CWE-269— Improper Privilege Management
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.— MITRE CWE catalog
4,937 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-269page 79 of 99
- CVE-2025-15030CRITICALCVSS 9.8EG 9.82026-02-02
The User Profile Builder WordPress plugin before 3.15.2 does not have a proper password reset process, allowing a few unauthenticated requests to reset the password of any user by knowing their username, such as administrator ones, and th…
- CVE-2025-15100HIGHCVSS 8.8EG 8.82026-02-08
The JAY Login & Register plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.6.03. This is due to the plugin allowing a user to update arbitrary user meta through the 'jay_panel_ajax_update_pr…
- CVE-2025-15403CRITICALCVSS 9.8EG 9.82026-01-17
The RegistrationMagic plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.0.7.1. This is due to the 'add_menu' function is accessible via the 'rm_user_exists' AJAX action and allows arbitrary …
- CVE-2025-15547HIGHCVSS 8.8EG 8.82026-03-09
By default, jailed processes cannot mount filesystems, including nullfs(4). However, the allow.mount.nullfs option enables mounting nullfs filesystems, subject to privilege checks. If a privileged user within a jail is able to nullfs-mou…
- CVE-2025-15561HIGHCVSS 7.8EG 7.82026-02-19
An attacker can exploit the update behavior of the WorkTime monitoring daemon to elevate privileges on the local system to NT Authority\SYSTEM. A malicious executable must be named WTWatch.exe and dropped in the C:\ProgramData\wta\Client…
- CVE-2025-15576HIGHCVSS 7.5EG 7.52026-03-09
If two sibling jails are restricted to separate filesystem trees, which is to say that neither of the two jail root directories is an ancestor of the other, jailed processes may nonetheless be able to access a shared directory via a nullfs…
- CVE-2025-1732MEDIUMCVSS 6.7EG 6.72025-04-22
An improper privilege management vulnerability in the recovery function of the Zyxel USG FLEX H series uOS firmware version V1.31 and earlier could allow an authenticated local attacker with administrator privileges to upload a crafted con…
- CVE-2025-20282CRITICALCVSS 10.0EG 10.02025-06-25
A vulnerability in an internal API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to upload arbitrary files to an affected device and then execute those files on the underlying operating system as root. T…
- CVE-2025-20346MEDIUMCVSS 4.3EG 4.32025-11-13
A vulnerability in Cisco Catalyst Center could allow an authenticated, remote attacker to execute operations that should require Administrator privileges. The attacker would need valid read-only user credentials. This vulnerability is d…
- CVE-2025-21199MEDIUMCVSS 6.7EG 6.72025-03-11
Improper privilege management in Azure Agent Installer allows an authorized attacker to elevate privileges locally.
- CVE-2025-21287HIGHCVSS 7.8EG 7.82025-01-14
Windows Installer Elevation of Privilege Vulnerability
- CVE-2025-21343HIGHCVSS 7.5EG 7.52025-01-14
Windows Web Threat Defense User Service Information Disclosure Vulnerability
- CVE-2025-21360HIGHCVSS 7.8EG 7.82025-01-14
Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability
- CVE-2025-22165HIGHCVSS 7.3EG 7.32025-07-24
This Medium severity ACE (Arbitrary Code Execution) vulnerability was introduced in version 4.2.8 of Sourcetree for Mac. This ACE (Arbitrary Code Execution) vulnerability, with a CVSS Score of 5.9, allows a locally authenticated attacker …
- CVE-2025-22220MEDIUMCVSS 4.3EG 4.32025-01-30
VMware Aria Operations for Logs contains a privilege escalation vulnerability. A malicious actor with non-administrative privileges and network access to Aria Operations for Logs API may be able to perform certain operations in the conte…
- CVE-2025-22231HIGHCVSS 7.8EG 7.82025-04-01
VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with local administrative privileges can escalate their privileges to root on the appliance running VMware Aria Operations.
- CVE-2025-22254MEDIUMCVSS 6.6EG 6.62025-06-10
An Improper Privilege Management vulnerability [CWE-269] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.1, FortiOS 7.4.0 through 7.4.6, FortiOS 7.2.0 through 7.2.10, FortiOS 7.0.0 through 7.0.16, FortiOS 6.4.0 through 6.4.15, FortiPro…
- CVE-2025-2232CRITICALCVSS 9.8EG 9.82025-03-14
The Realteo - Real Estate Plugin by Purethemes plugin for WordPress, used by the Findeo Theme, is vulnerable to authentication bypass in all versions up to, and including, 1.2.8. This is due to insufficient role restrictions in the 'do_reg…
- CVE-2025-2237CRITICALCVSS 9.8EG 9.82025-04-01
The WP RealEstate plugin for WordPress, used by the Homeo theme, is vulnerable to privilege escalation in all versions up to, and including, 1.6.26. This is due to insufficient role restrictions in the 'process_register' function. This mak…
- CVE-2025-2238HIGHCVSS 8.8EG 8.82025-04-25
The Vikinger theme for WordPress is vulnerable to privilege in all versions up to, and including, 1.9.30. This is due to insufficient user_meta restrictions in the 'vikinger_user_meta_update_ajax' function. This makes it possible for authe…
- CVE-2025-22621MEDIUMCVSS 6.4EG 6.42025-01-07
In versions 1.0.67 and lower of the Splunk App for SOAR, the Splunk documentation for that app recommended adding the `admin_all_objects` capability to the `splunk_app_soar` role. This addition could lead to improper access control for a l…
- CVE-2025-22829MEDIUMCVSS 4.3EG 4.32025-06-10
The CloudStack Quota plugin has an improper privilege management logic in version 4.20.0.0. Anyone with authenticated user-account access in CloudStack 4.20.0.0 environments, where this plugin is enabled and have access to specific APIs ca…
- CVE-2025-22937CRITICALCVSS 9.8EG 9.82025-03-31
An issue in Adtran 411 ONT vL80.00.0011.M2 allows attackers to escalate privileges via unspecified vectors.
- CVE-2025-23007HIGHCVSS 5.5EG 7.82025-01-30
A vulnerability in the NetExtender Windows client log export function allows unauthorized access to sensitive Windows system files, potentially leading to privilege escalation.
- CVE-2025-23093HIGHCVSS 8.8EG 8.82025-02-06
The Platform component of Mitel OpenScape 4000 and OpenScape 4000 Manager through V10 R1.54.1 and V11 through R0.22.1 could allow an authenticated attacker to conduct a privilege escalation attack due to the execution of a resource with un…
- CVE-2025-23208HIGHCVSS 7.3EG 7.32025-01-17
zot is a production-ready vendor-neutral OCI image registry. The group data stored for users in the boltdb database (meta.db) is an append-list so group revocations/removals are ignored in the API. SetUserGroups is alled on login, but inst…
- CVE-2025-2324MEDIUMCVSS 5.9EG 5.92025-03-19
Improper Privilege Management vulnerability for users configured as Shared Accounts in Progress MOVEit Transfer (SFTP module) allows Privilege Escalation.This issue affects MOVEit Transfer: from 2023.1.0 before 2023.1.12, from 2024.0.0 bef…
- CVE-2025-24006HIGHCVSS 7.8EG 7.82025-07-08
A low privileged local attacker can leverage insecure permissions via SSH on the affected devices to escalate privileges to root.
- CVE-2025-24119CRITICALCVSS 7.8EG 9.82025-07-30
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app may be able to execute arbitrary code out of its sandbox or with certain elevated priv…
- CVE-2025-24183MEDIUMCVSS 5.5EG 5.52025-05-19
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.3, macOS Ventura 13.7.3. A local user may be able to modify protected parts of the file system.
- CVE-2025-24254HIGHCVSS 8.8EG 8.82025-03-31
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. A user may be able to elevate privileges.
- CVE-2025-24258HIGHCVSS 7.8EG 7.82025-05-12
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.6, macOS Ventura 13.7.6. An app may be able to gain root privileges.
- CVE-2025-24286HIGHCVSS 7.2EG 7.22025-06-19
A vulnerability allowing an authenticated user with the Backup Operator role to modify backup jobs, which could execute arbitrary code.
- CVE-2025-24307LOWCVSS 2.0EG 2.02025-11-11
Improper privilege management for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with…
- CVE-2025-24353MEDIUMCVSS 5.0EG 5.02025-01-23
Directus is a real-time API and App dashboard for managing SQL database content. Prior to version 11.2.0, when sharing an item, a typical user can specify an arbitrary role. It allows the user to use a higher-privileged role to see fields …
- CVE-2025-24805MEDIUMCVSS 5.5EG 5.52025-02-05
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework. A local user with minimal privileges is able to make use of an access t…
- CVE-2025-24838HIGHCVSS 8.8EG 8.82025-11-11
Improper privilege management for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with…
- CVE-2025-24863MEDIUMCVSS 6.5EG 6.52025-11-11
Improper privilege management for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications may allow an information disclosure. Unprivileged software adversary with an authenticated user combined with …
- CVE-2025-25202MEDIUMCVSS 6.5EG 6.52025-02-11
Ash Authentication is an authentication framework for Elixir applications. Applications which have been bootstrapped by the igniter installer present since AshAuthentication v4.1.0 and who have used the magic link strategy _or_ are manuall…
- CVE-2025-25230HIGHCVSS 7.8EG 7.82025-04-16
Omnissa Horizon Client for Windows contains an LPE Vulnerability. A malicious actor with local access where Horizon Client for Windows is installed may be able to elevate privileges.
- CVE-2025-25872MEDIUMCVSS 5.5EG 5.52025-03-14
An issue in Open Panel v.0.3.4 allows a remote attacker to escalate privileges via the Fix Permissions function
- CVE-2025-25962CRITICALCVSS 9.8EG 9.82025-04-29
An issue in Coresmartcontracts Uniswap v.3.0 and fixed in v.4.0 allows a remote attacker to escalate privileges via the _modifyPosition function
- CVE-2025-26396HIGHCVSS 7.8EG 7.82025-06-02
The SolarWinds Dameware Mini Remote Control was determined to be affected by Incorrect Permissions Local Privilege Escalation Vulnerability. This vulnerability requires local access and a valid low privilege account to be susceptible to th…
- CVE-2025-26435HIGHCVSS 7.8EG 7.82025-09-04
In updateState of ContentProtectionTogglePreferenceController.java, there is a possible way for a secondary user to disable the primary user's deceptive app scanning setting due to a logic error in the code. This could lead to local escala…
- CVE-2025-26462HIGHCVSS 7.8EG 7.82025-09-04
In AccessibilityServiceConnection.java, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is n…
- CVE-2025-26513HIGHCVSS 7.0EG 7.02025-08-07
The installer for SAN Host Utilities for Windows versions prior to 8.0 is susceptible to a vulnerability which when successfully exploited could allow a local user to escalate their privileges.
- CVE-2025-26703MEDIUMCVSS 4.3EG 4.32025-03-11
Improper Privilege Management vulnerability in ZTE GoldenDB allows Privilege Escalation.This issue affects GoldenDB: from 6.1.03 through 6.1.03.04.
- CVE-2025-26704MEDIUMCVSS 6.4EG 6.42025-03-11
Improper Privilege Management vulnerability in ZTE GoldenDB allows Privilege Escalation.This issue affects GoldenDB: from 6.1.03 through 6.1.03.05.
- CVE-2025-26705MEDIUMCVSS 5.3EG 5.32025-03-11
Improper Privilege Management vulnerability in ZTE GoldenDB allows Privilege Escalation.This issue affects GoldenDB: from 6.1.03 through 6.1.03.05.
- CVE-2025-26706MEDIUMCVSS 5.4EG 5.42025-03-11
Improper Privilege Management vulnerability in ZTE GoldenDB allows Privilege Escalation.This issue affects GoldenDB: from 6.1.03 through 6.1.03.07.
Map vulnerabilities like CWE-269 to your infrastructure
EchelonGraph correlates every CVE — across CWE-269 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →