CWE-280

Improper Handling of Insufficient Permissions or Privileges

Parent: CWE-755 - Improper Handling of Exceptional Conditions

The product does not handle or incorrectly handles when it has insufficient privileges to access resources or functionality as specified by their permissions. This may cause it to follow unexpected code paths that may leave the product in an invalid state.

132 vulnerabilities with CWE-280
CVE-2023-28114 MEDIUM
Cilium-cli < 0.13.2 - Improper Exception Handling
CVSS 4.8
CVE-2023-27087 HIGH
xxl-job <2.3.1 - Info Disclosure
CVSS 7.5
CVE-2023-21421 MEDIUM
Samsung Android - Improper Privilege Management
CVSS 5.9
CVE-2023-22737 MEDIUM
Wire < 2022-12-09 - Missing Authorization
CVSS 6.5
CVE-2022-4863 MEDIUM
GitHub usememos/memos <0.9.1 - Info Disclosure
CVSS 6.5
CVE-2022-39912 MEDIUM
Google Android < 13.0 - Improper Exception Handling
CVSS 6.2
CVE-2022-39886 MEDIUM
Google Android - Improper Exception Handling
CVSS 5.9
CVE-2022-39885 MEDIUM
Google Android - Improper Exception Handling
CVSS 5.9
CVE-2022-39872 MEDIUM
Samsung Sharelive < 13.2.03.5 - Improper Exception Handling
CVSS 5.9
CVE-2022-36874 MEDIUM
Samsung Galaxy Watch Plugin - Improper Exception Handling
CVSS 5.9
CVE-2022-34368 MEDIUM
Dell Emc Networker < 19.6.1.2 - Improper Exception Handling
CVSS 6.1
CVE-2022-2193 HIGH
HYPR Server <6.14.1 - Code Injection
CVSS 7.5
CVE-2022-30727 MEDIUM
PersonaManagerService <SMR Jun-2022 Release 1 - Info Disclosure
CVSS 6.2
CVE-2022-30725 MEDIUM
Bluetooth <SMR Jun-2022 Release 1 - Info Disclosure
CVSS 4.0
CVE-2022-30724 MEDIUM
Bluetooth <SMR Jun-2022 Release 1 - Info Disclosure
CVSS 4.0
CVE-2022-30723 MEDIUM
Bluetooth <SMR Jun-2022 Release 1 - Info Disclosure
CVSS 4.0
CVE-2022-30716 MEDIUM
Samsung - Info Disclosure
CVSS 4.0
CVE-2022-27167 HIGH
Eset Endpoint Antivirus < 8.0.2053.0 - Improper Exception Handling
CVSS 7.1
CVE-2022-22292 HIGH
Telecom <SMR Feb-2022 Release 1 - Privilege Escalation
CVSS 7.1
CVE-2022-21814 MEDIUM
Nvidia Geforce - Improper Exception Handling
CVSS 6.1
CVE-2021-37851 HIGH
Eset Endpoint Antivirus < 8.0.2053.0 - Improper Exception Handling
CVSS 7.3
CVE-2021-37175 MEDIUM
Siemens Ruggedcom Rox Rx1400 Firmware - Improper Exception Handling
CVSS 5.3
CVE-2021-38312 HIGH
Gutenberg Template Library & Redux Framework <= 4.2.11 - Auth Bypass
CVSS 7.1
CVE-2020-10072 MEDIUM
zephyr >=1.14.2, >=2.2.0 - Privilege Escalation
CVSS 5.9
CVE-2020-29031 HIGH
Secomea Gatemanager 8250 Firmware - Improper Privilege Management
CVSS 7.1
Details
Vulnerabilities 132