CWE-267

Privilege Defined With Unsafe Actions

Parent: CWE-269 - Improper Privilege Management

A particular privilege, role, capability, or right can be used to perform unsafe actions that were not intended, even when it is assigned to the correct entity.

61 vulnerabilities with CWE-267
CVE-2021-44476 MEDIUM
Odoo <15.0 - Info Disclosure
CVSS 6.8
CVE-2021-23186 HIGH
Odoo <15.0 - Privilege Escalation
CVSS 8.7
CVE-2021-23166 HIGH
Odoo <15.0 - Privilege Escalation
CVSS 8.7
CVE-2021-40354 HIGH
Siemens Teamcenter Visualization < 12.4.0.8 - Improper Privilege Management
CVSS 7.1
CVE-2021-32739 HIGH
Icinga <2.12.4 - Privilege Escalation
CVSS 8.8
CVE-2020-29396 HIGH
Odoo <14 - Privilege Escalation
CVSS 8.8
CVE-2020-7824 MEDIUM
iPECS - Privilege Escalation
CVSS 6.5
CVE-2019-10170 MEDIUM
Keycloak - RCE
CVSS 6.6
CVE-2019-10169 MEDIUM
Keycloak - RCE
CVSS 6.6
CVE-2019-14865 MEDIUM
grub2 - Info Disclosure
CVSS 5.9
CVE-2017-2616 MEDIUM
Util-linux < 2.32.1 - Race Condition
CVSS 5.5
Details
Vulnerabilities 61