VYPR

CWE-266

Incorrect Privilege Assignment

BaseDraft

Description

A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.

Hierarchy (View 1000)

CVEs mapped to this weakness (1,180)

page 17 of 59
  • CVE-2026-20804HigJan 13, 2026
    risk 0.50cvss 7.7epss 0.01

    Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform tampering locally.

  • CVE-2025-66296HigDec 1, 2025
    risk 0.50cvss 8.8epss 0.00

    Grav is a file-based Web platform. Prior to 1.8.0-beta.27, a privilege escalation vulnerability exists in Grav’s Admin plugin due to the absence of username uniqueness validation when creating users. A user with the create user permission can create a new account using the…

  • CVE-2025-2843HigNov 12, 2025
    risk 0.50cvss 8.8epss 0.00

    A flaw was found in the Observability Operator. The Operator creates a ServiceAccount with *ClusterRole* upon deployment of the *Namespace-Scoped* Custom Resource MonitorStack. This issue allows an adversarial Kubernetes Account with only namespaced-level roles, for example, a…

  • CVE-2025-58323HigAug 29, 2025
    risk 0.50cvss 7.7epss 0.00

    NAVER MYBOX Explorer for Windows before 3.0.8.133 allows a local attacker to escalate privileges to NT AUTHORITY\SYSTEM by executing arbitrary files due to improper privilege checks.

  • CVE-2024-56513HigJan 3, 2025
    risk 0.50cvss —epss 0.00

    Karmada is a Kubernetes management system that allows users to run cloud-native applications across multiple Kubernetes clusters and clouds. Prior to version 1.12.0, the PULL mode clusters registered with the `karmadactl register` command have excessive privileges to access…

  • CVE-2024-4555HigAug 28, 2024
    risk 0.50cvss 7.7epss 0.00

    Improper Privilege Management vulnerability in OpenText NetIQ Access Manager allows user account impersonation in specific scenario. This issue affects NetIQ Access Manager before 5.0.4.1 and before 5.1

  • CVE-2020-7334HigOct 15, 2020
    risk 0.50cvss 7.7epss 0.00

    Improper privilege assignment vulnerability in the installer McAfee Application and Change Control (MACC) prior to 8.3.2 allows local administrators to change or update the configuration settings via a carefully constructed MSI configured to mimic the genuine installer. This…

  • CVE-2019-10355HigJul 31, 2019
    risk 0.50cvss 8.8epss 0.03

    A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.61 and earlier related to the handling of type casts allowed attackers to execute arbitrary code in sandboxed scripts.

  • CVE-2026-91930HigSep 15, 2026
    risk 0.49cvss 7.5epss 0.00

    Flowise before 3.1.4 fails to scope enterprise organization and workspace membership APIs to the caller's tenant, allowing authenticated users to supply arbitrary organization IDs. Attackers can add themselves as organization owners, create workspaces, and gain administrative…

  • CVE-2026-81297HigAug 31, 2026
    risk 0.49cvss 7.5epss 0.00

    Subscriber Privilege Escalation in Fluent Forms Pro Add On Pack <= 6.2.12 versions.

  • CVE-2026-18621HigAug 10, 2026
    risk 0.49cvss 7.6epss 0.00

    A flaw was found in Data Science Pipelines (DSP). An attacker with namespace editor privileges can bypass security hardening by submitting a malicious Argo Workflow through the V1 API path. This allows the API server to create pods with elevated privileges, acting as a 'confused…

  • CVE-2026-15271HigJul 9, 2026
    risk 0.49cvss 7.5epss 0.01

    A security vulnerability has been detected in TOTOLINK A3000RU, A3100R, A950RG, AC1200T10, CP450, CS185R_T10 and EX200 up to 20260906. Affected by this issue is some unknown functionality of the file /etc/boa/boa.conf of the component Web Interface. The manipulation leads to…

  • CVE-2026-15270HigJul 9, 2026
    risk 0.49cvss 7.5epss 0.01

    A weakness has been identified in D-link DIR-823G 1.0.2B05_20181207. Affected by this vulnerability is an unknown functionality of the file /etc/boa/boa.conf of the component Web Interface. Executing a manipulation can lead to least privilege violation. The attack can be…

  • CVE-2026-39546HigJun 17, 2026
    risk 0.49cvss 7.6epss 0.00

    Subscriber Privilege Escalation in MultiLoca <= 4.2.15 versions.

  • CVE-2026-49083HigJun 15, 2026
    risk 0.49cvss 7.5epss 0.00

    Contributor Privilege Escalation in LatePoint <= 5.5.1 versions.

  • CVE-2026-47169HigJun 11, 2026
    risk 0.49cvss —epss 0.00

    Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.3, a user with Manage Server / ManageGuild, but without Manage Roles or Administrator, can configure the bot’s AutoRole feature to assign an arbitrary role to new…

  • CVE-2025-68420HigMay 14, 2026
    risk 0.49cvss —epss 0.00

    Comarch ERP Optima client connects to a database using a high privileged account regardless of an application account to which a user logs in. It is possible for a local attacker who controls the client process to dump it's memory, extract credentials and use them to gain a…

  • CVE-2025-43914HigOct 7, 2025
    risk 0.49cvss 7.5epss 0.00

    Dell PowerProtect Data Domain BoostFS for Linux Ubuntu systems of Feature Release versions 7.7.1.0 through 8.3.0.15, LTS2025 release version 8.3.1.0, LTS2024 release versions 7.13.1.0 through 7.13.1.30, LTS 2023 release versions 7.10.1.0 through 7.10.1.60, contain an Incorrect…

  • CVE-2025-47422HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Advanced Installer before 22.6 has an uncontrolled search path element local privilege escalation vulnerability. When running as SYSTEM in certain configurations, Advanced Installer looks in standard-user writable locations for non-existent binaries and executes them as SYSTEM.…

  • CVE-2025-47291HigMay 21, 2025
    risk 0.49cvss 7.5epss 0.00

    containerd is an open-source container runtime. A bug was found in the containerd's CRI implementation where containerd, starting in version 2.0.1 and prior to version 2.0.5, doesn't put usernamespaced containers under the Kubernetes' cgroup hierarchy, therefore some Kubernetes…