Vulnerabilities > Improper Privilege Management
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-06-07 | CVE-2019-12775 | Improper Privilege Management vulnerability in Enttec products An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_05032019-482. | 8.8 |
2019-06-06 | CVE-2019-4218 | Improper Privilege Management vulnerability in IBM Security Information Queue 1.0.0/1.0.1/1.0.2 IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 allows web pages to be stored locally which can be read by another user on the system. | 3.3 |
2019-06-06 | CVE-2019-4048 | Improper Privilege Management vulnerability in IBM products IBM Maximo Asset Management 7.6 could allow a physical user of the system to obtain sensitive information from a previous user of the same machine. | 2.1 |
2019-06-03 | CVE-2019-12176 | Improper Privilege Management vulnerability in HTC Viveport Privilege escalation in the "HTC Account Service" and "ViveportDesktopService" in HTC VIVEPORT before 1.0.0.36 allows local attackers to escalate privileges to SYSTEM via reconfiguration of either service. | 7.8 |
2019-06-03 | CVE-2019-10144 | Improper Privilege Management vulnerability in Redhat RKT rkt through version 1.30.0 does not isolate processes in containers that are run with `rkt enter`. | 7.7 |
2019-05-29 | CVE-2019-11896 | Improper Privilege Management vulnerability in Bosch Smart Home Controller Firmware 9.8.905 A potential incorrect privilege assignment vulnerability exists in the 3rd party pairing mechanism of the Bosch Smart Home Controller (SHC) before 9.8.907 that may result in a restricted app obtaining default app permissions. | 7.1 |
2019-05-29 | CVE-2019-11893 | Improper Privilege Management vulnerability in Bosch Smart Home Controller Firmware A potential incorrect privilege assignment vulnerability exists in the app permission update API of the Bosch Smart Home Controller (SHC) before 9.8.905 that may result in a restricted app obtaining default app permissions. | 8.0 |
2019-05-29 | CVE-2019-11891 | Improper Privilege Management vulnerability in Bosch Smart Home Controller Firmware A potential incorrect privilege assignment vulnerability exists in the app pairing mechanism of the Bosch Smart Home Controller (SHC) before 9.8.905 that may result in elevated privileges of the adversary's choosing. | 8.0 |
2019-05-28 | CVE-2019-7394 | Improper Privilege Management vulnerability in CA Risk Authentication and Strong Authentication A privilege escalation vulnerability in the administrative user interface of CA Technologies CA Strong Authentication 9.0.x, 8.2.x, 8.1.x, 8.0.x, 7.1.x and CA Risk Authentication 9.0.x, 8.2.x, 8.1.x, 8.0.x, 3.1.x allows an authenticated attacker to gain additional privileges in some cases where an account has customized and limited privileges. | 8.8 |
2019-05-16 | CVE-2019-1000 | Improper Privilege Management vulnerability in Microsoft Azure Active Directory Connect An elevation of privilege vulnerability exists in Microsoft Azure Active Directory Connect build 1.3.20.0, which allows an attacker to execute two PowerShell cmdlets in context of a privileged account, and perform privileged actions.To exploit this, an attacker would need to authenticate to the Azure AD Connect server, aka 'Microsoft Azure AD Connect Elevation of Privilege Vulnerability'. | 5.3 |