Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2020-07-14 CVE-2020-7578 Improper Privilege Management vulnerability in Siemens Opcenter Execution Core
A vulnerability has been identified in Camstar Enterprise Platform (All versions), Opcenter Execution Core (All versions < V8.2).
network
low complexity
siemens CWE-269
5.5
2020-07-10 CVE-2020-8199 Improper Privilege Management vulnerability in Citrix Gateway Plug-In for Linux
Improper access control in Citrix ADC Gateway Linux client versions before 1.0.0.137 results in local privilege escalation to root.
local
low complexity
citrix CWE-269
4.6
2020-07-10 CVE-2020-8197 Improper Privilege Management vulnerability in Citrix products
Privilege escalation vulnerability on Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 allows a low privileged user with management access to execute arbitrary commands.
network
low complexity
citrix CWE-269
6.5
2020-07-07 CVE-2020-12736 Improper Privilege Management vulnerability in Code42
Code42 environments with on-premises server versions 7.0.4 and earlier allow for possible remote code execution.
network
low complexity
code42 CWE-269
6.5
2020-07-07 CVE-2020-15525 Improper Privilege Management vulnerability in Gitlab
GitLab EE 11.3 through 13.1.2 has Incorrect Access Control because of the Maven package upload endpoint.
network
low complexity
gitlab CWE-269
5.0
2020-07-06 CVE-2020-6013 Improper Privilege Management vulnerability in Checkpoint Zonealarm Extreme Security
ZoneAlarm Firewall and Antivirus products before version 15.8.109.18436 allow an attacker who already has access to the system to execute code at elevated privileges through a combination of file permission manipulation and exploitation of Windows CVE-2020-00896 on unpatched systems.
network
low complexity
checkpoint CWE-269
6.5
2020-07-05 CVE-2020-15530 Improper Privilege Management vulnerability in Valvesoftware Steam Client 2.10.91.91
An issue was discovered in Valve Steam Client 2.10.91.91.
local
low complexity
valvesoftware CWE-269
7.2
2020-07-05 CVE-2020-15529 Improper Privilege Management vulnerability in GOG Galaxy 2.0.17
An issue was discovered in GOG Galaxy Client 2.0.17.
network
gog CWE-269
critical
9.3
2020-07-05 CVE-2020-15528 Improper Privilege Management vulnerability in GOG Galaxy 2.0.17
An issue was discovered in GOG Galaxy Client 2.0.17.
network
gog CWE-269
critical
9.3
2020-07-03 CVE-2020-7283 Improper Privilege Management vulnerability in Mcafee Total Protection
Privilege Escalation vulnerability in McAfee Total Protection (MTP) before 16.0.R26 allows local users to create and edit files via symbolic link manipulation in a location they would otherwise not have access to.
local
low complexity
mcafee CWE-269
8.8