VulnSea

CWE-269

CVEs classified under CWE-269, newest first.

470 CVEsRSS

CVE-2022-25089Critical· 9.8PoC
4y ago

Printix Secure Cloud Print Management through 1.3.1106.0 incorrectly uses Privileged APIs to modify values in HKEY_LOCAL_MACHINE via UITasks.PersistentRegistryData.

Printix Secure Cloud Print Management through 1.3.1106.0 incorrectly uses Privileged APIs to modify values in HKEY_LOCAL_MACHINE via UITasks.PersistentRegistryData.

▾ Abyssalkofax · printixEPSS 18%via NVD
CVE-2021-37345High· 7.8
5y ago

Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because xi-sys.cfg is being imported from the var directory for some scripts with elevated permissions.

Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because xi-sys.cfg is being imported from the var directory for some scripts with elevated permissions.

▾ Twilightnagios · nagios_xiEPSS 0.57%via NVD
CVE-2021-34514High· 7.8
5y ago

Windows Kernel Elevation of Privilege Vulnerability

Windows Kernel Elevation of Privilege Vulnerability

▾ Twilightmicrosoft · windows_10EPSS 0.69%via NVD
CVE-2021-34511High· 7.8
5y ago

Windows Installer Elevation of Privilege Vulnerability

Windows Installer Elevation of Privilege Vulnerability

▾ Twilightmicrosoft · windows_10EPSS 0.56%via NVD
CVE-2021-34493Medium· 6.7
5y ago

Windows Partition Management Driver Elevation of Privilege Vulnerability

Windows Partition Management Driver Elevation of Privilege Vulnerability

▾ Sunlitmicrosoft · windows_10EPSS 0.64%via NVD
CVE-2021-34488High· 7.8
5y ago

Windows Console Driver Elevation of Privilege Vulnerability

Windows Console Driver Elevation of Privilege Vulnerability

▾ Twilightmicrosoft · windows_10EPSS 0.56%via NVD
CVE-2021-34477High· 7.8
5y ago

Visual Studio Code .NET Runtime Elevation of Privilege Vulnerability

Visual Studio Code .NET Runtime Elevation of Privilege Vulnerability

▾ Twilightmicrosoft · .net_education_bundle_sdk_install_toolEPSS 0.56%via NVD
CVE-2021-33751High· 7.00day
5y ago

Windows Storage Spaces Controller Elevation of Privilege Vulnerability

Windows Storage Spaces Controller Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10EPSS 0.81%via NVD
CVE-2021-31961Medium· 6.10day
5y ago

Windows InstallService Elevation of Privilege Vulnerability

Windows InstallService Elevation of Privilege Vulnerability

▾ Midnightmicrosoft · windows_10EPSS 0.80%via NVD
CVE-2018-16497High· 7.8
5y ago

In Versa Analytics, the cron jobs are used for scheduling tasks by executing commands at specific dates and times on the server

In Versa Analytics, the cron jobs are used for scheduling tasks by executing commands at specific dates and times on the server. If the job is run as the user root, there is a potential privilege escalation vulnerability. In this case, t…

▾ Twilightversa-networks · versa_analyticsEPSS 0.23%via NVD
CVE-2020-27518High· 7.8
5y ago

All versions of Windscribe VPN for Mac and Windows <= v2.02.10 contain a local privilege escalation vulnerability in the WindscribeService component

All versions of Windscribe VPN for Mac and Windows <= v2.02.10 contain a local privilege escalation vulnerability in the WindscribeService component. A low privilege user could leverage several openvpn options to execute code as root/SYS…

▾ Twilightwindscribe · windscribeEPSS 0.44%via NVD
CVE-2021-20021Critical· 9.8CISA KEVPoC
5y ago

A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host.

A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host.

▾ Hadalsonicwall · email_securityEPSS 89%via NVD
CVE-2018-9333High· 7.8
5y ago

K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Buffer Overflow

K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). The component is: K7TSMngr.exe.

▾ Twilightk7computing · antivriusEPSS 0.35%via NVD
CVE-2018-9332High· 7.8
5y ago

K7Computing Pvt Ltd K7AntiVirus Premium 15.01.00.53 is affected by: Incorrect Access Control

K7Computing Pvt Ltd K7AntiVirus Premium 15.01.00.53 is affected by: Incorrect Access Control. The impact is: gain privileges (local).

▾ Twilightk7computing · antivriusEPSS 0.27%via NVD
CVE-2018-8724High· 7.8
5y ago

K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Incorrect Access Control

K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Incorrect Access Control. The impact is: gain privileges (local). The component is: K7TSMngr.exe.

▾ Twilightk7computing · antivriusEPSS 0.27%via NVD
CVE-2018-8044High· 7.8
5y ago

K7Computing Pvt Ltd K7Antivirus Premium 15.1.0.53 is affected by: Incorrect Access Control

K7Computing Pvt Ltd K7Antivirus Premium 15.1.0.53 is affected by: Incorrect Access Control. The impact is: Local Process Execution (local). The component is: K7Sentry.sys.

▾ Twilightk7computing · antivriusEPSS 0.31%via NVD
CVE-2019-1405High· 7.8CISA KEVPoC
6y ago

An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creation, aka 'Windows UPnP Service Elevation of Privilege Vulnerability'.

An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creation, aka 'Windows UPnP Service Elevation of Privilege Vulnerability'.

▾ Abyssalmicrosoft · windows_10_1507EPSS 30%via NVD
CVE-2019-16202Medium· 6.5
7y ago

MISP before 2.4.115 allows privilege escalation in certain situations

MISP before 2.4.115 allows privilege escalation in certain situations. After updating to 2.4.115, escalation attempts are blocked by the __checkLoggedActions function with a "This could be an indication of an attempted privilege escalati…

▾ Sunlitmisp-project · mispEPSS 1.3%via NVD
CVE-2019-12794Medium· 6.6
7y ago

An issue was discovered in MISP 2.4.108

An issue was discovered in MISP 2.4.108. Organization admins could reset credentials for site admins (organization admins have the inherent ability to reset passwords for all of their organization's users). This, however, could be abused…

▾ Sunlitmisp-project · mispEPSS 0.93%via NVD
CVE-1999-0084High· 8.4
36y ago

Certain NFS servers allow users to use mknod to gain privileges by creating a writable kmem device and setting the UID to 0.

Certain NFS servers allow users to use mknod to gain privileges by creating a writable kmem device and setting the UID to 0.

▾ TwilightEPSS 0.41%via NVD
CWE-269 vulnerabilities (CVEs) — page 16 · VulnSea