Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2019-09-30 CVE-2019-4112 Improper Privilege Management vulnerability in IBM Websphere Extreme Scale
IBM WebSphere eXtreme Scale 8.6 Admin Console allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm CWE-269
3.3
2019-09-27 CVE-2018-9425 Improper Privilege Management vulnerability in Google Android 10.0
In Platform, there is a possible bypass of user interaction requirements due to missing permission checks.
local
low complexity
google CWE-269
7.8
2019-09-24 CVE-2019-14220 Improper Privilege Management vulnerability in Bluestacks
An issue was discovered in BlueStacks 4.110 and below on macOS and on 4.120 and below on Windows.
local
low complexity
bluestacks CWE-269
6.5
2019-09-20 CVE-2019-11280 Improper Privilege Management vulnerability in Pivotal Software Pivotal Application Service
Pivotal Apps Manager, included in Pivotal Application Service versions 2.3.x prior to 2.3.18, 2.4.x prior to 2.4.14, 2.5.x prior to 2.5.10, and 2.6.x prior to 2.6.5, contains an invitations microservice which allows users to invite others to their organizations.
network
low complexity
pivotal-software CWE-269
8.8
2019-09-20 CVE-2016-11011 Improper Privilege Management vulnerability in Usabilitydynamics Wp-Invoice
The wp-invoice plugin before 4.1.1 for WordPress has wpi_update_user_option privilege escalation.
network
low complexity
usabilitydynamics CWE-269
6.5
2019-09-20 CVE-2016-11004 Improper Privilege Management vulnerability in Elegantthemes Monarch 1.1.1
The Elegant Themes Monarch plugin before 1.2.7 for WordPress has privilege escalation.
network
low complexity
elegantthemes CWE-269
8.8
2019-09-20 CVE-2016-11003 Improper Privilege Management vulnerability in Elegantthemes Monarch
The Elegant Themes Bloom plugin before 1.1.1 for WordPress has privilege escalation.
network
low complexity
elegantthemes CWE-269
8.8
2019-09-20 CVE-2016-11002 Improper Privilege Management vulnerability in Elegantthemes Extra
The Elegant Themes Extra theme before 1.2.4 for WordPress has privilege escalation.
network
low complexity
elegantthemes CWE-269
8.8
2019-09-20 CVE-2015-9390 Improper Privilege Management vulnerability in Admin Management Xtended Project Admin Management Xtended
The admin-management-xtended plugin before 2.4.0.1 for WordPress has privilege escalation because wp_ajax functions are mishandled.
network
low complexity
admin-management-xtended-project CWE-269
4.3
2019-09-17 CVE-2019-4477 Improper Privilege Management vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a user with access to audit logs to obtain sensitive information, caused by improper handling of command line options.
network
low complexity
ibm CWE-269
6.5