Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2020-07-02 CVE-2020-8179 Improper Privilege Management vulnerability in Nextcloud Deck
Improper access control in Nextcloud Deck 1.0.0 allowed an attacker to inject tasks into other users decks.
network
low complexity
nextcloud CWE-269
4.1
2020-06-23 CVE-2020-14976 Improper Privilege Management vulnerability in Gns3 Ubridge
GNS3 ubridge through 0.9.18 on macOS, as used in GNS3 server before 2.1.17, allows a local attacker to read arbitrary files because it handles configuration-file errors by printing the configuration file while executing in a setuid root context.
local
low complexity
gns3 CWE-269
5.5
2020-06-19 CVE-2017-18885 Improper Privilege Management vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2.
network
low complexity
mattermost CWE-269
critical
9.8
2020-06-19 CVE-2017-18884 Improper Privilege Management vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2.
network
low complexity
mattermost CWE-269
8.1
2020-06-19 CVE-2019-20886 Improper Privilege Management vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.8.0.
network
low complexity
mattermost CWE-269
7.5
2020-06-18 CVE-2020-9225 Improper Privilege Management vulnerability in Huawei Fusionsphere Openstack 6.5.1
FusionSphere OpenStack 6.5.1 have an improper permissions management vulnerability.
local
low complexity
huawei CWE-269
7.8
2020-06-16 CVE-2020-7509 Improper Privilege Management vulnerability in Schneider-Electric Easergy T300 Firmware 1.5.2
A CWE-269: Improper privilege management (write) vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to elevate their privileges and delete files.
network
low complexity
schneider-electric CWE-269
7.2
2020-06-11 CVE-2020-13854 Improper Privilege Management vulnerability in Pandorafms Pandora FMS 7.44
Artica Pandora FMS 7.44 allows privilege escalation.
network
low complexity
pandorafms CWE-269
critical
9.8
2020-06-11 CVE-2020-12850 Improper Privilege Management vulnerability in Pydio Cells 2.0.4
The following vulnerability applies only to the Pydio Cells Enterprise OVF version 2.0.4.
local
high complexity
pydio CWE-269
7.0
2020-06-11 CVE-2020-12713 Improper Privilege Management vulnerability in Ciphermail Gateway and Webmail Messenger
An issue was discovered in CipherMail Community Gateway and Professional/Enterprise Gateway 1.0.1 through 4.7.1-0 and CipherMail Webmail Messenger 1.1.1 through 3.1.1-0.
network
low complexity
ciphermail CWE-269
7.2