Weaknesses of type CWE-264
284 resultsCVE-2026-9368MEDIUMNousResearch hermes-agent Environment Variable code_execution_tool.py execute_code sandboxEPSS 0.4%CVE-2023-39406—Permission control vulnerability in the XLayout component. Successful exploitation of this vulnerability may cause apps to forcibly restart.EPSS 0.4%CVE-2019-11773—Prior to 0.1, AIX builds of Eclipse OMR contain unused RPATHs which may facilitate code injection and privilege elevation by local users.EPSS 0.4%CVE-2025-20145MEDIUMCisco IOS XR Software Access Control List Bypass VulnerabilityEPSS 0.4%CVE-2019-1593HIGHCisco NX-OS Software Bash Shell Role-Based Access Control Bypass Privilege Escalation VulnerabilityEPSS 0.4%CVE-2019-1602HIGHCisco NX-OS Software Privilege Escalation VulnerabilityEPSS 0.4%CVE-2019-1648HIGHCisco SD-WAN Solution Privilege Escalation VulnerabilityEPSS 0.4%CVE-2017-6638—A vulnerability in how DLL files are loaded with Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attEPSS 0.4%CVE-2018-15370—Cisco Catalyst 6800 Series Switches ROM Monitor Software Secure Boot Bypass VulnerabilityEPSS 0.4%CVE-2017-12266—A vulnerability in the routine that loads DLL files in Cisco Meeting App for Windows could allow an authenticated, local attacker to run an EPSS 0.4%CVE-2017-12268—A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker EPSS 0.4%CVE-2019-13014—Little Snitch versions 4.4.0 fixes a vulnerability in a privileged helper tool. However, the operating system may have made a copy of the prEPSS 0.4%CVE-2019-1966HIGHCisco Unified Computing System Fabric Interconnect root Privilege Escalation VulnerabilityEPSS 0.4%CVE-2019-1682HIGHCisco Application Policy Infrastructure Controller Privilege Escalation VulnerabilityEPSS 0.4%CVE-2019-1592HIGHCisco Nexus 9000 Series Fabric Switches Application Centric Infrastructure Mode Privilege Escalation VulnerabilityEPSS 0.4%CVE-2018-11461—A vulnerability has been identified in SINUMERIK 808D V4.7 (All versions), SINUMERIK 808D V4.8 (All versions), SINUMERIK 828D V4.7 (All versEPSS 0.4%CVE-2023-39384—Vulnerability of incomplete permission verification in the input method module. Successful exploitation of this vulnerability may cause featEPSS 0.4%CVE-2023-39380—Permission control vulnerability in the audio module. Successful exploitation of this vulnerability may cause audio devices to perform abnorEPSS 0.4%CVE-2017-12351—A vulnerability in the guest shell feature of Cisco NX-OS System Software could allow an authenticated, local attacker to read and send packEPSS 0.3%CVE-2020-3214MEDIUMCisco IOS XE Software Privilege Escalation VulnerabilityEPSS 0.3%