CWE-280

Improper Handling of Insufficient Permissions or Privileges

Parent: CWE-755 - Improper Handling of Exceptional Conditions

The product does not handle or incorrectly handles when it has insufficient privileges to access resources or functionality as specified by their permissions. This may cause it to follow unexpected code paths that may leave the product in an invalid state.

155 vulnerabilities with CWE-280
CVE-2020-8117 MEDIUM
Nextcloud Server <14.0.3 - Info Disclosure
CVSS 4.3
CVE-2019-17437 HIGH
PAN-OS 7.1.0-7.1.24 - Authenticated Privilege Escalation
CVSS 7.8
CVE-2019-13415 MEDIUM
Search Guard <24.3 - Info Disclosure
CVSS 6.5
CVE-2019-6570 HIGH
SINEMA Remote Connect Server < 2.0 - Insufficient Permission Check
CVSS 8.8
CVE-2012-4550 MEDIUM
JBoss EAP <6.0.1 - Privilege Escalation
CVSS 5.3
Details
Vulnerabilities 155