Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2021-05-06 CVE-2020-28014 Improper Privilege Management vulnerability in Exim
Exim 4 before 4.94.2 allows Execution with Unnecessary Privileges.
local
low complexity
exim CWE-269
5.6
2021-05-06 CVE-2021-1400 Improper Privilege Management vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to obtain sensitive information from or inject arbitrary commands on an affected device.
network
low complexity
cisco CWE-269
8.8
2021-05-06 CVE-2021-1447 Improper Privilege Management vulnerability in Cisco Content Security Management Appliance
A vulnerability in the user account management system of Cisco AsyncOS for Cisco Content Security Management Appliance (SMA) could allow an authenticated, local attacker to elevate their privileges to root.
local
low complexity
cisco CWE-269
6.7
2021-05-06 CVE-2021-27216 Improper Privilege Management vulnerability in Exim
Exim 4 before 4.94.2 has Execution with Unnecessary Privileges.
local
exim CWE-269
6.3
2021-05-04 CVE-2020-27518 Improper Privilege Management vulnerability in Windscribe
All versions of Windscribe VPN for Mac and Windows <= v2.02.10 contain a local privilege escalation vulnerability in the WindscribeService component.
local
low complexity
windscribe CWE-269
7.2
2021-04-30 CVE-2020-27519 Improper Privilege Management vulnerability in Pritunl Pritunl-Client-Electron 1.2.2550.20
Pritunl Client v1.2.2550.20 contains a local privilege escalation vulnerability in the pritunl-service component.
local
low complexity
pritunl CWE-269
7.2
2021-04-27 CVE-2021-28269 Improper Privilege Management vulnerability in Soyal 701Client 9.0.1
Soyal Technology 701Client 9.0.1 is vulnerable to Insecure permissions via client.exe binary with Authenticated Users group with Full permissions.
network
low complexity
soyal CWE-269
6.5
2021-04-22 CVE-2021-28648 Improper Privilege Management vulnerability in Trendmicro Antivirus 10.5/11.0
Trend Micro Antivirus for Mac 2020 v10.5 and 2021 v11 (Consumer) is vulnerable to an improper access control privilege escalation vulnerability that could allow an attacker to establish a connection that could lead to full local privilege escalation within the application.
local
low complexity
trendmicro CWE-269
4.6
2021-04-22 CVE-2021-0256 Improper Privilege Management vulnerability in Juniper Junos 17.3/17.4/18.1
A sensitive information disclosure vulnerability in the mosquitto message broker of Juniper Networks Junos OS may allow a locally authenticated user with shell access the ability to read portions of sensitive files, such as the master.passwd file.
local
low complexity
juniper CWE-269
2.1
2021-04-22 CVE-2021-0255 Improper Privilege Management vulnerability in Juniper Junos 17.3/17.4/18.1
A local privilege escalation vulnerability in ethtraceroute of Juniper Networks Junos OS may allow a locally authenticated user with shell access to escalate privileges and write to the local filesystem as root.
local
low complexity
juniper CWE-269
7.2