A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.
926 vulnerabilities with CWE-266
CVE-2024-56040
CRITICAL
VibeThemes VibeBP <1.9.9.4.1 - Privilege Escalation
CVSS 9.8
CVE-2024-56205
CRITICAL
AI Magic <1.0.4 - Privilege Escalation
CVSS 9.8
CVE-2024-56071
CRITICAL
Mike Leembruggen Simple Dashboard <2.0 - Privilege Escalation
CVSS 9.8
CVE-2024-56220
CRITICAL
SSL Wireless SMS Notification <3.5.0 - Privilege Escalation
CVSS 9.8
CVE-2024-13067
MEDIUM
CodeAstro Online Food Ordering System 1.0 - Info Disclosure
CVSS 5.3
CVE-2024-50702
MEDIUM
TeamPass < 3.1.3.1 - Incorrect Privilege Assignment in Mail Action
CVSS 5.4
CVE-2024-50701
MEDIUM
TeamPass < 3.1.3.1 - Incorrect Privilege Assignment
CVSS 4.3
CVE-2024-13030
HIGH
D-Link DIR-823G 1.0.2B05_20181207 - Improper Access Controls
CVSS 7.3
CVE-2024-12901
MEDIUM
FoxCMS < 1.2 - Improper Authorization via Site.php Password Argument
CVSS 5.3
CVE-2024-12678
MEDIUM
Nomad 1.4.0-1.7.15, 1.8.0-1.9.3 - Privilege Escalation via Unredacted Workload Identity Token
CVSS 6.5
CVE-2024-12786
HIGH
X1a0He Adobe Downloader <1.3.1 - Privilege Escalation
CVSS 7.8
CVE-2024-12782
HIGH
Fujifilm Business Innovation Apeos C3070-24.8.28 - Auth Bypass
CVSS 7.3
CVE-2024-54383
CRITICAL
wpweb WooCommerce PDF Vouchers <4.9.9 - Privilege Escalation
CVSS 9.8
CVE-2024-9779
HIGH
Open Cluster Management - Privilege Escalation
CVSS 7.5
CVE-2024-12666
MEDIUM
ClassCMS <4.8 - Privilege Escalation
CVSS 4.7
CVE-2024-54229
CRITICAL
Straightvisions GmbH SV100 Companion - Privilege Escalation
CVSS 9.8
CVE-2024-54365
HIGH
Halim KH Easy User Settings <1.0.0 - Privilege Escalation
CVSS 8.8
CVE-2024-54363
CRITICAL
nssTheme Wp NssUser Register <1.0.0 - Privilege Escalation
CVSS 9.8
CVE-2024-54293
CRITICAL
CE21 Suite <2.2.0 - Privilege Escalation
CVSS 9.8
CVE-2024-12347
MEDIUM
Guangzhou Huayi Jeewms <=1.0.0 - Unauthenticated Improper Authorization in Druid
CVSS 5.3
CVE-2024-12235
MEDIUM
AgileBPM <= 1.0.0 - Improper Access Control in AuthorizationTokenCheckFilter
CVSS 6.3
CVE-2024-11860
MEDIUM
SourceCodester Best House Rental Management System 1.0 - Auth Bypass
CVSS 6.5
CVE-2024-11486
MEDIUM
Code4Berry Decoration Management System 1.0 - Permission Issues
CVSS 4.3
CVE-2024-11485
MEDIUM
Code4Berry Decoration Management System 1.0 - Permission Issues
CVSS 6.3
CVE-2024-11484
MEDIUM
Code4Berry Decoration Management System 1.0 - Improper Access Controls
CVSS 6.3
Details
Vulnerabilities
926