability in Microsoft products
Windows Console Driver Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-07-14 CVE-2021-34493 Improper Privilege Management vulnerability in Microsoft products
Windows Partition Management Driver Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
6.7
2021-07-14 CVE-2021-34511 Improper Privilege Management vulnerability in Microsoft products
Windows Installer Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-07-14 CVE-2021-34514 Improper Privilege Management vulnerability in Microsoft products
Windows Kernel Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-269
7.8
2021-07-13 CVE-2021-22000 Improper Privilege Management vulnerability in VMWare Thinapp
VMware Thinapp version 5.x prior to 5.2.10 contain a DLL hijacking vulnerability due to insecure loading of DLLs.
local
vmware CWE-269
6.9
2021-07-12 CVE-2021-29792 Improper Privilege Management vulnerability in IBM Event Streams
IBM Event Streams 10.0, 10.1, 10.2, and 10.3 could allow a user the CA private key to create their own certificates and deploy them in the cluster and gain privileges of another user.
network
low complexity
ibm CWE-269
6.5
2021-07-12 CVE-2021-35064 Improper Privilege Management vulnerability in Kramerav Viaware
KramerAV VIAWare, all tested versions, allow privilege escalation through misconfiguration of sudo.
network
low complexity
kramerav CWE-269
critical
10.0
2021-07-08 CVE-2021-25428 Improper Privilege Management vulnerability in Google Android
Improper validation check vulnerability in PackageManager prior to SMR July-2021 Release 1 allows untrusted applications to get dangerous level permission without user confirmation in limited circumstances.
local
low complexity
google CWE-269
4.6