VYPR

CWE-269

Improper Privilege Management

ClassDraftLikelihood: Medium

Description

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-122 · CAPEC-233 · CAPEC-58

CVEs mapped to this weakness (3,702)

page 114 of 186
  • CVE-2026-80071HigSep 13, 2026
    risk 0.47cvss 7.2epss 0.00

    The User Registration & Membership WordPress plugin before 5.2.8 does not properly restrict who may author a membership plan or validate the plan a user attaches to their own account, allowing authenticated users with Author-level access and above to assign themselves an…

  • CVE-2026-77752HigSep 12, 2026
    risk 0.47cvss 7.2epss 0.00

    The Temporary Login Without Password WordPress plugin before 1.9.9 does not verify that the user requesting a temporary login holds network super admin rights before granting the new account those rights, allowing an administrator of a single site on a multisite network to take…

  • CVE-2026-74925HigSep 11, 2026
    risk 0.47cvss 7.2epss 0.00

    The MultiVendorX WordPress plugin before 5.0.16 does not restrict who can update its role and capability settings, allowing users holding its vendor role to grant that role administrator-level capabilities and take over the site.

  • CVE-2026-81431HigSep 10, 2026
    risk 0.47cvss 7.2epss 0.00

    The Registration Form for WooCommerce WordPress plugin before 1.1.3 does not validate that the form referenced during registration is a legitimate registration form, reading the permitted-role allow-list from an arbitrary attacker-controlled post instead. A user able to create a…

  • CVE-2026-75927HigSep 9, 2026
    risk 0.47cvss 7.2epss 0.00

    The PublishPress Capabilities – User Role Editor, Access Permissions, User Capabilities, Admin Menus plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.50.0. This is due to the `addPluginCapabilities()` function unconditionally…

  • CVE-2026-17553HigSep 9, 2026
    risk 0.47cvss 7.2epss 0.00

    The WP EasyCart plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 5.9.3. This is due to the ec_ajax_save_page_default_options() AJAX handler iterating over every $_POST key and passing it directly into update_option() without any…

  • CVE-2026-79996HigAug 28, 2026
    risk 0.47cvss 7.2epss 0.00

    The User Registration & Membership WordPress plugin before 5.2.6 does not perform a capability check when saving its login settings, allowing authenticated users who have been granted a User Registration & Membership WordPress plugin before 5.2.6 management capability but not…

  • CVE-2026-13415HigAug 27, 2026
    risk 0.47cvss 7.2epss 0.00

    The CMP WordPress plugin before 4.1.18 does not enforce an option-name allow-list when importing settings via one of its AJAX actions, allowing users with the Editor role (when the administrator has granted the Editor role access to the CMP WordPress plugin before 4.1.18's…

  • CVE-2026-75971HigAug 25, 2026
    risk 0.47cvss 7.2epss 0.00

    The ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce Solution plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 4.9.4. This is due to the `rum_importer()` function being registered on the WordPress core…

  • CVE-2026-75796HigAug 21, 2026
    risk 0.47cvss 7.2epss 0.00

    The AI Engine WordPress plugin before 3.6.1 does not verify that the requesting user is authorized to act on the targeted account before performing privileged user management operations, allowing users with the Administrator role on a Multisite sub-site to take over any account…

  • CVE-2026-70421HigAug 19, 2026
    risk 0.47cvss 7.2epss 0.00

    Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Privilege Management vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

  • CVE-2026-70950HigAug 18, 2026
    risk 0.47cvss 7.2epss 0.00

    Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise…

  • CVE-2026-70939HigAug 18, 2026
    risk 0.47cvss 7.2epss 0.00

    Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise…

  • CVE-2026-70834HigAug 18, 2026
    risk 0.47cvss 7.2epss 0.00

    Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise…

  • CVE-2026-17533HigAug 16, 2026
    risk 0.47cvss 7.2epss 0.00

    The All-in-One WP Migration and Backup WordPress plugin before 7.108 does not restrict its migration import functionality to network administrators on multisite installations, allowing an administrator of a single subsite to execute arbitrary PHP code across the entire network.

  • CVE-2026-68752HigAug 12, 2026
    risk 0.47cvss 7.2epss 0.00

    A Project Resource Manager may gain broader administrative privileges under specific conditions.

  • CVE-2026-68821HigAug 11, 2026
    risk 0.47cvss 7.3epss 0.00

    Improper privilege management in Windows Package Manager allows an authorized attacker to elevate privileges locally.

  • CVE-2026-20890HigAug 11, 2026
    risk 0.47cvss 7.3epss 0.00

    Improper privilege management for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Privileged Process may allow an escalation of privilege. Unprivileged software adversary with an unauthenticated user combined with a high complexity attack may enable…

  • CVE-2026-14237HigAug 10, 2026
    risk 0.47cvss 7.2epss 0.00

    The vitepos WordPress plugin before 3.6.0, Vitepos WordPress plugin before 3.5.0 do not perform a per-target authorization check in their point-of-sale password-reset API and grant the custom Outlet Manager role an over-broad password-reset capability by default, allowing an…

  • CVE-2026-61336HigJul 21, 2026
    risk 0.47cvss 7.2epss 0.00

    Vulnerability in the Oracle Lease and Finance Management product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.14-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP…