Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2020-12-01 CVE-2020-9114 Improper Privilege Management vulnerability in Huawei Fusioncompute
FusionCompute versions 6.3.0, 6.3.1, 6.5.0, 6.5.1 and 8.0.0 have a privilege escalation vulnerability.
local
low complexity
huawei CWE-269
7.2
2020-11-30 CVE-2020-8351 Improper Privilege Management vulnerability in Lenovo Pcmanager
A privilege escalation vulnerability was reported in Lenovo PCManager prior to version 3.0.50.9162 that could allow an authenticated user to execute code with elevated privileges.
local
low complexity
lenovo CWE-269
4.6
2020-11-29 CVE-2020-29378 Improper Privilege Management vulnerability in Vsolcn products
An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices.
network
low complexity
vsolcn CWE-269
critical
9.0
2020-11-27 CVE-2020-28922 Improper Privilege Management vulnerability in Pcanalyser PC Analyser 4.05/4.10
An issue was discovered in Devid Espenschied PC Analyser through 4.10.
local
low complexity
pcanalyser CWE-269
7.2
2020-11-27 CVE-2020-28921 Improper Privilege Management vulnerability in Pcanalyser PC Analyser 4.05/4.10
An issue was discovered in Devid Espenschied PC Analyser through 4.10.
local
low complexity
pcanalyser CWE-269
7.2
2020-11-24 CVE-2020-3985 Improper Privilege Management vulnerability in VMWare Sd-Wan Orchestrator 3.3.2/3.4.0/3.4.4
The SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3 and 3.4.x prior to 3.4.4 allows an access to set arbitrary authorization levels leading to a privilege escalation issue.
network
low complexity
vmware CWE-269
6.5
2020-11-23 CVE-2020-15248 Improper Privilege Management vulnerability in Octobercms October
October is a free, open-source, self-hosted CMS platform based on the Laravel PHP Framework.
local
low complexity
octobercms CWE-269
4.6
2020-11-23 CVE-2020-28421 Improper Privilege Management vulnerability in Broadcom Unified Infrastructure Management
CA Unified Infrastructure Management 20.1 and earlier contains a vulnerability in the robot (controller) component that allows local attackers to elevate privileges.
local
low complexity
broadcom CWE-269
4.6
2020-11-20 CVE-2020-4005 Improper Privilege Management vulnerability in VMWare Cloud Foundation and Esxi
VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG) contains a privilege-escalation vulnerability that exists in the way certain system calls are being managed.
local
low complexity
vmware CWE-269
7.2
2020-11-19 CVE-2020-7544 Improper Privilege Management vulnerability in Schneider-Electric Operator Terminal Expert Runtime 3.1
A CWE-269 Improper Privilege Management vulnerability exists in EcoStruxureª Operator Terminal Expert runtime (Vijeo XD) that could cause privilege escalation on the workstation when interacting directly with a driver installed by the runtime software of EcoStruxureª Operator Terminal Expert.
local
low complexity
schneider-electric CWE-269
7.2