VYPR

CWE-269

Improper Privilege Management

ClassDraftLikelihood: Medium

Description

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-122 · CAPEC-233 · CAPEC-58

CVEs mapped to this weakness (3,267)

page 157 of 164
  • CVE-2026-47868HigJul 18, 2026
    risk 0.00cvss 7.8epss 0.00

    VMware Avi Load Balancer contains a local privilege escalation vulnerability. A malicious user with local access may be able to escalate their privileges to run code as root. Affected versions: 32.1.1 (fixed in 32.1.2) 31.1.1 through 31.2.2 (fixed in 31.2.2-2p3) 30.1.1 through…

  • CVE-2026-15380MedJul 17, 2026
    risk 0.00cvss epss 0.00

    A non-administrator interactive user can obtain full SYSTEM code execution through a DCOM/task scheduler logic chain — no network access, no memory corruption required (ITMS 8.7.3)

  • CVE-2026-15379MedJul 17, 2026
    risk 0.00cvss epss 0.00

    The Altiris WMI provider exposes a class (AltirisAgent_Stream) that allows any local standard user to read the contents of any file accessible to the SYSTEM account, bypassing filesystem ACLs. No admin privileges required. The provider reverts to the LocalSystem context when…

  • CVE-2026-9810CriJul 17, 2026
    risk 0.00cvss 9.8epss 0.00

    The AI Copilot WordPress plugin before 1.5.4 does not bind OAuth access tokens to a WordPress user, and accepts any valid token as an administrator session, allowing unauthenticated attackers who complete the public OAuth flow to execute privileged MCP tools as an…

  • CVE-2026-11961HigJul 17, 2026
    risk 0.00cvss 8.1epss 0.00

    The User Registration & Membership WordPress plugin before 5.2.3 does not validate that the membership tier submitted during public registration is one of the tiers allowed by the registration form before assigning that tier's associated user role, allowing unauthenticated…

  • CVE-2026-15982CriJul 17, 2026
    risk 0.00cvss 9.8epss 0.00

    The Aimogen Pro - All-in-One AI Content Writer, Editor, ChatBot & Automation Toolkit plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.8.4. This is due to due to a missing capability check on the 'aiomatic_call_google_ai_function'…

  • CVE-2026-14956CriJul 17, 2026
    risk 0.00cvss 9.8epss 0.00

    The Bricksforge plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.1.8.6. This is due to improper validation of the fieldIds parameter in the Pro Forms registration action, which allows attacker-supplied field IDs to be added to…

  • CVE-2026-36425MedJul 16, 2026
    risk 0.00cvss 6.5epss 0.00

    An issue in OPSWAT AppRemover Driver (ardrv.sys) v2017.10.02.1551 and earlier in IOCTL handler 0x2420031. Any local user can open the device and send process termination requests without privilege validation.

  • CVE-2026-6423HigJul 16, 2026
    risk 0.00cvss epss 0.00

    A local privilege escalation vulnerability in ESET Inspect Connector.  The vulnerability was caused by improper authentication in an IPC channel.

  • CVE-2026-15103HigJul 16, 2026
    risk 0.00cvss 8.8epss 0.00

    The WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell plugin for WordPress is vulnerable to Privilege Escalation via arbitrary option update in all versions up to, and including, 3.12.8. This is due to the `update_settings()` REST callback failing to…

  • CVE-2026-13741HigJul 16, 2026
    risk 0.00cvss 8.8epss 0.00

    The Digits: WordPress Mobile Number Signup and Login plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 9.1.0.5. This is due to missing authorization and role validation in the `dig_update_wpwc_custom_fields()` function. This makes…

  • CVE-2026-12525HigJul 16, 2026
    risk 0.00cvss 8.8epss 0.00

    The Redux Framework WordPress plugin before 4.5.13 does not restrict which user meta keys can be written when saving custom profile fields, allowing users with at least the Subscriber role to escalate their privileges to Administrator by submitting a crafted value while updating…

  • CVE-2026-53444HigJul 15, 2026
    risk 0.00cvss epss 0.00

    Wekan is open source kanban built with Meteor. Prior to 9.32, Wekan OIDC-related Meteor methods in packages/wekan-oidc/oidc_server.js, server/models/org.js, and server/models/team.js are globally callable without the admin authorization checks used by their non-OIDC…

  • CVE-2026-62355MedJul 15, 2026
    risk 0.00cvss 5.4epss 0.00

    TDengine is an open source, time-series database optimized for Internet of Things devices. Prior to 3.4.1.15, a Data Reader admin_user on a TDengine Cloud DB instance could run create udf even though standard users should have read-only permissions for non-database objects and…

  • CVE-2026-14961MedJul 15, 2026
    risk 0.00cvss 6.2epss 0.00

    Pegatron `Tdelo64.sys` exposes a privileged device interface, `\\.\TdeIo`, that fails to properly restrict access to sensitive IOCTL functionality. The driver's IOCTL dispatcher does not validate caller privileges or verify user-supplied kernel memory addresses before performing…

  • CVE-2026-14960CriJul 15, 2026
    risk 0.00cvss 9.8epss 0.00

    Pegatron `Tdelo64.sys` improperly exposes privileged hardware access functionality through the `\\.\TdeIo` device interface. IOCTL handlers including `TDE_IOCTL_INDEXIO_READ` and `TDE_IOCTL_INDEXIO_WRITE` permit unprivileged user-mode callers to perform arbitrary hardware I/O…

  • CVE-2026-57996HigJul 15, 2026
    risk 0.00cvss 8.8epss 0.00

    phpMyFAQ before 4.1.5 contains a privilege escalation vulnerability in the user/add API endpoint that allows non-SuperAdmin administrators to create SuperAdmin accounts. A delegated administrator with USER_ADD/EDIT/DELETE permissions can call POST /admin/api/user/add with…

  • CVE-2026-49501MedJul 15, 2026
    risk 0.00cvss 6.7epss 0.00

    Dell PowerScale OneFS versions 9.5.0.0 through 9.10.1.7, and versions 9.11.0.0 through 9.13.0.2 contains an Improper Privilege Management vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

  • CVE-2026-50391HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Improper privilege management in Windows Group Policy allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50343HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.04

    Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.