CWE-268 · 22 kayıt
Privilege Chaining
Bu sınıftaki CVE’ler
22 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2024-4877İstismar yok | OpenVPN version 2.4.0 through 2.6.10 on Windows allows an external, lesser privileged process to create a named pipe which the OpenVPN GUI copenvpn · openvpn · CWE-268 | Yüksek8,8 | — | %0,4 | 3 Nis 2025 |
35İzleyin | CVE-2023-0759İstismar yok | Privilege Chaining in cockpit-hq/cockpitagentejo · cockpit · CWE-268 | Yüksek8,8 | — | %0,3 | 9 Şub 2023 |
35İzleyin | CVE-2023-0971İstismar yok | Command Authentication Bypass in Z/IP Gatewaysilabs · z\/ip gateway sdk · CWE-268 | Yüksek8,8 | — | %0,3 | 21 Haz 2023 |
34İzleyin | CVE-2026-32325İstismar yok | Privilege chaining issue exists in ServerView Agents for Windows V11.60.04 and earlier.fsas technologies inc. · serverview agents for windows · CWE-268 | Yüksek8,5 | — | %0,1 | 1 Haz 2026 |
34İzleyin | CVE-2025-7973İstismar yok | Rockwell Automation FactoryTalk® ViewPoint Privilege Escalation Vulnerabilityrockwell automation · factorytalk® viewpoint · CWE-268 | Yüksek8,5 | — | %0,1 | 14 Ağu 2025 |
34İzleyin | CVE-2025-64701İstismar yok | QND Premium/Advance/Standard Ver.11.0.9i and prior contains a privilege escalation vulnerability, which may allow a user who can log in to aqualitysoft corporation · qnd premium/advance/standard · CWE-268 | Yüksek8,5 | — | %0,1 | 11 Ara 2025 |
32İzleyin | CVE-2024-1299İstismar yok | Privilege Chaining in GitLabgitlab · gitlab · CWE-268 | Yüksek8,1 | — | %0,7 | 6 Mar 2024 |
31İzleyin | CVE-2025-49741Kavram kanıtı | Microsoft Edge (Chromium-based) Information Disclosure Vulnerabilitymicrosoft · edge chromium · CWE-268 | Yüksek7,5 | — | %3,9 | 1 Tem 2025 |
31İzleyin | CVE-2019-3844Kavram kanıtı | It was discovered that a systemd service that uses DynamicUser property can get new privileges through the execution of SUID binaries, whichsystemd project · systemd · CWE-268 | Yüksek7,8 | — | %0,9 | 26 Nis 2019 |
31İzleyin | CVE-2023-5839İstismar yok | Privilege Chaining in hestiacp/hestiacphestiacp · control panel · CWE-268 | Yüksek7,8 | — | %0,3 | 28 Eki 2023 |
31İzleyin | CVE-2026-3888Kavram kanıtı | Local Privilege Escalation in snapdcanonical · ubuntu linux · CWE-268 | Yüksek7,8 | — | %0,2 | 17 Mar 2026 |
31İzleyin | CVE-2024-47045İstismar yok | Privilege chaining issue exists in the installer of e-Tax software(common program).national tax agency · the installer of e-tax software(common program) · CWE-268 | Yüksek7,8 | — | %0,1 | 26 Eyl 2024 |
30İzleyin | CVE-2025-36124İstismar yok | IBM WebSphere Application Server Liberty bypass securityibm · websphere application server · CWE-268 | Yüksek7,5 | — | %0,4 | 12 Ağu 2025 |
28İzleyin | CVE-2025-0889İstismar yok | Privilege Management for Windows – Elevation of Privilegebeyondtrust · privilege management for windows · CWE-268 | Yüksek7,2 | — | %0,2 | 26 Şub 2025 |
28İzleyin | CVE-2025-2297İstismar yok | Privilege Management for Windows - Elevation of Privilegebeyondtrust · privilege management for windows · CWE-268 | Yüksek7,2 | — | %0,1 | 28 Tem 2025 |
26İzleyin | CVE-2024-1250İstismar yok | Privilege Chaining in GitLabgitlab · gitlab · CWE-268 | Orta6,5 | — | %0,5 | 12 Şub 2024 |
26İzleyin | CVE-2023-2250İstismar yok | A flaw was found in the Open Cluster Management (OCM) when a user have access to the worker nodes which has the cluster-manager-registrationlinuxfoundation · open cluster management · CWE-268 | Orta6,7 | — | %0,2 | 24 Nis 2023 |
26İzleyin | GHSA-xpff-c35g-j3crİstismar yok | silverstripe/framework Privilege Escalation Risk in Member Edit formPackagist · silverstripe/framework · CWE-268 | Orta6,5 | — | — | 27 May 2024 |
24İzleyin | CVE-2025-32955İstismar yok | Harden-Runner Evasion of 'disable-sudo' policystep-security · harden-runner · CWE-268 | Orta6,0 | — | %0,2 | 21 Nis 2025 |
20İzleyin | CVE-2025-20112İstismar yok | Cisco Unified Communications Products Privilege Escalation Vulnerabilitycisco · cisco emergency responder · CWE-268 | Orta5,1 | — | %0,1 | 21 May 2025 |
19İzleyin | CVE-2023-20194İstismar yok | A vulnerability in the ERS API of Cisco ISE could allow an authenticated, remote attacker to read arbitrary files on the underlying operatincisco · identity services engine · CWE-268 | Orta4,9 | — | %0,7 | 7 Eyl 2023 |
19İzleyin | CVE-2022-1003İstismar yok | Sysadmin can override existing configs & bypass restrictions like EnableUploadsmattermost · mattermost · CWE-268 | Orta4,9 | — | %0,5 | 18 Mar 2022 |
- CVE-2024-487735İzleyin
OpenVPN version 2.4.0 through 2.6.10 on Windows allows an external, lesser privileged process to create a named pipe which the OpenVPN GUI c
YüksekCVSS 8,8İstismar yokEPSS %0openvpn · openvpn3 Nis 2025
- CVE-2023-075935İzleyin
Privilege Chaining in cockpit-hq/cockpit
YüksekCVSS 8,8İstismar yokEPSS %0agentejo · cockpit9 Şub 2023
- CVE-2023-097135İzleyin
Command Authentication Bypass in Z/IP Gateway
YüksekCVSS 8,8İstismar yokEPSS %0silabs · z\/ip gateway sdk21 Haz 2023
- CVE-2026-3232534İzleyin
Privilege chaining issue exists in ServerView Agents for Windows V11.60.04 and earlier.
YüksekCVSS 8,5İstismar yokEPSS %0fsas technologies inc. · serverview agents for windows1 Haz 2026
- CVE-2025-797334İzleyin
Rockwell Automation FactoryTalk® ViewPoint Privilege Escalation Vulnerability
YüksekCVSS 8,5İstismar yokEPSS %0rockwell automation · factorytalk® viewpoint14 Ağu 2025
- CVE-2025-6470134İzleyin
QND Premium/Advance/Standard Ver.11.0.9i and prior contains a privilege escalation vulnerability, which may allow a user who can log in to a
YüksekCVSS 8,5İstismar yokEPSS %0qualitysoft corporation · qnd premium/advance/standard11 Ara 2025
- CVE-2024-129932İzleyin
Privilege Chaining in GitLab
YüksekCVSS 8,1İstismar yokEPSS %1gitlab · gitlab6 Mar 2024
- CVE-2025-4974131İzleyin
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
YüksekCVSS 7,5Kavram kanıtıEPSS %4microsoft · edge chromium1 Tem 2025
- CVE-2019-384431İzleyin
It was discovered that a systemd service that uses DynamicUser property can get new privileges through the execution of SUID binaries, which
YüksekCVSS 7,8Kavram kanıtıEPSS %1systemd project · systemd26 Nis 2019
- CVE-2023-583931İzleyin
Privilege Chaining in hestiacp/hestiacp
YüksekCVSS 7,8İstismar yokEPSS %0hestiacp · control panel28 Eki 2023
- CVE-2026-388831İzleyin
Local Privilege Escalation in snapd
YüksekCVSS 7,8Kavram kanıtıEPSS %0canonical · ubuntu linux17 Mar 2026
- CVE-2024-4704531İzleyin
Privilege chaining issue exists in the installer of e-Tax software(common program).
YüksekCVSS 7,8İstismar yokEPSS %0national tax agency · the installer of e-tax software(common program)26 Eyl 2024
- CVE-2025-3612430İzleyin
IBM WebSphere Application Server Liberty bypass security
YüksekCVSS 7,5İstismar yokEPSS %0ibm · websphere application server12 Ağu 2025
- CVE-2025-088928İzleyin
Privilege Management for Windows – Elevation of Privilege
YüksekCVSS 7,2İstismar yokEPSS %0beyondtrust · privilege management for windows26 Şub 2025
- CVE-2025-229728İzleyin
Privilege Management for Windows - Elevation of Privilege
YüksekCVSS 7,2İstismar yokEPSS %0beyondtrust · privilege management for windows28 Tem 2025
- CVE-2024-125026İzleyin
Privilege Chaining in GitLab
OrtaCVSS 6,5İstismar yokEPSS %1gitlab · gitlab12 Şub 2024
- CVE-2023-225026İzleyin
A flaw was found in the Open Cluster Management (OCM) when a user have access to the worker nodes which has the cluster-manager-registration
OrtaCVSS 6,7İstismar yokEPSS %0linuxfoundation · open cluster management24 Nis 2023
- GHSA-xpff-c35g-j3cr26İzleyin
silverstripe/framework Privilege Escalation Risk in Member Edit form
OrtaCVSS 6,5İstismar yokPackagist · silverstripe/framework27 May 2024
- CVE-2025-3295524İzleyin
Harden-Runner Evasion of 'disable-sudo' policy
OrtaCVSS 6,0İstismar yokEPSS %0step-security · harden-runner21 Nis 2025
- CVE-2025-2011220İzleyin
Cisco Unified Communications Products Privilege Escalation Vulnerability
OrtaCVSS 5,1İstismar yokEPSS %0cisco · cisco emergency responder21 May 2025
- CVE-2023-2019419İzleyin
A vulnerability in the ERS API of Cisco ISE could allow an authenticated, remote attacker to read arbitrary files on the underlying operatin
OrtaCVSS 4,9İstismar yokEPSS %1cisco · identity services engine7 Eyl 2023
- CVE-2022-100319İzleyin
Sysadmin can override existing configs & bypass restrictions like EnableUploads
OrtaCVSS 4,9İstismar yokEPSS %1mattermost · mattermost18 Mar 2022