CWE-280

Improper Handling of Insufficient Permissions or Privileges

Parent: CWE-755 - Improper Handling of Exceptional Conditions

The product does not handle or incorrectly handles when it has insufficient privileges to access resources or functionality as specified by their permissions. This may cause it to follow unexpected code paths that may leave the product in an invalid state.

132 vulnerabilities with CWE-280
CVE-2024-32882 LOW
Wagtail - Auth Bypass
CVSS 2.7
CVE-2024-32488 HIGH
Foxit PDF Reader & Editor <2024.1 - Privilege Escalation
CVSS 7.8
CVE-2024-32000 MEDIUM
matrix-appservice-irc <2.0.0 - Info Disclosure
CVSS 4.3
CVE-2024-30418 HIGH
Huawei Emui - Improper Access Control
CVSS 7.5
CVE-2024-29748 HIGH KEV
Logic Error - Privilege Escalation
CVSS 7.8
CVE-2024-22078 HIGH
Espec G5 <1.1.4.15 - Privilege Escalation
CVSS 8.8
CVE-2024-22077 MEDIUM
Espec G5 <1.1.4.15 - Info Disclosure
CVSS 5.3
CVE-2024-25844 HIGH
PrestaShop <4.1.26 - Privilege Escalation/Info Disclosure
CVSS 7.5
CVE-2024-0560 MEDIUM
3Scale - Info Disclosure
CVSS 6.3
CVE-2024-1608 CRITICAL
Oppo Usercenter Credit Software Devel... - Information Disclosure
CVSS 9.1
CVE-2024-0015 HIGH
Google Android Intent Redirection - Privilege Escalation
CVSS 7.8
CVE-2024-25108 CRITICAL
Pixelfed <0.11.9 - Auth Bypass
CVSS 9.9
CVE-2023-38298 HIGH
TCL Devices - Info Disclosure
CVSS 8.8
CVE-2023-52537 HIGH
Huawei Emui - Improper Access Control
CVSS 7.5
CVE-2023-42931 HIGH
macOS < Ventura 13.6.3 - Privilege Escalation
CVSS 7.8
CVE-2023-41972 HIGH
Win ZApp <4.3.0.121 - Info Disclosure
CVSS 7.3
CVE-2023-39249 MEDIUM
Dell Supportassist For Home Pcs - Authentication Bypass
CVSS 6.3
CVE-2023-25543 HIGH
Dell Power Manager < 3.14 - Improper Exception Handling
CVSS 7.8
CVE-2023-6189 MEDIUM
M-Files <23.11.13156.0 - Privilege Escalation
CVSS 4.3
CVE-2023-43591 HIGH
Zoom Rooms for macOS <5.16.0 - Privilege Escalation
CVSS 7.8
CVE-2023-43087 MEDIUM
Dell PowerScale OneFS <9.5.0 - Info Disclosure
CVSS 4.3
CVE-2023-32489 MEDIUM
Dell Powerscale Onefs < 9.2.1.22 - Privilege Escalation
CVSS 6.7
CVE-2023-2480 HIGH
M-files < 23.5.12598.0 - Missing Authorization
CVSS 7.5
CVE-2023-2020 MEDIUM
Checkmk - Incorrect Authorization
CVSS 4.3
CVE-2023-0181 HIGH
NVIDIA GPU Display Driver - Memory Corruption
CVSS 7.1
Details
Vulnerabilities 132