Falhas do tipo CWE-269

1.775 resultados
CVE-2025-4334CRITICALSimple User Registration <= 6.3 - Unauthenticated Privilege EscalationEPSS 2.1%CVE-2021-1401HIGHCisco Small Business 100, 300, and 500 Series Wireless Access Points VulnerabilitiesEPSS 2.0%CVE-2022-24842HIGHImproper Privilege Management in MinIOEPSS 2.0%CVE-2021-29449MEDIUMMultiple Privilege Escalation Vulnerabilities PiholeEPSS 1.9%CVE-2024-21111HIGHVulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are PrioEPSS 1.8%CVE-2020-27655MEDIUMImproper access control vulnerability in Synology Router Manager (SRM) before 1.2.4-8081 allows remote attackers to access restricted resourEPSS 1.7%CVE-2022-41923CRITICALGrails Spring Security Core plugin vulnerable to privilege escalationEPSS 1.7%CVE-2016-9489ManageEngine Applications Manager 12 and 13 is vulnerable to privilege escalation and authentication bypassEPSS 1.7%CVE-2024-21638CRITICALAzure IPAM solution Elevation of Privilege VulnerabilityEPSS 1.7%CVE-2022-35774MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2022-34691HIGHActive Directory Domain Services Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2024-33775CRITICALAn issue with the Autodiscover component in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a crafted Dashlet.EPSS 1.6%CVE-2021-39168CRITICALTimelockController vulnerability in OpenZeppelin ContractsEPSS 1.6%CVE-2021-39167CRITICALTimelockController vulnerability in OpenZeppelin ContractsEPSS 1.6%CVE-2021-37173A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.14.1), RUGGEDCOM ROX RX1400 (All versions < V2.14.1), RUGGEDCEPSS 1.6%CVE-2023-49232CRITICALAn authentication bypass vulnerability was found in Stilog Visual Planning 8. It allows an unauthenticated attacker to brute-force the passwEPSS 1.5%CVE-2021-24602HM Multiple Roles < 1.3 - Arbitrary Role ChangeEPSS 1.5%CVE-2021-27664CRITICALexacqVision Web ServiceEPSS 1.5%CVE-2022-35782MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 1.5%CVE-2022-35780MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 1.5%