CWE-280
Improper Handling of Insufficient Permissions or Privileges
The product does not handle or incorrectly handles when it has insufficient privileges to access resources or functionality as specified by their permissions. This may cause it to follow unexpected code paths that may leave the product in an invalid state.
132 vulnerabilities with CWE-280
CVE-2024-6697
MEDIUM
Hitachi Vantara Pentaho <10.2.0.0-9.3.0.9 - DoS
CVSS 6.5
CVE-2024-12430
HIGH
AC500 V3 - RCE
CVSS 7.0
CVE-2024-43705
HIGH
GPU Kernel Driver - Info Disclosure
CVSS 7.8
CVE-2024-42194
LOW
HCL BigFix Inventory - Privilege Escalation
CVSS 3.1
CVE-2024-46874
HIGH
Ruijie Reyee OS <2.320 - Privilege Escalation
CVSS 8.1
CVE-2024-43702
HIGH
Software - Memory Corruption
CVSS 8.1
CVE-2024-4692
LOW
OpenText Application Automation Tools <24.1 - Privilege Escalation
CVSS 2.4
CVE-2024-4211
LOW
OpenText Application Automation Tools - Info Disclosure
CVSS 2.4
CVE-2024-47767
MEDIUM
Tuleap <15.13.99.113, <15.13-5, <15.12-5 - Info Disclosure
CVSS 4.3
CVE-2024-47766
MEDIUM
Tuleap <15.13.99.110, <15.13-5, <15.12-5 - Info Disclosure
CVSS 4.9
CVE-2024-46988
MEDIUM
Enalean Tuleap < 15.12-6 - Improper Exception Handling
CVSS 4.8
CVE-2024-24116
CRITICAL
Ruijie RG-NBS2009G-P - Improper Authentication
CVSS 9.8
CVE-2024-8451
HIGH
PLANET Technology - Privilege Escalation
CVSS 7.5
CVE-2024-6660
HIGH
BookingPress - Privilege Escalation
CVSS 8.8
CVE-2024-36451
HIGH
Webmin <2.003 - Privilege Escalation
CVSS 8.8
CVE-2024-39691
MEDIUM
NPM Matrix-appservice-irc < 2.0.1 - Improper Exception Handling
CVSS 4.3
CVE-2024-6302
HIGH
Conduit <0.6.0 - Privilege Escalation
CVSS 8.1
CVE-2024-5163
CRITICAL
com.transsion.carlcare - Info Disclosure
CVSS 9.8
CVE-2024-4468
MEDIUM
WordPress <9.9 - Privilege Escalation
CVSS 4.3
CVE-2024-35228
MEDIUM
Wagtail - Privilege Escalation
CVSS 5.5
CVE-2024-36112
MEDIUM
Nautobot <1.6.22 & 2.0.0 - Info Disclosure
CVSS 6.3
CVE-2024-29852
LOW
Veeam Backup Enterprise Manager - Info Disclosure
CVSS 2.7
CVE-2024-35301
MEDIUM
JetBrains TeamCity <2024.03.1 - Info Disclosure
CVSS 5.5
CVE-2024-27837
LOW
macOS Sonoma <14.5 - Info Disclosure
CVSS 3.3
CVE-2024-23704
HIGH
Google Android - Missing Authorization
CVSS 7.8
Details
Vulnerabilities
132