Falhas do tipo CWE-269
1.784 resultadosCVE-2025-61429HIGHAn issue in NCR Atleos Terminal Manager (ConfigApp) v3.4.0 allows attackers to escalate privileges via a crafted request.EPSS 0.3%CVE-2022-38774HIGHAn issue was discovered in the quarantine feature of Elastic Endpoint Security and Elastic Endgame for Windows, which could allow unprivilegEPSS 0.3%CVE-2026-56245HIGHSupabase Capgo - Unauthenticated Cross-Tenant Build-Time Accounting Poisoning via record_build_time RPCEPSS 0.3%CVE-2025-67793CRITICALAn issue was discovered in DriveLock 24.1 through 24.1.*, 24.2 through 24.2.*, and 25.1 before 25.1.6. Users with the "Manage roles and permEPSS 0.3%CVE-2026-46837HIGHVulnerability in the Oracle Flow Manufacturing product of Oracle E-Business Suite (component: Security). Supported versions that are affectEPSS 0.3%CVE-2025-24863MEDIUMImproper privilege management for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications may allow aEPSS 0.3%CVE-2020-7330HIGHPrivilege Escalation vulnerability in McAfee Total Protection (MTP) trialEPSS 0.3%CVE-2025-53024HIGHVulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.EPSS 0.3%CVE-2026-58053CRITICALGitea act_runner - Container Hardening Bypass via Workflow Container OptionsEPSS 0.3%CVE-2022-24750HIGHLow privilege user is able to exploit the service and gain SYSTEM privileges in UltraVNC serverEPSS 0.3%CVE-2023-7342HIGHBelden HiSecOS Web Server Privilege EscalationEPSS 0.3%CVE-2019-11288HIGHtcServer JMX Socket Listener Registry Rebinding Local Privilege EscalationEPSS 0.3%CVE-2024-45752HIGHlogiops through 0.3.4, in its default configuration, allows any unprivileged user to configure its logid daemon via an unrestricted D-Bus seEPSS 0.3%CVE-2023-24483HIGHPrivilege Escalation to NT AUTHORITY\SYSTEM on the vulnerable VDAEPSS 0.3%CVE-2026-46824CRITICALVulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Site Level Administration). SEPSS 0.3%CVE-2019-18899MEDIUMapt-cacher-ng insecure use of /run/apt-cacher-ngEPSS 0.3%CVE-2020-6968—Honeywell INNCOM INNControl 3 allows workstation users to escalate application user privileges through the modification of local configuratiEPSS 0.3%CVE-2025-26707MEDIUMImproper Privilege Management vulnerability in ZTE GoldenDB allows Privilege Escalation.This issue affects GoldenDB: from 6.1.03 through 6.1EPSS 0.3%CVE-2026-42185MEDIUMPeople: Privilege Escalation via Missing Role Ceiling in Mail Domain InvitationEPSS 0.3%CVE-2021-22732—Improper Privilege Management vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could cause a code executEPSS 0.3%