Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2019-04-08 CVE-2019-10676 Improper Privilege Management vulnerability in Uniqkey Password Manager 1.14
An issue was discovered in Uniqkey Password Manager 1.14.
network
low complexity
uniqkey CWE-269
6.5
2019-04-03 CVE-2018-4310 Improper Privilege Management vulnerability in Apple mac OS X
An access issue was addressed with additional sandbox restrictions.
network
low complexity
apple CWE-269
critical
10.0
2019-03-28 CVE-2019-1754 Improper Privilege Management vulnerability in Cisco IOS XE
A vulnerability in the authorization subsystem of Cisco IOS XE Software could allow an authenticated but unprivileged (level 1), remote attacker to run privileged Cisco IOS commands by using the web UI.
network
low complexity
cisco CWE-269
8.8
2019-03-27 CVE-2018-19648 Improper Privilege Management vulnerability in Adtran Pmaa 1.6.2/1.6.3
An issue was discovered in ADTRAN PMAA 1.6.2-1, 1.6.3, and 1.6.4.
network
low complexity
adtran CWE-269
8.8
2019-03-26 CVE-2019-3849 Improper Privilege Management vulnerability in Moodle
A vulnerability was found in moodle before versions 3.6.3, 3.5.5 and 3.4.8.
network
low complexity
moodle CWE-269
8.8
2019-03-25 CVE-2018-16838 Improper Privilege Management vulnerability in multiple products
A flaw was found in sssd Group Policy Objects implementation.
network
low complexity
fedoraproject redhat CWE-269
5.4
2019-03-21 CVE-2019-5415 Improper Privilege Management vulnerability in Zeit Serve 6.5.3
A bug in handling the ignore files and directories feature in serve 6.5.3 allows an attacker to read a file or list the directory that the victim has not allowed access to.
network
low complexity
zeit CWE-269
7.5
2019-03-21 CVE-2018-11767 Improper Privilege Management vulnerability in Apache Hadoop
In Apache Hadoop 2.9.0 to 2.9.1, 2.8.3 to 2.8.4, 2.7.5 to 2.7.6, KMS blocking users or granting access to users incorrectly, if the system uses non-default groups mapping mechanisms.
network
high complexity
apache CWE-269
7.4
2019-03-15 CVE-2018-18252 Improper Privilege Management vulnerability in Capmon Access Manager 5.4.1.1005
An issue was discovered in CapMon Access Manager 5.4.1.1005.
local
low complexity
capmon CWE-269
7.8
2019-03-13 CVE-2019-6601 Improper Privilege Management vulnerability in F5 Big-Ip Application Acceleration Manager
In BIG-IP 13.0.0, 12.1.0-12.1.3.7, 11.6.1-11.6.3.2, or 11.5.1-11.5.8, the Application Acceleration Manager (AAM) wamd process used in processing of images and PDFs fails to drop group permissions when executing helper scripts.
local
low complexity
f5 CWE-269
5.5