CWE-250— Execution with Unnecessary Privileges
304 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-250page 2 of 7
- CVE-2021-38118MEDIUMCVSS 5.5EG 5.52024-11-22
Possible improper input validation Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000.
- CVE-2021-41035CRITICALCVSS 9.8EG 9.82021-10-25
In Eclipse Openj9 before version 0.29.0, the JVM does not throw IllegalAccessError for MethodHandles that invoke inaccessible interface methods.
- CVE-2021-47700HIGHCVSS 7.8EG 7.82025-10-30
Nagios XI versions prior to 5.8.7 used a temporary directory for Highcharts exports with overly permissive ownership/permissions under the Apache user. Local or co-hosted processes could read/overwrite export artifacts or manipulate path…
- CVE-2022-0070HIGHCVSS 8.8EG 8.82022-04-19
Incomplete fix for CVE-2021-3100. The Apache Log4j hotpatch package starting with log4j-cve-2021-44228-hotpatch-1.1-16 will now explicitly mimic the Linux capabilities and cgroups of the target Java process that the hotpatch is applied to.
- CVE-2022-0071HIGHCVSS 8.8EG 8.82022-04-19
Incomplete fix for CVE-2021-3101. Hotdog, prior to v1.0.2, did not mimic the resource limits, device restrictions, or syscall filters of the target JVM process. This would allow a container to exhaust the resources of the host, modify devi…
- CVE-2022-1517CRITICALCVSS 10.0EG 9.82022-06-24
LRM utilizes elevated privileges. An unauthenticated malicious actor can upload and execute code remotely at the operating system level, which can allow an attacker to change settings, configurations, software, or access sensitive data on …
- CVE-2022-1744MEDIUMCVSS 6.8EG 6.82022-06-24
Applications on the tested version of Dominion Voting Systems ImageCast X can execute code with elevated privileges by exploiting a system level service. An attacker could leverage this vulnerability to escalate privileges on a device and/…
- CVE-2022-1808HIGHCVSS 8.8EG 8.82022-05-31
Execution with Unnecessary Privileges in GitHub repository polonel/trudesk prior to 1.2.3.
- CVE-2022-20676MEDIUMCVSS 5.1EG 6.72022-04-15
A vulnerability in the Tool Command Language (Tcl) interpreter of Cisco IOS XE Software could allow an authenticated, local attacker to escalate from privilege level 15 to root-level privileges. This vulnerability is due to insufficient in…
- CVE-2022-21699HIGHCVSS 8.2EG 8.22022-01-19
IPython (Interactive Python) is a command shell for interactive computing in multiple programming languages, originally developed for the Python programming language. Affected versions are subject to an arbitrary code execution vulnerabili…
- CVE-2022-22239HIGHCVSS 8.2EG 8.22022-10-18
An Execution with Unnecessary Privileges vulnerability in Management Daemon (mgd) of Juniper Networks Junos OS Evolved allows a locally authenticated attacker with low privileges to escalate their privileges on the device and potentially r…
- CVE-2022-24113HIGHCVSS 7.8EG 7.82022-02-04
Local privilege escalation due to excessive permissions assigned to child processes. The following products are affected: Acronis Cyber Protect 15 (Windows) before build 28035, Acronis Agent (Windows) before build 27147, Acronis Cyber Prot…
- CVE-2022-2634CRITICALCVSS 10.0EG 9.82022-08-10
An attacker may be able to execute malicious actions due to the lack of device access protections and device permissions when using the web application. This could lead to uploading python files which can be later executed.
- CVE-2022-27578HIGHCVSS 7.8EG 7.82022-04-11
An attacker can perform a privilege escalation through the SICK OEE if the application is installed in a directory where non authenticated or low privilege users can modify its content.
- CVE-2022-30695HIGHCVSS 7.8EG 7.82022-05-16
Local privilege escalation due to excessive permissions assigned to child processes. The following products are affected: Acronis Snap Deploy (Windows) before build 3640
- CVE-2022-3088HIGHCVSS 7.8EG 7.82022-11-28
UC-8100A-ME-T System Image: Versions v1.0 to v1.6, UC-2100 System Image: Versions v1.0 to v1.12, UC-2100-W System Image: Versions v1.0 to v 1.12, UC-3100 System Image: Versions v1.0 to v1.6, UC-5100 System Image: Versions v1.0 to…
- CVE-2022-32535MEDIUMCVSS 4.8EG 9.82022-06-23
The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 runs its web server with root privilege. In combination with CVE-2022-23534 this could give an attacker root access to the switch.
- CVE-2022-34384HIGHCVSS 7.8EG 7.82023-02-11
Dell SupportAssist Client Consumer (version 3.11.1 and prior), SupportAssist Client Commercial (version 3.2 and prior), Dell Command | Update, Dell Update, and Alienware Update versions before 4.5 contain a Local Privilege Escalation Vuln…
- CVE-2022-38691HIGHCVSS 7.8EG 7.82025-09-01
In BootROM, there is a possible missing validation for Certificate Type 0. This could lead to local escalation of privilege with no additional execution privileges needed.
- CVE-2022-38694HIGHCVSS 7.8EG 7.82025-09-01
In BootRom, there is a possible unchecked write address. This could lead to local escalation of privilege with no additional execution privileges needed.
- CVE-2022-38695HIGHCVSS 7.8EG 7.82025-09-01
In BootRom, there's a possible unchecked command index. This could lead to local escalation of privilege with no additional execution privileges needed.
- CVE-2022-39286HIGHCVSS 8.8EG 8.82022-10-26
Jupyter Core is a package for the core common functionality of Jupyter projects. Jupyter Core prior to version 4.11.2 contains an arbitrary code execution vulnerability in `jupyter_core` that stems from `jupyter_core` executing untrusted f…
- CVE-2022-40182HIGHCVSS 8.8EG 8.82022-10-11
A vulnerability has been identified in Desigo PXM30-1 (All versions < V02.20.126.11-41), Desigo PXM30.E (All versions < V02.20.126.11-41), Desigo PXM40-1 (All versions < V02.20.126.11-41), Desigo PXM40.E (All versions < V02.20.126.11-41), …
- CVE-2022-41290HIGHCVSS 8.4EG 8.42022-12-23
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the rm_rlcache_file command to obtain root privileges. IBM X-Force ID: 236690.
- CVE-2022-41950MEDIUMCVSS 6.4EG 6.42022-11-22
super-xray is the GUI alternative for vulnerability scanning tool xray. In 0.2-beta, a privilege escalation vulnerability was discovered. This caused inaccurate default xray permissions. Note: this vulnerability only affects Linux and Mac …
- CVE-2022-43553HIGHCVSS 8.8EG 8.82022-12-05
A remote code execution vulnerability in EdgeRouters (Version 2.0.9-hotfix.4 and earlier) allows a malicious actor with an operator account to run arbitrary administrator commands.This vulnerability is fixed in Version 2.0.9-hotfix.5 and l…
- CVE-2022-44544CRITICALCVSS 9.8EG 9.82022-11-06
Mahara 21.04 before 21.04.7, 21.10 before 21.10.5, 22.04 before 22.04.3, and 22.10 before 22.10.0 potentially allow a PDF export to trigger a remote shell if the site is running on Ubuntu and the flag -dSAFER is not set with Ghostscript.
- CVE-2023-0664HIGHCVSS 7.8EG 7.82023-03-29
A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their privileges on the system.
- CVE-2023-1943HIGHCVSS 8.0EG 8.02023-10-12
Privilege Escalation in kOps using GCE/GCP Provider in Gossip Mode.
- CVE-2023-1966HIGHCVSS 7.4EG 7.42023-04-28
Instruments with Illumina Universal Copy Service v1.x and v2.x contain an unnecessary privileges vulnerability. An unauthenticated malicious actor could upload and execute code remotely at the operating system level, which could allow an a…
- CVE-2023-2002MEDIUMCVSS 6.8EG 6.82023-05-26
A vulnerability was found in the HCI sockets implementation due to a missing capability check in net/bluetooth/hci_sock.c in the Linux Kernel. This flaw allows an attacker to unauthorized execution of management commands, compromising the …
- CVE-2023-20210MEDIUMCVSS 6.0EG 6.02023-07-12
A vulnerability in Cisco BroadWorks could allow an authenticated, local attacker to elevate privileges to the root user on an affected device. The vulnerability is due to insufficient input validation by the operating system CLI. An att…
- CVE-2023-20217MEDIUMCVSS 5.5EG 5.52023-08-16
A vulnerability in the CLI of Cisco ThousandEyes Enterprise Agent, Virtual Appliance installation type, could allow an authenticated, local attacker to elevate privileges on an affected device. This vulnerability is due to insufficient …
- CVE-2023-25521HIGHCVSS 7.5EG 7.52023-07-04
NVIDIA DGX A100/A800 contains a vulnerability in SBIOS where an attacker may cause execution with unnecessary privileges by leveraging a weakness whereby proper input parameter validation is not performed. A successful exploit of thi…
- CVE-2023-27010HIGHCVSS 7.8EG 7.82023-03-13
Wondershare Dr.Fone v12.9.6 was discovered to contain weak permissions for the service WsDrvInst. This vulnerability allows attackers to escalate privileges via modifying or overwriting the executable.
- CVE-2023-27247MEDIUMCVSS 4.4EG 4.42023-03-28
Cynet Client Agent v4.6.0.8010 allows attackers with Administrator rights to disable the EDR functions by disabling process privilege tokens.
- CVE-2023-27312MEDIUMCVSS 5.4EG 5.42023-10-12
SnapCenter Plugin for VMware vSphere versions 4.6 prior to 4.9 are susceptible to a vulnerability which may allow authenticated unprivileged users to modify email and snapshot name settings within the VMware vSphere user interface.
- CVE-2023-27313HIGHCVSS 8.3EG 8.32023-10-12
SnapCenter versions 3.x and 4.x prior to 4.9 are susceptible to a vulnerability which may allow an authenticated unprivileged user to gain access as an admin user.
- CVE-2023-30617MEDIUMCVSS 6.5EG 6.52024-01-03
Kruise provides automated management of large-scale applications on Kubernetes. Starting in version 0.8.0 and prior to versions 1.3.1, 1.4.1, and 1.5.2, an attacker who has gained root privilege of the node that kruise-daemon run can lever…
- CVE-2023-30997HIGHCVSS 7.8EG 8.42024-06-27
IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to obtain root access due to improper access controls. IBM X-Force ID: 254638.
- CVE-2023-30998HIGHCVSS 7.8EG 8.42024-06-27
IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to obtain root access due to improper access controls. IBM X-Force ID: 254649.
- CVE-2023-31175HIGHCVSS 8.8EG 8.82023-08-31
An Execution with Unnecessary Privileges vulnerability in the Schweitzer Engineering Laboratories SEL-5037 SEL Grid Configurator could allow an attacker to run system commands with the highest level privilege on the system. See Instr…
- CVE-2023-32080CRITICALCVSS 9.0EG 9.02023-05-10
Wings is the server control plane for Pterodactyl Panel. A vulnerability affecting versions prior to 1.7.5 and versions 1.11.0 prior to 1.11.6 impacts anyone running the affected versions of Wings. This vulnerability can be used to gain a…
- CVE-2023-32486MEDIUMCVSS 6.7EG 6.72023-08-16
Dell PowerScale OneFS 9.5.x version contain a privilege escalation vulnerability. A low privilege local attacker could potentially exploit this vulnerability, leading to escalation of privileges.
- CVE-2023-33873HIGHCVSS 7.8EG 7.82023-11-15
This privilege escalation vulnerability, if exploited, cloud allow a local OS-authenticated user with standard privileges to escalate to System privilege on the machine where these products are installed, resulting in complete compromise …
- CVE-2023-34118HIGHCVSS 7.3EG 7.32023-07-11
Improper privilege management in Zoom Rooms for Windows before version 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.
- CVE-2023-37412MEDIUMCVSS 4.4EG 4.42025-01-29
IBM Aspera Faspex 5.0.0 through 5.0.10 could allow a privileged user to make system changes without proper access controls.
- CVE-2023-38042HIGHCVSS 7.8EG 7.82024-05-31
A local privilege escalation vulnerability in Ivanti Secure Access Client for Windows allows a low privileged user to execute code as SYSTEM.
- CVE-2023-38641HIGHCVSS 7.8EG 7.82023-08-08
A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.10). The affected application's database service is executed as `NT AUTHORITY\SYSTEM`. This could allow a local attacker to execute operating system commands with…
- CVE-2023-39261MEDIUMCVSS 5.2EG 5.22023-07-26
In JetBrains IntelliJ IDEA before 2023.2 plugin for Space was requesting excessive permissions
Map vulnerabilities like CWE-250 to your infrastructure
EchelonGraph correlates every CVE — across CWE-250 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →