CWE-274 · 37 kayıt
Improper Handling of Insufficient Privileges
Bu sınıftaki CVE’ler
37 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2025-20156İstismar yok | Cisco Meeting Management Client-Server Privilege Escalation Vulnerabilitycisco · meeting management · CWE-274 | Kritik9,9 | — | %1,2 | 22 Oca 2025 |
39İzleyin | CVE-2022-45101İstismar yok | Dell PowerScale OneFS 9.0.0.x - 9.4.0.x, contains an Improper Handling of Insufficient Privileges vulnerability in NFS.dell · emc powerscale onefs · CWE-274 | Kritik9,8 | — | %0,8 | 1 Şub 2023 |
39İzleyin | CVE-2023-39375İstismar yok | SiberianCMS - CWE-274: Improper Handling of Insufficient Privilegessiberiancms · siberiancms · CWE-274 | Kritik9,8 | — | %0,8 | 27 Eyl 2023 |
39İzleyin | CVE-2022-0668İstismar yok | JFrog Artifactory prior to 7.37.13 is vulnerable to Authentication Bypass, which can lead to Privilege Escalation when a specially crafted rjfrog · artifactory · CWE-274 | Kritik9,8 | — | %0,6 | 8 Oca 2023 |
35İzleyin | CVE-2023-35928İstismar yok | Nextcloud user scoped external storage can be used to gather credentials of other usersnextcloud · nextcloud server · CWE-274 | Yüksek8,8 | — | %1,0 | 23 Haz 2023 |
35İzleyin | CVE-2020-7283Kavram kanıtı | Privilege Escalation vulnerability in McAfee Total Protection (MTP)mcafee · total protection · CWE-274 | Yüksek8,8 | — | %0,6 | 3 Tem 2020 |
35İzleyin | CVE-2024-21648İstismar yok | XWiki has no right protection on rollback actionxwiki · xwiki · CWE-274 | Yüksek8,8 | — | %0,5 | 8 Oca 2024 |
35İzleyin | CVE-2024-0105İstismar yok | NVIDIA ConnectX Firmware contains a vulnerability where an attacker may cause an improper handling of insufficient privileges issue.nvidia · connectx4 · CWE-274 | Yüksek8,9 | — | %0,3 | 1 Kas 2024 |
34İzleyin | CVE-2024-0106İstismar yok | NVIDIA ConnectX Host Firmware for the BlueField Data Processing Unit (DPU) contains a vulnerability where an attacker may cause an improper nvidia · bluefield 1 · CWE-274 | Yüksek8,7 | — | %0,2 | 1 Kas 2024 |
33İzleyin | CVE-2020-7267İstismar yok | Privilege Escalation vulnerability through symbolic links in VSELmcafee · virusscan enterprise · CWE-274 | Yüksek8,4 | — | %0,3 | 8 May 2020 |
33İzleyin | CVE-2020-7264İstismar yok | Privilege Escalation vulnerability through symbolic links in ENS for Windowsmcafee · endpoint security · CWE-274 | Yüksek8,4 | — | %0,3 | 8 May 2020 |
33İzleyin | CVE-2020-7265İstismar yok | Privilege Escalation vulnerability through symbolic links in ENSMmcafee · endpoint security · CWE-274 | Yüksek8,4 | — | %0,3 | 8 May 2020 |
33İzleyin | CVE-2020-7266İstismar yok | Privilege Escalation vulnerability through symbolic links in VSE for Windowsmcafee · virusscan enterprise · CWE-274 | Yüksek8,4 | — | %0,3 | 8 May 2020 |
31İzleyin | CVE-2020-24676İstismar yok | Insecure Windows Services in Symphony Plusabb · symphony \+ historian · CWE-274 | Yüksek7,8 | — | %0,4 | 22 Ara 2020 |
31İzleyin | CVE-2017-3912İstismar yok | McAfee Application Control and Change Control (MACC) - password management security feature bypass (SFB) leading to an authentication bypassmcafee · application and change control · CWE-274 | Yüksek7,8 | — | %0,4 | 18 Eyl 2018 |
31İzleyin | CVE-2020-7289İstismar yok | Privilege Escalation vulnerability in MAR for Windowsmcafee · active response · CWE-274 | Yüksek7,8 | — | %0,3 | 8 May 2020 |
31İzleyin | CVE-2020-7285İstismar yok | Privilege Escalation vulnerability in MVISION Endpointmcafee · mvision endpoint · CWE-274 | Yüksek7,8 | — | %0,3 | 8 May 2020 |
31İzleyin | CVE-2020-7286İstismar yok | Privilege Escalation vulnerability in EDR for Windowsmcafee · endpoint detection and response · CWE-274 | Yüksek7,8 | — | %0,3 | 8 May 2020 |
31İzleyin | CVE-2020-7290İstismar yok | Privilege Escalation vulnerability in MAR for Linuxmcafee · active response · CWE-274 | Yüksek7,8 | — | %0,3 | 8 May 2020 |
31İzleyin | CVE-2020-7287İstismar yok | Privilege Escalation vulnerability in EDR for Linuxmcafee · endpoint detection and response · CWE-274 | Yüksek7,8 | — | %0,3 | 8 May 2020 |
31İzleyin | CVE-2020-7288İstismar yok | Privilege Escalation vulnerability in EDR for Macmcafee · endpoint detection and response · CWE-274 | Yüksek7,8 | — | %0,3 | 8 May 2020 |
31İzleyin | CVE-2020-7291İstismar yok | Privilege Escalation vulnerability MAR for Macmcafee · active response · CWE-274 | Yüksek7,8 | — | %0,3 | 8 May 2020 |
29İzleyin | CVE-2021-35534İstismar yok | Insufficient Security Control Vulnerabilityhitachienergy · gms600 firmware · CWE-274 | Yüksek7,2 | — | %1,8 | 18 Kas 2021 |
28İzleyin | CVE-2024-41942İstismar yok | JupyterHub has a privilege escalation vulnerability with the `admin:users` scopejupyter · jupyterhub · CWE-274 | Yüksek7,2 | — | %0,6 | 8 Ağu 2024 |
27İzleyin | CVE-2022-23511İstismar yok | A privilege escalation issue exists within the Amazon CloudWatch Agent for Windows, software for collecting metrics and logs from Amazon EC2amazon · cloudwatch agent · CWE-274 | Orta6,8 | — | %0,5 | 12 Ara 2022 |
- CVE-2025-2015639İzleyin
Cisco Meeting Management Client-Server Privilege Escalation Vulnerability
KritikCVSS 9,9İstismar yokEPSS %1cisco · meeting management22 Oca 2025
- CVE-2022-4510139İzleyin
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x, contains an Improper Handling of Insufficient Privileges vulnerability in NFS.
KritikCVSS 9,8İstismar yokEPSS %1dell · emc powerscale onefs1 Şub 2023
- CVE-2023-3937539İzleyin
SiberianCMS - CWE-274: Improper Handling of Insufficient Privileges
KritikCVSS 9,8İstismar yokEPSS %1siberiancms · siberiancms27 Eyl 2023
- CVE-2022-066839İzleyin
JFrog Artifactory prior to 7.37.13 is vulnerable to Authentication Bypass, which can lead to Privilege Escalation when a specially crafted r
KritikCVSS 9,8İstismar yokEPSS %1jfrog · artifactory8 Oca 2023
- CVE-2023-3592835İzleyin
Nextcloud user scoped external storage can be used to gather credentials of other users
YüksekCVSS 8,8İstismar yokEPSS %1nextcloud · nextcloud server23 Haz 2023
- CVE-2020-728335İzleyin
Privilege Escalation vulnerability in McAfee Total Protection (MTP)
YüksekCVSS 8,8Kavram kanıtıEPSS %1mcafee · total protection3 Tem 2020
- CVE-2024-2164835İzleyin
XWiki has no right protection on rollback action
YüksekCVSS 8,8İstismar yokEPSS %1xwiki · xwiki8 Oca 2024
- CVE-2024-010535İzleyin
NVIDIA ConnectX Firmware contains a vulnerability where an attacker may cause an improper handling of insufficient privileges issue.
YüksekCVSS 8,9İstismar yokEPSS %0nvidia · connectx41 Kas 2024
- CVE-2024-010634İzleyin
NVIDIA ConnectX Host Firmware for the BlueField Data Processing Unit (DPU) contains a vulnerability where an attacker may cause an improper
YüksekCVSS 8,7İstismar yokEPSS %0nvidia · bluefield 11 Kas 2024
- CVE-2020-726733İzleyin
Privilege Escalation vulnerability through symbolic links in VSEL
YüksekCVSS 8,4İstismar yokEPSS %0mcafee · virusscan enterprise8 May 2020
- CVE-2020-726433İzleyin
Privilege Escalation vulnerability through symbolic links in ENS for Windows
YüksekCVSS 8,4İstismar yokEPSS %0mcafee · endpoint security8 May 2020
- CVE-2020-726533İzleyin
Privilege Escalation vulnerability through symbolic links in ENSM
YüksekCVSS 8,4İstismar yokEPSS %0mcafee · endpoint security8 May 2020
- CVE-2020-726633İzleyin
Privilege Escalation vulnerability through symbolic links in VSE for Windows
YüksekCVSS 8,4İstismar yokEPSS %0mcafee · virusscan enterprise8 May 2020
- CVE-2020-2467631İzleyin
Insecure Windows Services in Symphony Plus
YüksekCVSS 7,8İstismar yokEPSS %0abb · symphony \+ historian22 Ara 2020
- CVE-2017-391231İzleyin
McAfee Application Control and Change Control (MACC) - password management security feature bypass (SFB) leading to an authentication bypass
YüksekCVSS 7,8İstismar yokEPSS %0mcafee · application and change control18 Eyl 2018
- CVE-2020-728931İzleyin
Privilege Escalation vulnerability in MAR for Windows
YüksekCVSS 7,8İstismar yokEPSS %0mcafee · active response8 May 2020
- CVE-2020-728531İzleyin
Privilege Escalation vulnerability in MVISION Endpoint
YüksekCVSS 7,8İstismar yokEPSS %0mcafee · mvision endpoint8 May 2020
- CVE-2020-728631İzleyin
Privilege Escalation vulnerability in EDR for Windows
YüksekCVSS 7,8İstismar yokEPSS %0mcafee · endpoint detection and response8 May 2020
- CVE-2020-729031İzleyin
Privilege Escalation vulnerability in MAR for Linux
YüksekCVSS 7,8İstismar yokEPSS %0mcafee · active response8 May 2020
- CVE-2020-728731İzleyin
Privilege Escalation vulnerability in EDR for Linux
YüksekCVSS 7,8İstismar yokEPSS %0mcafee · endpoint detection and response8 May 2020
- CVE-2020-728831İzleyin
Privilege Escalation vulnerability in EDR for Mac
YüksekCVSS 7,8İstismar yokEPSS %0mcafee · endpoint detection and response8 May 2020
- CVE-2020-729131İzleyin
Privilege Escalation vulnerability MAR for Mac
YüksekCVSS 7,8İstismar yokEPSS %0mcafee · active response8 May 2020
- CVE-2021-3553429İzleyin
Insufficient Security Control Vulnerability
YüksekCVSS 7,2İstismar yokEPSS %2hitachienergy · gms600 firmware18 Kas 2021
- CVE-2024-4194228İzleyin
JupyterHub has a privilege escalation vulnerability with the `admin:users` scope
YüksekCVSS 7,2İstismar yokEPSS %1jupyter · jupyterhub8 Ağu 2024
- CVE-2022-2351127İzleyin
A privilege escalation issue exists within the Amazon CloudWatch Agent for Windows, software for collecting metrics and logs from Amazon EC2
OrtaCVSS 6,8İstismar yokEPSS %1amazon · cloudwatch agent12 Ara 2022