Skip to content
Noroxi

CWE-274 · 37 records

Improper Handling of Insufficient Privileges

CVEs in this class

37 records

  • Cisco Meeting Management Client-Server Privilege Escalation Vulnerability

    CriticalCVSS 9.9No exploitEPSS 1%

    cisco · meeting managementJan 22, 2025

  • Dell PowerScale OneFS 9.0.0.x - 9.4.0.x, contains an Improper Handling of Insufficient Privileges vulnerability in NFS.

    CriticalCVSS 9.8No exploitEPSS 1%

    dell · emc powerscale onefsFeb 1, 2023

  • SiberianCMS - CWE-274: Improper Handling of Insufficient Privileges

    CriticalCVSS 9.8No exploitEPSS 1%

    siberiancms · siberiancmsSep 27, 2023

  • CVE-2022-0668
    39Monitor

    JFrog Artifactory prior to 7.37.13 is vulnerable to Authentication Bypass, which can lead to Privilege Escalation when a specially crafted r

    CriticalCVSS 9.8No exploitEPSS 1%

    jfrog · artifactoryJan 8, 2023

  • Nextcloud user scoped external storage can be used to gather credentials of other users

    HighCVSS 8.8No exploitEPSS 1%

    nextcloud · nextcloud serverJun 23, 2023

  • CVE-2020-7283
    35Monitor

    Privilege Escalation vulnerability in McAfee Total Protection (MTP)

    HighCVSS 8.8Proof of conceptEPSS 1%

    mcafee · total protectionJul 3, 2020

  • XWiki has no right protection on rollback action

    HighCVSS 8.8No exploitEPSS 1%

    xwiki · xwikiJan 8, 2024

  • CVE-2024-0105
    35Monitor

    NVIDIA ConnectX Firmware contains a vulnerability where an attacker may cause an improper handling of insufficient privileges issue.

    HighCVSS 8.9No exploitEPSS 0%

    nvidia · connectx4Nov 1, 2024

  • CVE-2024-0106
    34Monitor

    NVIDIA ConnectX Host Firmware for the BlueField Data Processing Unit (DPU) contains a vulnerability where an attacker may cause an improper

    HighCVSS 8.7No exploitEPSS 0%

    nvidia · bluefield 1Nov 1, 2024

  • CVE-2020-7267
    33Monitor

    Privilege Escalation vulnerability through symbolic links in VSEL

    HighCVSS 8.4No exploitEPSS 0%

    mcafee · virusscan enterpriseMay 8, 2020

  • CVE-2020-7264
    33Monitor

    Privilege Escalation vulnerability through symbolic links in ENS for Windows

    HighCVSS 8.4No exploitEPSS 0%

    mcafee · endpoint securityMay 8, 2020

  • CVE-2020-7265
    33Monitor

    Privilege Escalation vulnerability through symbolic links in ENSM

    HighCVSS 8.4No exploitEPSS 0%

    mcafee · endpoint securityMay 8, 2020

  • CVE-2020-7266
    33Monitor

    Privilege Escalation vulnerability through symbolic links in VSE for Windows

    HighCVSS 8.4No exploitEPSS 0%

    mcafee · virusscan enterpriseMay 8, 2020

  • Insecure Windows Services in Symphony Plus

    HighCVSS 7.8No exploitEPSS 0%

    abb · symphony \+ historianDec 22, 2020

  • CVE-2017-3912
    31Monitor

    McAfee Application Control and Change Control (MACC) - password management security feature bypass (SFB) leading to an authentication bypass

    HighCVSS 7.8No exploitEPSS 0%

    mcafee · application and change controlSep 18, 2018

  • CVE-2020-7289
    31Monitor

    Privilege Escalation vulnerability in MAR for Windows

    HighCVSS 7.8No exploitEPSS 0%

    mcafee · active responseMay 8, 2020

  • CVE-2020-7290
    31Monitor

    Privilege Escalation vulnerability in MAR for Linux

    HighCVSS 7.8No exploitEPSS 0%

    mcafee · active responseMay 8, 2020

  • CVE-2020-7286
    31Monitor

    Privilege Escalation vulnerability in EDR for Windows

    HighCVSS 7.8No exploitEPSS 0%

    mcafee · endpoint detection and responseMay 8, 2020

  • CVE-2020-7287
    31Monitor

    Privilege Escalation vulnerability in EDR for Linux

    HighCVSS 7.8No exploitEPSS 0%

    mcafee · endpoint detection and responseMay 8, 2020

  • CVE-2020-7285
    31Monitor

    Privilege Escalation vulnerability in MVISION Endpoint

    HighCVSS 7.8No exploitEPSS 0%

    mcafee · mvision endpointMay 8, 2020

  • CVE-2020-7288
    31Monitor

    Privilege Escalation vulnerability in EDR for Mac

    HighCVSS 7.8No exploitEPSS 0%

    mcafee · endpoint detection and responseMay 8, 2020

  • CVE-2020-7291
    31Monitor

    Privilege Escalation vulnerability MAR for Mac

    HighCVSS 7.8No exploitEPSS 0%

    mcafee · active responseMay 8, 2020

  • Insufficient Security Control Vulnerability

    HighCVSS 7.2No exploitEPSS 2%

    hitachienergy · gms600 firmwareNov 18, 2021

  • JupyterHub has a privilege escalation vulnerability with the `admin:users` scope

    HighCVSS 7.2No exploitEPSS 1%

    jupyter · jupyterhubAug 8, 2024

  • A privilege escalation issue exists within the Amazon CloudWatch Agent for Windows, software for collecting metrics and logs from Amazon EC2

    MediumCVSS 6.8No exploitEPSS 1%

    amazon · cloudwatch agentDec 12, 2022

All vulnerability classes