Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-269 (特权管理不恰当) — Vulnerability Class 992

992 vulnerabilities classified as CWE-269 (特权管理不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-26169 Windows Error Reporting Service Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.8 High2024-03-12
CVE-2024-28197 Account Takeover via Session Fixation in Zitadel [Bypassing MFA] — zitadel 7.5 High2024-03-11
CVE-2024-1442 User with permissions to create a data source can CRUD all data sources — Grafana 6.0 Medium2024-03-07
CVE-2024-1764 Devolutions Server 安全漏洞 — Server 8.8AIHighAI2024-03-05
CVE-2024-2005 SAML implementation allows privilege escalation — Inventory (BPI) 9.0 Critical2024-03-05
CVE-2024-1908 Improper Privilege Management vulnerability was identified in GitHub Enterprise Server that allowed Privilege Escalation — Enterprise Server 6.3 Medium2024-02-29
CVE-2024-0819 Incomplete protection of personal password settings — Remote Full Client 7.3 High2024-02-27
CVE-2024-0197 Privilege Escalation in Thales SafeNet Sentinel HASP LDK — Sentinel HASP LDK 7.8 High2024-02-27
CVE-2023-7016 Privilege Escalation in SafeNet Authentication Client — SafeNet Authentication Client 7.8 High2024-02-27
CVE-2023-5993 Privilege Escalation in SafeNet Authentication Client Installer — SafeNet Authentication Client 7.8 High2024-02-27
CVE-2024-0439 User can manually send request at manager permission to modify system configurations — mintplex-labs/anything-llm 4.3 -2024-02-25
CVE-2024-0622 Local privilege escalation vulnerability could affect OpenText Operations Agent on Non-Windows platforms. — Operations Agent 8.8 High2024-02-15
CVE-2023-45581 Fortinet FortiClient EMS 安全漏洞 — FortiClientEMS 7.9 High2024-02-15
CVE-2024-0353 Local privilege escalation in Windows products — ESET NOD32 Antivirus 7.8 High2024-02-15
CVE-2023-25535 Dell SupportAssist for Home PCs 安全漏洞 — SupportAssist Client Consumer 7.2 High2024-02-14
CVE-2024-24830 OpenObserve Privilege Escalation Vulnerability in Users API — openobserve 10.0 Critical2024-02-08
CVE-2023-31005 IBM Security Access Manager Container privilege escalation — Security Verify Access Appliance 6.2 Medium2024-02-03
CVE-2023-36496 Delegated Admin Virtual Attribute Provider Privilege Escalation — PingDirectory 7.7 High2024-02-01
CVE-2024-24747 MinIO unsafe default: Access keys inherit `admin` of root user, allowing privilege escalation — minio 8.8 High2024-01-31
CVE-2024-0833 Privilege Elevation via Telerik Test Studio — Telerik Test Studio 7.8 High2024-01-31
CVE-2024-0832 Privilege Elevation via Telerik Reporting Installer — Telerik Reporting 7.8 High2024-01-31
CVE-2024-0219 Privilege Elevation via Telerik JustDecompile Installer — Telerik JustDecompile 7.8 High2024-01-31
CVE-2024-0674 Privilege escalation vulnerability in Lamassu Bitcoin ATM Douro machines — Bitcoin ATM Douro machines 6.3 Medium2024-01-30
CVE-2024-21985 Privilege Escalation Vulnerability in ONTAP 9 — ONTAP 9 7.6 High2024-01-26
CVE-2024-23620 IBM Merge Healthcare eFilm Workstation SYSTEM Privilege Escalation — eFilm Workstation 8.8 High2024-01-25
CVE-2023-52107 Huawei HarmonyOS 安全漏洞 — HarmonyOS 7.5AIHighAI2024-01-16
CVE-2023-52116 Huawei HarmonyOS 安全漏洞 — HarmonyOS 7.5AIHighAI2024-01-16
CVE-2024-21638 Azure IPAM solution Elevation of Privilege Vulnerability — ipam 9.1 Critical2024-01-10
CVE-2023-44250 Fortinet FortiOS 安全漏洞 — FortiOS 8.3 High2024-01-10
CVE-2023-41784 Permissions and Access Control Vulnerability in ZTE Red Magic 8 Pro — Red Magic 8 Pro 6.6 Medium2024-01-04

Vulnerabilities classified as CWE-269 (特权管理不恰当) represent 992 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.