VYPR

CWE-648

Incorrect Use of Privileged APIs

BaseIncompleteLikelihood: Low

Description

The product does not conform to the API requirements for a function call that requires extra privileges. This could allow attackers to gain privileges by causing the function to be called incorrectly.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-107 · CAPEC-234

CVEs mapped to this weakness (67)

page 3 of 4
  • CVE-2025-1161HigDec 10, 2025
    risk 0.46cvss 7.1epss 0.00

    Incorrect Use of Privileged APIs vulnerability in NomySoft Information Technology Training and Consulting Inc. Nomysem allows Privilege Escalation. This issue affects Nomysem: through May 2025.

  • CVE-2022-4796HigDec 28, 2022
    risk 0.46cvss 8.1epss 0.01

    Incorrect Use of Privileged APIs in GitHub repository usememos/memos prior to 0.9.1.

  • CVE-2022-4687HigDec 23, 2022
    risk 0.46cvss 8.1epss 0.01

    Incorrect Use of Privileged APIs in GitHub repository usememos/memos prior to 0.9.0.

  • CVE-2022-20956HigNov 4, 2022
    risk 0.46cvss 7.1epss 0.01

    A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to bypass authorization and access system files. This vulnerability is due to improper access control in the web-based management…

  • CVE-2022-24073HigMar 17, 2022
    risk 0.46cvss 7.1epss 0.01

    The Web Request API in Whale browser before 3.12.129.18 allowed to deny access to the extension store or redirect to any URL when users access the store.

  • CVE-2026-35625HigApr 9, 2026
    risk 0.44cvss 7.8epss 0.00

    OpenClaw before 2026.3.25 contains a privilege escalation vulnerability where silent local shared-auth reconnects auto-approve scope-upgrade requests, widening paired device permissions from operator.read to operator.admin. Attackers can exploit this by triggering local…

  • CVE-2022-24821MedApr 8, 2022
    risk 0.44cvss 6.8epss 0.01

    XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Simple users can create global SSX/JSX without specific rights: in theory only users with Programming Rights should be allowed to create SSX or JSX that are executed…

  • CVE-2019-3839HigMay 16, 2019
    risk 0.44cvss 7.8epss 0.02

    It was found that in ghostscript some privileged operators remained accessible from various places after the CVE-2019-6116 fix. A specially crafted PostScript file could use this flaw in order to, for example, have access to the file system outside of the constrains imposed by…

  • CVE-2025-54767MedJul 29, 2025
    risk 0.43cvss 6.5epss 0.05

    An authenticated, read-only user can kill any processes running on the Xormon Original virtual appliance as the lpar2rrd user.

  • CVE-2024-53007MedJan 31, 2025
    risk 0.42cvss 6.4epss 0.00

    Bentley Systems ProjectWise Integration Server before 10.00.03.288 allows unintended SQL query execution by an authenticated user via an API call.

  • CVE-2019-3838MedMar 25, 2019
    risk 0.36cvss 5.5epss 0.03

    It was found that the forceput operator could be extracted from the DefineResource method in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to, for example, have access to the file system outside of the constrains imposed by -dSAFER.

  • CVE-2019-3835MedMar 25, 2019
    risk 0.36cvss 5.5epss 0.03

    It was found that the superexec operator was available in the internal dictionary in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to, for example, have access to the file system outside of the constrains imposed by -dSAFER.

  • CVE-2026-22922MedFeb 9, 2026
    risk 0.35cvss 6.5epss 0.00

    Apache Airflow versions 3.1.0 through 3.1.6 contain an authorization flaw that can allow an authenticated user with custom permissions limited to task access to view task logs without having task log access. Users are recommended to upgrade to Apache Airflow 3.1.7 or later,…

  • CVE-2025-63291MedNov 14, 2025
    risk 0.35cvss 5.4epss 0.00

    When processing API requests, the Alteryx server 2022.1.1.42654 and 2024.1 used MongoDB object IDs to uniquely identify the data being requested by the caller. The Alteryx server did not check whether the authenticated user had permission to access the specified MongoDB object…

  • CVE-2025-54768MedJul 29, 2025
    risk 0.35cvss 5.3epss 0.04

    An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to download logs from the appliance configuration, exposing sensitive information.

  • CVE-2025-54766MedJul 29, 2025
    risk 0.35cvss 5.3epss 0.07

    An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to export the appliance configuration, exposing sensitive information.

  • CVE-2025-54765MedJul 29, 2025
    risk 0.35cvss 5.3epss 0.07

    An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to import the appliance configuration, allowing an attacker to control the configuration of the…

  • CVE-2024-46978MedSep 18, 2024
    risk 0.35cvss 6.5epss 0.01

    XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible for any user knowing the ID of a notification filter preference of another user, to enable/disable it or even delete it. The impact is that the target user…

  • CVE-2025-0589MedFeb 11, 2025
    risk 0.34cvss 5.3epss 0.00

    In affected versions of Octopus Deploy where customers are using Active Directory for authentication it was possible for an unauthenticated user to make an API request against two endpoints which would retrieve some data from the associated Active Directory. The requests when…

  • CVE-2023-20136MedJun 28, 2023
    risk 0.28cvss 4.3epss 0.01

    A vulnerability in the OpenAPI of Cisco Secure Workload could allow an authenticated, remote attacker with the privileges of a read-only user to execute operations that should require Administrator privileges. The attacker would need valid user credentials. This vulnerability…