Перейти к содержимому
Noroxi

CWE-270 · 22 записей

Privilege Context Switching Error

CVE этого класса

22 записей

  • CVE-2021-3493
    76На этой неделе

    The overlayfs implementation in the linux kernel did not properly validate with respect to user namespaces the setting of file capabilities

    ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 49 %

    canonical · ubuntu linux17 апр. 2021 г.

  • CVE-2023-25754
    40В плане

    Apache Airflow: Privilege escalation using airflow logs

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    apache · airflow8 мая 2023 г.

  • CVE-2023-37912
    35Наблюдать

    XWiki Rendering's footnote macro vulnerable to privilege escalation via the footnote macro

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    xwiki · xwiki-rendering25 окт. 2023 г.

  • CVE-2024-8641
    35Наблюдать

    Privilege Context Switching Error in GitLab

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    gitlab · gitlab12 сент. 2024 г.

  • CVE-2024-36513
    35Наблюдать

    A privilege context switching error vulnerability [CWE-270] in FortiClient Windows version 7.2.4 and below, version 7.0.12 and below, 6.4 al

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    fortinet · forticlient12 нояб. 2024 г.

  • CVE-2024-11263
    33Наблюдать

    arch: riscv: userspace: potential security risk when CONFIG_RISCV_GP=y

    ВысокаяCVSS 8,4Эксплойта нетEPSS 0 %

    zephyrproject · zephyr15 нояб. 2024 г.

  • CVE-2025-9408
    32Наблюдать

    Userspace privilege escalation vulnerability on Cortex M

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    zephyrproject-rtos · zephyr11 нояб. 2025 г.

  • CVE-2017-2663
    31Наблюдать

    It was found that subscription-manager's DBus interface before 1.19.4 let unprivileged user access the com.redhat.RHSM1.Facts.GetFacts and c

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    redhat · subscription-manager27 июл. 2018 г.

  • CVE-2025-60721
    31Наблюдать

    Windows Administrator Protection Elevation of Privilege Vulnerability

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    microsoft · windows 11 24h211 нояб. 2025 г.

  • CVE-2024-46975
    31Наблюдать

    GPU DDK - rgxfw_write_robustness_buffer allows arbitrary catreg set mapping

    ВысокаяCVSS 7,9Эксплойта нетEPSS 0 %

    imagination technologies · graphics ddk22 февр. 2025 г.

  • CVE-2026-34853
    30Наблюдать

    Permission bypass vulnerability in the LBS module.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    huawei · harmonyos13 апр. 2026 г.

  • CVE-2020-7019
    26Наблюдать

    In Elasticsearch before 7.9.0 and 6.8.12 a field disclosure flaw was found when running a scrolling search with Field Level Security.

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    elastic · elasticsearch18 авг. 2020 г.

  • CVE-2024-12570
    26Наблюдать

    Privilege Context Switching Error in GitLab

    СредняяCVSS 6,7Эксплойта нетEPSS 0 %

    gitlab · gitlab12 дек. 2024 г.

  • CVE-2025-26499
    24Наблюдать

    Under heavy system utilization a random race condition can occur during authentication or token refresh operation.

    СредняяCVSS 6,0Эксплойта нетEPSS 0 %

    wind river studio developer · wind river studio developer11 сент. 2025 г.

  • CVE-2024-37294
    22Наблюдать

    Aimeos denial of service vulnerability in SaaS and marketplace setups

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    aimeos · aimeos-core11 июн. 2024 г.

  • CVE-2024-47173
    22Наблюдать

    Aimeos GraphQL API admin interface denial of service vulnerability in SaaS and marketplace setups

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    aimeos · ai-admin-graphql24 окт. 2024 г.

  • CVE-2025-46406
    22Наблюдать

    A Privilege Context Switching Error (CWE-270) in the Command Center Server could allow a privileged Operator with high level access in one D

    СредняяCVSS 5,6Эксплойта нетEPSS 0 %

    gallagher · command centre server9 июл. 2025 г.

  • CVE-2020-1719
    21Наблюдать

    A flaw was found in wildfly.

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    redhat · wildfly7 июн. 2021 г.

  • CVE-2024-51987
    21Наблюдать

    HTTP Client uses incorrect token after refresh in Duende.AccessTokenManagement.OpenIdConnect

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    duendesoftware · duende.accesstokenmanagement7 нояб. 2024 г.

  • CVE-2025-49583
    20Наблюдать

    XWiki provides no warning when granting XWiki.Notifications.Code.NotificationEmailRendererClass admin right

    СредняяCVSS 5,1Эксплойта нетEPSS 0 %

    xwiki · xwiki13 июн. 2025 г.

  • CVE-2020-7020
    12Наблюдать

    Elasticsearch versions before 6.8.13 and 7.9.2 contain a document disclosure flaw when Document or Field Level Security is used.

    НизкаяCVSS 3,1Эксплойта нетEPSS 1 %

    elastic · elasticsearch22 окт. 2020 г.

  • CVE-2025-55210
    8Наблюдать

    FreePBX API has a Privilege Escalation Error in GraphQL Allowing Authenticated Users to Access Additional Scopes

    НизкаяCVSS 2,0Эксплойта нетEPSS 0 %

    sangoma · freepbx12 февр. 2026 г.

Все классы уязвимостей