Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2019-07-24 CVE-2019-1010178 Improper Privilege Management vulnerability in Modx Fred 1.0.0
Fred MODX Revolution < 1.0.0-beta5 is affected by: Incorrect Access Control - CWE-648.
network
low complexity
modx CWE-269
critical
9.8
2019-07-19 CVE-2019-11553 Improper Privilege Management vulnerability in Code42
In Code42 for Enterprise through 6.8.4, an administrator without web restore permission but with the ability to manage users in an organization can impersonate a user with web restore permission.
network
low complexity
code42 CWE-269
8.8
2019-07-12 CVE-2019-12731 Improper Privilege Management vulnerability in Mikogo
The Windows versions of Snapview Mikogo, versions before 5.10.2 are affected by insecure implementations which allow local attackers to escalate privileges.
local
low complexity
mikogo CWE-269
7.8
2019-07-01 CVE-2019-7278 Improper Privilege Management vulnerability in Optergy Enterprise and Proton
Optergy Proton/Enterprise devices have an Unauthenticated SMS Sending Service.
network
low complexity
optergy CWE-269
6.5
2019-06-27 CVE-2018-15557 Improper Privilege Management vulnerability in Actiontec Web6000Q Firmware 1.1.02.22
An issue was discovered in the Quantenna WiFi Controller on Telus Actiontec WEB6000Q v1.1.02.22 devices.
low complexity
actiontec CWE-269
8.8
2019-06-20 CVE-2019-3735 Improper Privilege Management vulnerability in Dell products
Dell SupportAssist for Business PCs version 2.0 and Dell SupportAssist for Home PCs version 2.2, 2.2.1, 2.2.2, 2.2.3, 3.0, 3.0.1, 3.0.2, 3.1, 3.2, and 3.2.1 contain an Improper Privilege Management Vulnerability.
local
low complexity
dell CWE-269
7.8
2019-06-17 CVE-2019-4177 Improper Privilege Management vulnerability in IBM Cognos Controller
IBM Cognos Controller 10.2.0, 10.2.1, 10.3.0, 10.3.1, and 10.4.0 allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm CWE-269
3.3
2019-06-17 CVE-2019-4174 Improper Privilege Management vulnerability in IBM Cognos Controller
IBM Cognos Controller 10.2.0, 10.2.1, 10.3.0, 10.3.1, and 10.4.0 allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm CWE-269
3.3
2019-06-12 CVE-2019-1007 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege exists in Windows Audio Service, aka 'Windows Audio Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
7.8
2019-06-11 CVE-2019-12794 Improper Privilege Management vulnerability in Misp 2.4.108
An issue was discovered in MISP 2.4.108.
network
high complexity
misp CWE-269
6.6