Vulnerabilities > Improper Privilege Management

DATE CVE VULNERABILITY TITLE RISK
2020-06-25 CVE-2020-9592 Improper Privilege Management vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2020.006.20042 and earlier, 2017.011.30166 and earlier, 2017.011.30166 and earlier, and 2015.006.30518 and earlier have a security bypass vulnerability.
network
adobe CWE-269
6.8
2020-06-25 CVE-2020-5963 Improper Privilege Management vulnerability in multiple products
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the Inter Process Communication APIs, in which improper access control may lead to code execution, denial of service, or information disclosure.
local
low complexity
nvidia canonical CWE-269
4.6
2020-06-24 CVE-2020-5962 Improper Privilege Management vulnerability in Nvidia products
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component, in which an attacker with local system access can corrupt a system file, which may lead to denial of service or escalation of privileges.
local
low complexity
nvidia CWE-269
4.6
2020-06-23 CVE-2020-14975 Improper Privilege Management vulnerability in Iobit Unlocker 1.1.2
The driver in IOBit Unlocker 1.1.2 allows a low-privileged user to delete, move, or copy arbitrary files via IOCTL code 0x222124.
local
low complexity
iobit CWE-269
7.2
2020-06-23 CVE-2020-14974 Improper Privilege Management vulnerability in Iobit Unlocker 1.1.2
The driver in IOBit Unlocker 1.1.2 allows a low-privileged user to unlock a file and kill processes (even ones running as SYSTEM) that hold a handle, via IOCTL code 0x222124.
local
low complexity
iobit CWE-269
6.6
2020-06-22 CVE-2020-14990 Improper Privilege Management vulnerability in Iobit Advanced Systemcare 13.5.0.263
IOBit Advanced SystemCare Free 13.5.0.263 allows local users to gain privileges for file deletion by manipulating the Clean & Optimize feature with an NTFS junction and an Object Manager symbolic link.
local
low complexity
iobit CWE-269
3.6
2020-06-22 CVE-2020-3628 Improper Privilege Management vulnerability in Qualcomm Apq8053 Firmware, Rennell Firmware and Sdx20 Firmware
Improper access due to socket opened by the logging application without specifying localhost address in Snapdragon Consumer IOT, Snapdragon Mobile in APQ8053, Rennell, SDX20
network
low complexity
qualcomm CWE-269
critical
10.0
2020-06-19 CVE-2017-18885 Improper Privilege Management vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2.
7.5
2020-06-19 CVE-2017-18884 Improper Privilege Management vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2.
5.5
2020-06-19 CVE-2019-20886 Improper Privilege Management vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 5.8.0.
5.0