V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

38 / 38
CWE: CWE-273×Clear all
9.8
CVE-2011-2921DEB
ktsuss versions 1.4 and prior has the uid set to root and does not drop privileges prior to exe…
2011-01-01Pre-auth
EPSS82.8%
pct 99
9.8
CVE-2017-6972CVE
AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 have an error in privilege droppin…
2017-01-01Pre-auth
EPSS14.6%
pct 96
3.3
CVE-2015-0278DEB
libuv before 0.10.34 does not properly drop group privileges, which allows context-dependent at…
2015-01-01
EPSS3.2%
pct 86
7.8
CVE-2019-18276AST
An issue was discovered in disable_priv_mode in shell.c in GNU Bash through 5.0 patch 11. By de…
2019-01-01
EPSS2.6%
pct 83
9.8
CVE-2021-36372CVE
In Apache Ozone versions prior to 1.2.0, Initially generated block tokens are persisted to the …
2021-01-01Pre-auth
EPSS2.4%
pct 82
7.0
CVE-2021-41617AST
sshd in OpenSSH 6.2 through 8.x before 8.8, when certain non-default configurations are used, a…
2021-01-01
EPSS2.4%
pct 81
8.0
CVE-2022-24812DEB
Grafana is an open-source platform for monitoring and observability. When fine-grained access c…
2022-01-01
EPSS2.2%
pct 80
9.8
CVE-2020-24361AST
SNMPTT before 1.4.2 allows attackers to execute shell code via EXEC, PREXEC, or unknown_trap_ex…
2020-01-01Pre-auth
EPSS2.0%
pct 78
9.8
CVE-2012-1187DEB
Bitlbee does not drop extra group privileges correctly in unix.c
2012-01-01Pre-auth
EPSS1.6%
pct 73
9.8
CVE-2011-3350DEB
masqmail 0.2.21 through 0.2.30 improperly calls seteuid() in src/log.c and src/masqmail.c that …
2011-01-01Pre-auth
EPSS1.5%
pct 70
7.2
CVE-2024-25420CVE
An issue in Ignite Realtime Openfire v.4.9.0 and before allows a remote attacker to escalate pr…
2024-01-01
EPSS1.4%
pct 69
7.3
CVE-2021-31204CVE
.NET and Visual Studio Elevation of Privilege Vulnerability
2021-01-01
EPSS1.4%
pct 68
4.3
CVE-2021-37839CVE
Apache Superset up to 1.5.1 allowed for authenticated users to access metadata information rela…
2021-01-01
EPSS1.1%
pct 62
6.5
CVE-2021-21623CVE
An incorrect permission check in Jenkins Matrix Authorization Strategy Plugin 2.6.5 and earlier…
2021-01-01
EPSS1.0%
pct 58
7.8
CVE-2018-8599MSR
An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Serv…
2018-01-01Microsoft
EPSS1.0%
pct 57
4.3
CVE-2022-23708DEB
A flaw was discovered in Elasticsearch 7.17.0’s upgrade assistant, in which upgrading from vers…
2022-01-01
EPSS0.9%
pct 54
8.1
CVE-2020-35214CVE
An issue in Atomix v3.1.5 allows a malicious Atomix node to remove states of ONOS storage via a…
2020-01-01
EPSS0.8%
pct 51
9.8
CVE-2023-34844CVE
Play With Docker < 0.0.2 has an insecure CAP_SYS_ADMIN privileged mode causing the docker conta…
2023-01-01Pre-auth
EPSS0.8%
pct 51
8.8
CVE-2024-8382ANC
Internal browser event interfaces were exposed to web content when privileged EventHandler list…
2024-01-01Pre-auth
EPSS0.6%
pct 42
5.5
CVE-2021-47129AST
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_ct: skip ex…
2021-01-01
EPSS0.5%
pct 41
7.8
CVE-2019-20044DEB
In Zsh before 5.8, attackers able to execute commands can regain privileges dropped by the --no…
2019-01-01
EPSS0.5%
pct 38
8.7
CVE-2025-27396CVE
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4…
2025-01-01
EPSS0.4%
pct 32
8.8
CVE-2020-14300DEB
The docker packages version docker-1.13.1-108.git4ef4b30.el7 as released for Red Hat Enterprise…
2020-01-01
EPSS0.4%
pct 30
6.7
CVE-2006-2916DEB
artswrapper in aRts, when running setuid root on Linux 2.6.0 or later versions, does not check …
2006-01-01
EPSS0.4%
pct 30
7.0
CVE-2022-0358AST
A flaw was found in the QEMU virtio-fs shared file system daemon (virtiofsd) implementation. Th…
2022-01-01
EPSS0.3%
pct 24
8.8
CVE-2020-14298DEB
The version of docker as released for Red Hat Enterprise Linux 7 Extras via RHBA-2020:0053 advi…
2020-01-01
EPSS0.3%
pct 23
3.4
CVE-2023-0657DEB
A flaw was found in Keycloak. This issue occurs due to improperly enforcing token types when va…
2023-01-01
EPSS0.3%
pct 21
5.5
CVE-2021-3982DEB
Linux distributions using CAP_SYS_NICE for gnome-shell may be exposed to a privilege escalation…
2021-01-01
EPSS0.3%
pct 20
4.4
CVE-2023-52433DEB
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree:…
2023-01-01
EPSS0.3%
pct 17
7.8
CVE-2023-34322DEB
For migration as well as to work around kernels unaware of L1TF (see XSA-273), PV guests may be…
2023-01-01
EPSS0.2%
pct 13
8.5
CVE-2025-1003
A potential vulnerability has been identified in HP Anyware Agent for Linux which might allow f…
2025-01-01
EPSS0.2%
pct 13
4.3
CVE-2025-62175ANC
Mastodon is a free, open-source social network server based on ActivityPub. In versions before …
2025-01-01
EPSS0.2%
pct 11
5.0
CVE-2026-44073DEB
Authentication modules in Netatalk 1.5.0 through 4.4.2 fail to check the return value of seteui…
2026-01-01
EPSS0.2%
pct 10
7.1
CVE-2023-5369CVE
Before correction, the copy_file_range system call checked only for the CAP_READ and CAP_WRITE …
2023-01-01
EPSS0.2%
pct 8
8.8
CVE-2026-32107ANC
xrdp is an open source RDP server. In versions through 0.10.5, the session execution component …
2026-01-01
EPSS0.2%
pct 5
5.5
CVE-2023-26239CVE
An issue was discovered in WatchGuard EPDR 8.0.21.0002. Due to a weak implementation of a passw…
2023-01-01
EPSS0.2%
pct 4
7.8
CVE-2023-35692CVE
In getLocationCache of GeoLocation.java, there is a possible way to send a mock location during…
2023-01-01
EPSS0.1%
pct 0
7.8
CVE-2026-0099CVE
In onNullBinding of HostEmulationManager.java, there is a possible way to launch an activity fr…
2026-01-01
EPSS0.1%
pct 0
Select a vulnerability on the left to open the preview.