CWE-250

Medium likelihood

Execution with Unnecessary Privileges

Parent: CWE-269 - Improper Privilege Management

The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.

341 vulnerabilities with CWE-250
CVE-2026-42061 HIGH
Acronis DeviceLock Dlp < 9.0.15051.93227 - Execution with Unnecessary Privileges
CVSS 7.3
CVE-2026-44477 CRITICAL
CloudNativePG Metrics Exporter - PostgreSQL Superuser Privilege Escalation
CVSS 9.9
CVE-2026-3623 HIGH
Vulnerabilities exists in IBM Netezza Performance Server Replication Services
CVSS 7.8
CVE-2026-8370 HIGH
Automic Automation Agent Unix privilege escalation
CVE-2026-29205 HIGH
cPanel 11.120.0.0-11.136.0.9 Arbitrary File Read via cpdavd
CVSS 8.6
CVE-2026-32673 HIGH
F5 BIG-IP 16.1.0-21.1.0 - Authenticated Privilege Escalation via Scripted Monitors
CVSS 8.7
CVE-2026-32643 HIGH
F5 BIG-IP/BIG-IQ - Authenticated Command Execution
CVSS 8.7
CVE-2026-25710 HIGH
KDE plasma-login-manager - Privilege Escalation via plasmaloginauthhelper D-Bus Helper
CVE-2026-42833 CRITICAL
Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability
CVSS 9.1
CVE-2026-40638 MEDIUM
Dell PowerScale InsightIQ < 6.3.0 or later - Execution with Unnecessary Privileges
CVSS 6.7
CVE-2026-41900 HIGH
OpenLearnX has Critical Remote Code Execution Through Python Sandbox Escape via Code Execution Environment
CVSS 8.8
CVE-2026-42088 CRITICAL
OpenC3 COSMOS: Administrative Actions via the Script Runner Tool
CVSS 9.6
CVE-2026-40550 MEDIUM
Privilege Escalation in mpGabinet
CVE-2026-25908 MEDIUM
Dell Alienware Command Center <6.13.8.0 - Privilege Escalation
CVSS 6.7
CVE-2026-22008 LOW
Oracle Java SE 25.0.1 - Unauthenticated Data Manipulation
CVSS 3.7
CVE-2026-4667 HIGH
HP System Optimizer - Escalation of Privilege
CVE-2026-33793 HIGH
Junos OS and Junos OS Evolved: When an unsigned Python op script configuration is present, a local low privileged user can compromise the system
CVSS 7.8
CVE-2026-4498 HIGH
Execution with Unnecessary Privileges in Kibana Leading to reading index data beyond their direct Elasticsearch RBAC scope
CVSS 7.7
CVE-2026-1346 CRITICAL
Security Vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access
CVSS 9.3
CVE-2026-34877 CRITICAL
Mbed TLS 2.19.0-3.6.5, 4.0.0 - Memory Corruption
CVSS 9.8
CVE-2026-25212 CRITICAL
Percona PMM <3.7 - Privilege Escalation
CVSS 9.9
CVE-2026-4606 CRITICAL
GeoVision ERM Improper Privilege Assignment Leads to SYSTEM-Level Privilege
CVE-2026-3315 HIGH
ASSA ABLOY Visionline <1.33 - Privilege Escalation
CVSS 7.8
CVE-2026-30225 MEDIUM
OliveTin <3000.11.1 - Privilege Escalation
CVSS 5.3
CVE-2026-20017 MEDIUM
Cisco Secure FTD Software - Command Injection
CVSS 6.0
Details
Vulnerabilities 341
Exploit Likelihood Medium