Fallos del tipo CWE-250

329 resultados
CVE-2025-33109HIGHIBM i privilege escalationEPSS 0.4%CVE-2021-3100HIGHLog4j hot patch package privilege escalationEPSS 0.4%CVE-2023-6006HIGHPrivilege Escalation VulnerabilityEPSS 0.4%CVE-2024-47903MEDIUMA vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fire Subscriber (All veEPSS 0.4%CVE-2025-59481HIGHBIG-IP iControl REST and tmsh vulnerabilityEPSS 0.4%CVE-2025-61958HIGHBIG-IP TMSH vulnerabilityEPSS 0.4%CVE-2020-10290MEDIUMRVD#1495: Universal Robots URCaps execute with unbounded privilegesEPSS 0.4%CVE-2025-13506HIGHImproper Authorization in Nebim Neyir's Nebim V3 ERPEPSS 0.4%CVE-2025-67510CRITICALMySQLWriteTool allows arbitrary/destructive SQL when exposed to untrusted prompts (agent “footgun”)EPSS 0.3%CVE-2025-33103HIGHIBM i privilege escalationEPSS 0.3%CVE-2025-23009HIGHA local privilege escalation vulnerability in SonicWall NetExtender Windows (32 and 64 bit) client which allows an attacker to trigger an arEPSS 0.3%CVE-2019-10143MEDIUMIt was discovered freeradius up to and including version 3.0.19 does not correctly configure logrotate, allowing a local attacker who alreadEPSS 0.3%CVE-2023-38042HIGHA local privilege escalation vulnerability in Ivanti Secure Access Client for Windows allows a low privileged user to execute code as SYSTEMEPSS 0.3%CVE-2026-42088CRITICALOpenC3 COSMOS: Administrative Actions via the Script Runner ToolEPSS 0.3%CVE-2025-62503MEDIUMApache Airflow: Privilege boundary bypass in bulk APIs (create action can upsert existing Pools/Connections/Variables)EPSS 0.3%CVE-2025-1137HIGHIBM Storage Scale command injectionEPSS 0.3%CVE-2026-47190MEDIUMIPAM controller service account granted unnecessary full access to SecretsEPSS 0.3%CVE-2022-38691HIGHIn BootROM, there is a possible missing validation for Certificate Type 0. This could lead to local escalation of privilege with no additionEPSS 0.3%CVE-2024-3498HIGHIncorrect Permission Assignment Privilege Escalation VulnerabilityEPSS 0.3%CVE-2025-1977HIGHThe NPort 6100-G2/6200-G2 Series is affected by an execution with unnecessary privileges vulnerability (CVE-2025-1977) that allows an authenEPSS 0.3%