Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2020-12-11 CVE-2020-27132 Improper Privilege Management vulnerability in Cisco Jabber and Jabber for Mobile Platforms
Multiple vulnerabilities in Cisco Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying operating system (OS) with elevated privileges or gain access to sensitive information.
network
low complexity
cisco CWE-269
critical
9.9
2020-12-11 CVE-2020-27127 Improper Privilege Management vulnerability in Cisco Jabber and Jabber for Mobile Platforms
Multiple vulnerabilities in Cisco Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying operating system (OS) with elevated privileges or gain access to sensitive information.
network
low complexity
cisco CWE-269
critical
9.9
2020-12-10 CVE-2020-12594 Improper Privilege Management vulnerability in Broadcom Symantec Messaging Gateway
A privilege escalation flaw allows a malicious, authenticated, privileged CLI user to escalate their privileges on the system and gain full control over the SMG appliance.
network
low complexity
broadcom CWE-269
critical
9.0
2020-12-09 CVE-2020-27614 Improper Privilege Management vulnerability in Anydesk
AnyDesk for macOS versions 6.0.2 and older have a vulnerability in the XPC interface that does not properly validate client requests and allows local privilege escalation.
local
low complexity
anydesk CWE-269
7.2
2020-12-08 CVE-2020-27903 Improper Privilege Management vulnerability in Apple Macos 11.0
This issue was addressed by removing the vulnerable code.
network
apple CWE-269
critical
9.3
2020-12-03 CVE-2020-23740 Improper Privilege Management vulnerability in Drivergenius 9.61.5480.28
In DriverGenius 9.61.5480.28 there is a local privilege escalation vulnerability in the driver wizard, attackers can use constructed programs to increase user privileges.
local
low complexity
drivergenius CWE-269
4.6
2020-12-03 CVE-2020-28175 Improper Privilege Management vulnerability in Almico Speedfan 4.52
There is a local privilege escalation vulnerability in Alfredo Milani Comparetti SpeedFan 4.52.
local
low complexity
almico CWE-269
4.6
2020-12-03 CVE-2020-28251 Improper Privilege Management vulnerability in Netscout Airmagnet Enterprise 11.1.4
NETSCOUT AirMagnet Enterprise 11.1.4 build 37257 and earlier has a sensor escalated privileges vulnerability that can be exploited to provide someone with administrative access to a sensor, with credentials to invoke a command to provide root access to the operating system.
network
netscout CWE-269
critical
9.3
2020-12-03 CVE-2020-23735 Improper Privilege Management vulnerability in Saibo Cyber Game Accelerator 3.7.9
In Saibo Cyber Game Accelerator 3.7.9 there is a local privilege escalation vulnerability.
local
low complexity
saibo CWE-269
4.6
2020-12-01 CVE-2020-7335 Improper Privilege Management vulnerability in Mcafee Total Protection
Privilege Escalation vulnerability in Microsoft Windows client McAfee Total Protection (MTP) prior to 16.0.29 allows local users to gain elevated privileges via careful manipulation of a folder by creating a junction link.
local
high complexity
mcafee CWE-269
7.8