Falhas do tipo CWE-269

1.780 resultados
CVE-2025-59790MEDIUMApache Kvrocks: RESET command grants admin privilegesEPSS 0.4%CVE-2026-24894HIGHFrankenPHP leaks session data between requests in worker modeEPSS 0.4%CVE-2022-29179HIGHImproper Privilege Management in CiliumEPSS 0.4%CVE-2026-41163HIGHbubblewrap vulnerable to privilege escalation in setuid mode via ptraceEPSS 0.4%CVE-2026-45675HIGHOpen WebUI: LDAP and OAuth First-User Race Condition Allows Multiple Admin AccountsEPSS 0.4%CVE-2024-22893HIGHOpenSlides 4.0.15 verifies passwords by comparing password hashes using a function with content-dependent runtime. This can allow attackers EPSS 0.4%CVE-2024-5525HIGHImproper privilege management vulnerability in AstrotalksEPSS 0.4%CVE-2025-6758CRITICALReal Spaces - WordPress Properties Directory Theme <= 3.6 - Unauthenticated Privilege Escalation to Administrator via 'imic_agent_register'EPSS 0.4%CVE-2021-21428CRITICALCreation of Temporary File in Directory with Insecure Permissions in the OpenAPI-Generator online generatorEPSS 0.4%CVE-2023-52716HIGHVulnerability of starting activities in the background in the ActivityManagerService (AMS) module. Impact: Successful exploitation of this vEPSS 0.4%CVE-2023-41301Vulnerability of unauthorized API access in the PMS module. Successful exploitation of this vulnerability may cause features to perform abnoEPSS 0.4%CVE-2026-35291MEDIUMVulnerability in the WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected are 14.EPSS 0.4%CVE-2023-52105HIGHThe nearby module has a privilege escalation vulnerability. Successful exploitation of this vulnerability may affect availability.EPSS 0.4%CVE-2023-52116HIGHPermission management vulnerability in the multi-screen interaction module. Successful exploitation of this vulnerability may cause service EPSS 0.4%CVE-2024-27442HIGHAn issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0. The zmmailboxdmgr binary, a component of ZCS, is intended to be executedEPSS 0.3%CVE-2024-3388MEDIUMPAN-OS: User Impersonation in GlobalProtect SSL VPNEPSS 0.3%CVE-2026-8176HIGHLatePoint <= 5.5.1 - Authenticated (Agent+) Privilege Escalation to Administrator via IDOR in OsOrdersController::create_or_update + Unauthenticated Customer-Cabinet Password ResetEPSS 0.3%CVE-2025-11457CRITICALEasyCommerce – AI-Powered, Blazing-Fast & Beautiful WordPress Ecommerce Plugin 0.9.0-beta2 - 1.8.2 - Unauthenticated Privilege EscalationEPSS 0.3%CVE-2026-54415HIGHBroken Access Control in Azuriom CMS Server Routes Allows Account TakeoverEPSS 0.3%CVE-2025-9966HIGHExecution with Unnecessary PrivilegesEPSS 0.3%