CWE-250

Medium likelihood

Execution with Unnecessary Privileges

Parent: CWE-269 - Improper Privilege Management

The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.

341 vulnerabilities with CWE-250
CVE-2022-40182 HIGH
Desigo PXM30-1 <V02.20.126.11-41 - Info Disclosure
CVSS 8.8
CVE-2022-2634 CRITICAL
Digi ConnectPort X2d <2020-01-01 - Unauthenticated RCE via File Upload
CVSS 10.0
CVE-2022-1744 MEDIUM
Dominion Voting Systems ImageCast X - Privilege Escalation
CVSS 6.8
CVE-2022-1517 CRITICAL
Illumina Local Run Manager 1.3 to 3.1 - Unauthenticated Remote Code Execution
CVSS 10.0
CVE-2022-32535 MEDIUM
Bosch Ethernet switch PRA-ES8P2S <1.01.05 - Privilege Escalation
CVSS 4.8
CVE-2022-1808 HIGH
polonel/trudesk <1.2.3 - Privilege Escalation
CVSS 8.8
CVE-2022-30695 HIGH
Acronis Snap Deploy <3640 - Privilege Escalation
CVSS 7.8
CVE-2022-0071 HIGH
Hotdog <1.0.2 - Privilege Escalation
CVSS 8.8
CVE-2022-0070 HIGH
Apache Log4j - Privilege Escalation
CVSS 8.8
CVE-2022-20676 MEDIUM
Cisco IOS XE - Privilege Escalation
CVSS 5.1
CVE-2022-27578 HIGH
SICK Overall Equipment Effectiveness - Privilege Escalation via Writable Installation Directory
CVSS 7.8
CVE-2022-24113 HIGH
Acronis Agent < 27147 - Local Privilege Escalation via Excessive Child Process Permissions
CVSS 7.8
CVE-2022-21699 HIGH
IPython < 5.10.0 - Arbitrary Code Execution via Cross-User Temporary File Mismanagement
CVSS 8.2
CVE-2021-47700 HIGH
Nagios XI <5.8.7 - Privilege Escalation
CVSS 7.8
CVE-2021-38118 MEDIUM
OpenText iManager <3.2.4.0000 - Info Disclosure
CVSS 5.5
CVE-2021-34591 HIGH
Bender CC612 and ICC15xx Firmware 5.11.0-5.11.1 - Authenticated Local Privilege Escalation via SUID Applications
CVSS 7.8
CVE-2021-3101 HIGH
Hotdog <1.0.1 - Privilege Escalation
CVSS 8.8
CVE-2021-3100 HIGH
Apache Log4j <log4j-cve-2021-44228-hotpatch-1.1-13 - Privilege Esca...
CVSS 8.8
CVE-2021-36339 HIGH
Dell EMC Virtual Appliances <9.2.2.2 - Privilege Escalation
CVSS 7.8
CVE-2021-34998 HIGH
Panda Security Free Antivirus 20.2.0.0 - Privilege Escalation
CVSS 7.8
CVE-2021-1118 HIGH
NVIDIA vGPU 8.0-8.9 - Privilege Escalation via Virtual GPU Manager
CVSS 7.8
CVE-2021-3576 HIGH
Bitdefender <7.2.1.65, <25.0.26 - Privilege Escalation
CVSS 7.8
CVE-2021-41035 CRITICAL
Eclipse Openj9 <0.29.0 - Info Disclosure
CVSS 9.8
CVE-2021-37174 HIGH
Siemens RUGGEDCOM ROX Firmware < 2.14.1 - Privilege Escalation to Root
CVSS 8.8
CVE-2021-1579 HIGH
Cisco APIC/Cloud APIC - Privilege Escalation
CVSS 8.1
Details
Vulnerabilities 341
Exploit Likelihood Medium