CWE-269— Improper Privilege Management
4,215 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-269page 9 of 85
- CVE-2019-16098HIGHCVSS 7.8EG 7.82019-09-11
The driver in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any authenticated user to read and write to arbitrary memory, I/O ports, and MSRs. This can be exploited for privilege escalation, code executi…
- CVE-2019-16202MEDIUMCVSS 6.5EG 6.52019-09-10
MISP before 2.4.115 allows privilege escalation in certain situations. After updating to 2.4.115, escalation attempts are blocked by the __checkLoggedActions function with a "This could be an indication of an attempted privilege escalation…
- CVE-2019-16519HIGHCVSS 7.8EG 7.82019-10-14
ESET Cyber Security 6.7.900.0 for macOS allows a local attacker to execute unauthorized commands as root by abusing an undocumented feature in scheduled tasks.
- CVE-2019-16653HIGHCVSS 8.8EG 8.82020-04-29
An application plugin in Genius Bytes Genius Server (Genius CDDS) 3.2.2 allows remote authenticated users to gain admin privileges.
- CVE-2019-16777HIGHCVSS 7.7EG 7.72019-12-13
Versions of the npm CLI prior to 6.13.4 are vulnerable to an Arbitrary File Overwrite. It fails to prevent existing globally-installed binaries to be overwritten by other package installations. For example, if a package was installed globa…
- CVE-2019-16897CRITICALCVSS 9.8EG 9.82019-10-28
In K7 Antivirus Premium 16.0.xxx through 16.0.0120; K7 Total Security 16.0.xxx through 16.0.0120; and K7 Ultimate Security 16.0.xxx through 16.0.0120, the module K7TSHlpr.dll improperly validates the administrative privileges of the user, …
- CVE-2019-17066HIGHCVSS 7.8EG 7.82020-05-18
In Ivanti WorkSpace Control before 10.4.40.0, a user can elevate rights on the system by hijacking certain user registries. This is possible because pwrgrid.exe first checks the Current User registry hives (HKCU) when starting an applicati…
- CVE-2019-17202HIGHCVSS 7.8EG 7.82020-01-23
FastTrack Admin By Request 6.1.0.0 supports group policies that are supposed to allow only a select range of users to elevate to Administrator privilege at will. If a user does not have direct access to the elevation feature through group …
- CVE-2019-1754HIGHCVSS 8.8EG 8.82019-03-28
A vulnerability in the authorization subsystem of Cisco IOS XE Software could allow an authenticated but unprivileged (level 1), remote attacker to run privileged Cisco IOS commands by using the web UI. The vulnerability is due to improper…
- CVE-2019-17631CRITICALCVSS 9.1EG 9.12019-10-17
From Eclipse OpenJ9 0.15 to 0.16, access to diagnostic operations such as causing a GC or creating a diagnostic file are permitted without any privilege checks.
- CVE-2019-18365MEDIUMCVSS 4.3EG 4.32019-10-31
In JetBrains TeamCity before 2019.1.4, reverse tabnabbing was possible on several pages.
- CVE-2019-18425CRITICALCVSS 9.8EG 9.82019-10-31
An issue was discovered in Xen through 4.12.x allowing 32-bit PV guest OS users to gain guest OS privileges by installing and using descriptors. There is missing descriptor table limit checking in x86 PV emulation. When emulating certain P…
- CVE-2019-18462MEDIUMCVSS 4.3EG 4.32019-11-26
An issue was discovered in GitLab Community and Enterprise Edition 11.3 through 12.4. It has Insecure Permissions.
- CVE-2019-18623CRITICALCVSS 9.8EG 9.82019-11-08
Escalation of privileges in EnergyCAP 7 through 7.5.6 allows an attacker to access data. If an unauthenticated user clicks on a link on the public dashboard, the resource opens in EnergyCAP with access rights matching the user who created …
- CVE-2019-18822HIGHCVSS 8.8EG 8.82020-04-14
A privilege escalation vulnerability in ZOOM Call Recording 6.3.1 allows its user account (i.e., the account under which the program runs - by default, the callrec account) to elevate privileges to root by abusing the callrec-rs@.service. …
- CVE-2019-18845HIGHCVSS 7.1EG 7.12019-11-09
The MsIo64.sys and MsIo32.sys drivers in Patriot Viper RGB before 1.1 allow local users (including low integrity processes) to read and write to arbitrary memory locations, and consequently gain NT AUTHORITY\SYSTEM privileges, by mapping \…
- CVE-2019-18899MEDIUMCVSS 6.2EG 5.52020-01-23
The apt-cacher-ng package of openSUSE Leap 15.1 runs operations in user owned directory /run/apt-cacher-ng with root privileges. This can allow local attackers to influence the outcome of these operations. This issue affects: openSUSE Leap…
- CVE-2019-18916HIGHCVSS 7.8EG 7.82021-11-09
A potential security vulnerability has been identified for HP LaserJet Solution Software (for certain HP LaserJet Printers) which may lead to unauthorized elevation of privilege on the client.
- CVE-2019-18932HIGHCVSS 7.0EG 7.02020-01-21
log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows local privilege escalation. By default, it uses a fixed temporary directory /tmp/sarg. As the root user, sarg creates this directory or reuses an existing one in an inse…
- CVE-2019-18945HIGHCVSS 7.3EG 7.32021-02-26
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to privilege escalation vulnerability.
- CVE-2019-19014HIGHCVSS 7.8EG 7.82019-12-02
An issue was discovered in TitanHQ WebTitan before 5.18. It has a sudoers file that enables low-privilege users to execute a vast number of commands as root, including mv, chown, and chmod. This can be trivially exploited to gain root priv…
- CVE-2019-19119MEDIUMCVSS 5.5EG 5.52020-02-03
An issue was discovered in PRTG 7.x through 19.4.53. Due to insufficient access control on local registry keys for the Core Server Service, a non-administrative user on the local machine is able to access administrative credentials.
- CVE-2019-19151MEDIUMCVSS 5.5EG 5.52019-12-23
On BIG-IP versions 15.0.0-15.1.0, 14.0.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IQ versions 7.0.0, 6.0.0-6.1.0, and 5.0.0-5.4.0, iWorkflow version 2.3.0, and Enterprise Manager version 3.1.1, authenticated users…
- CVE-2019-19216HIGHCVSS 8.8EG 8.82020-04-30
BMC Control-M/Agent 7.0.00.000 has an Insecure File Copy.
- CVE-2019-19345HIGHCVSS 7.0EG 7.82020-03-20
A vulnerability was found in all openshift/mediawiki-apb 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mediawiki-apb. An attacker with access to the…
- CVE-2019-19346HIGHCVSS 7.0EG 7.02020-04-02
An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mariadb-apb, affecting versions before the following 4.3.5, 4.2.21, 4.1.37, and 3.11.188-4 . An attacker with access to the container could…
- CVE-2019-19348HIGHCVSS 7.0EG 7.02020-04-02
An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/apb-base, affecting versions before the following 4.3.5, 4.2.21, 4.1.37, and 3.11.188-4. An attacker with access to the container could use…
- CVE-2019-19351HIGHCVSS 7.0EG 7.02020-03-18
An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/jenkins. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges. This CVE is spec…
- CVE-2019-19354HIGHCVSS 7.8EG 7.82021-03-24
An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hadoop as shipped in Red Hat Openshift 4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate th…
- CVE-2019-19355HIGHCVSS 7.0EG 7.02020-03-18
An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ocp-release-operator-sdk. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges. This CVE …
- CVE-2019-1939HIGHCVSS 8.8EG 8.82019-09-05
A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected system. This vulnerability is due to improper restrictions on software logging feature…
- CVE-2019-19455HIGHCVSS 7.8EG 7.82020-08-03
Wowza Streaming Engine before 4.8.5 has Insecure Permissions which may allow a local attacker to escalate privileges in / usr / local / WowzaStreamingEngine / manager / bin / in the Linux version of the server by writing arbitrary commands…
- CVE-2019-19470HIGHCVSS 7.8EG 7.82019-12-30
Unsafe usage of .NET deserialization in Named Pipe message processing allows privilege escalation to NT AUTHORITY\SYSTEM for a local attacker. Affected product is TinyWall, all versions up to and including 2.1.12. Fixed in version 2.1.13.
- CVE-2019-19544HIGHCVSS 7.8EG 7.82020-01-08
CA Automic Dollar Universe 5.3.3 contains a vulnerability, related to the uxdqmsrv binary being setuid root, that allows local attackers to elevate privileges. This vulnerability was reported to CA several years after CA Automic Dollar Uni…
- CVE-2019-19585HIGHCVSS 7.8EG 7.82020-01-06
An issue was discovered in rConfig 3.9.3. The install script updates the /etc/sudoers file for rconfig specific tasks. After an "rConfig specific Apache configuration" update, apache has high privileges for some binaries. This can be explo…
- CVE-2019-19699HIGHCVSS 7.2EG 7.22020-04-06
There is Authenticated remote code execution in Centreon Infrastructure Monitoring Software through 19.10 via Pollers misconfiguration, leading to system compromise via apache crontab misconfiguration, This allows the apache user to modify…
- CVE-2019-19726HIGHCVSS 7.8EG 7.82019-12-12
OpenBSD through 6.6 allows local users to escalate to root because a check for LD_LIBRARY_PATH in setuid programs can be defeated by setting a very small RLIMIT_DATA resource limit. When executing chpass or passwd (which are setuid root), …
- CVE-2019-19728HIGHCVSS 7.5EG 7.52020-01-13
SchedMD Slurm before 18.08.9 and 19.x before 19.05.5 executes srun --uid with incorrect privileges.
- CVE-2019-19783MEDIUMCVSS 6.5EG 6.52019-12-16
An issue was discovered in Cyrus IMAP before 2.5.15, 3.0.x before 3.0.13, and 3.1.x through 3.1.8. If sieve script uploading is allowed (3.x) or certain non-default sieve options are enabled (2.x), a user with a mail account on the service…
- CVE-2019-20001HIGHCVSS 7.8EG 7.82020-08-04
An issue was discovered in RICOH Streamline NX Client Tool and RICOH Streamline NX PC Client that allows attackers to escalate local privileges.
- CVE-2019-20029HIGHCVSS 8.8EG 8.82020-07-29
An exploitable privilege escalation vulnerability exists in the WebPro functionality of Aspire-derived NEC PBXes, including all versions of SV8100, SV9100, SL1100 and SL2100 devices. A specially crafted HTTP POST can cause privilege escala…
- CVE-2019-20043MEDIUMCVSS 4.3EG 4.32019-12-27
In in wp-includes/rest-api/endpoints/class-wp-rest-posts-controller.php in WordPress 3.7 to 5.3.0, authenticated users who do not have the rights to publish a post are able to mark posts as sticky or unsticky via the REST API. For example,…
- CVE-2019-20074HIGHCVSS 8.8EG 8.82019-12-30
On Netis DL4323 devices, any user role can view sensitive information, such as a user password or the FTP password, via the form2saveConf.cgi page.
- CVE-2019-20327HIGHCVSS 7.8EG 7.82020-01-16
Insecure permissions in cwrapper_perl in Centreon Infrastructure Monitoring Software through 19.10 allow local attackers to gain privileges. (cwrapper_perl is a setuid executable allowing execution of Perl scripts with root privileges.)
- CVE-2019-20781HIGHCVSS 7.8EG 7.82020-04-29
An issue was discovered in LG Bridge before April 2019 on Windows. DLL Hijacking can occur.
- CVE-2019-20859HIGHCVSS 7.5EG 7.52020-06-19
An issue was discovered in Mattermost Server before 5.15.0. Login access control can be bypassed via crafted input.
- CVE-2019-20886HIGHCVSS 7.5EG 7.52020-06-19
An issue was discovered in Mattermost Server before 5.8.0. The first user is sometimes inadvertently a system admin.
- CVE-2019-20908MEDIUMCVSS 6.7EG 6.72020-07-15
An issue was discovered in drivers/firmware/efi/efi.c in the Linux kernel before 5.4. Incorrect access permissions for the efivar_ssdt ACPI variable could be used by attackers to bypass lockdown or secure boot restrictions, aka CID-1957a85…
- CVE-2019-2193HIGHCVSS 7.8EG 7.82019-11-13
In WelcomeActivity.java and related files, there is a possible permissions bypass due to a partially provisioned Device Policy Client. This could lead to local escalation of privilege, leaving an Admin app installed with no indication to t…
- CVE-2019-2214HIGHCVSS 7.8EG 7.82019-11-13
In binder_transaction of binder.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for e…
Map vulnerabilities like CWE-269 to your infrastructure
EchelonGraph correlates every CVE — across CWE-269 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →