Vulnerabilities (CVE)

Filtered by CWE-269
Total 2355 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-37167 1 Swisslog-healthcare 2 Hmi-3 Control Panel, Hmi-3 Control Panel Firmware 2024-11-21 10.0 HIGH 9.8 CRITICAL
An insecure permissions issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. A user logged in using the default credentials can gain root access to the device, which provides permissions for all of the functionality of the device.
CVE-2021-36975 1 Microsoft 4 Windows 10, Windows Server 2016, Windows Server 2019 and 1 more 2024-11-21 4.6 MEDIUM 7.8 HIGH
Win32k Elevation of Privilege Vulnerability
CVE-2021-36974 1 Microsoft 7 Windows 10, Windows 8.1, Windows Rt 8.1 and 4 more 2024-11-21 4.6 MEDIUM 7.8 HIGH
Windows SMB Elevation of Privilege Vulnerability
CVE-2021-36973 1 Microsoft 4 Windows 10, Windows Server 2016, Windows Server 2019 and 1 more 2024-11-21 4.6 MEDIUM 7.8 HIGH
Windows Redirected Drive Buffering System Elevation of Privilege Vulnerability
CVE-2021-36968 1 Microsoft 2 Windows 7, Windows Server 2008 2024-11-21 4.6 MEDIUM 7.8 HIGH
Windows DNS Elevation of Privilege Vulnerability
CVE-2021-36967 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2024-11-21 5.8 MEDIUM 8.0 HIGH
Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability
CVE-2021-36966 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2024-11-21 4.6 MEDIUM 7.8 HIGH
Windows Subsystem for Linux Elevation of Privilege Vulnerability
CVE-2021-36964 1 Microsoft 9 Windows 10, Windows 7, Windows 8.1 and 6 more 2024-11-21 4.6 MEDIUM 7.8 HIGH
Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-36963 1 Microsoft 9 Windows 10, Windows 7, Windows 8.1 and 6 more 2024-11-21 4.6 MEDIUM 7.8 HIGH
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2021-36957 1 Microsoft 4 Windows 10, Windows Server 2016, Windows Server 2019 and 1 more 2024-11-21 4.6 MEDIUM 7.8 HIGH
Windows Desktop Bridge Elevation of Privilege Vulnerability
CVE-2021-36954 1 Microsoft 4 Windows 10, Windows Server 2016, Windows Server 2019 and 1 more 2024-11-21 4.6 MEDIUM 8.8 HIGH
Windows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2021-36945 1 Microsoft 1 Windows 10 Update Assistant 2024-11-21 6.8 MEDIUM 7.3 HIGH
Windows 10 Update Assistant Elevation of Privilege Vulnerability
CVE-2021-36943 1 Microsoft 1 Azure Cyclecloud 2024-11-21 4.6 MEDIUM 4.0 MEDIUM
Azure CycleCloud Elevation of Privilege Vulnerability
CVE-2021-36931 1 Microsoft 1 Edge Chromium 2024-11-21 6.8 MEDIUM 4.4 MEDIUM
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2021-36930 1 Microsoft 1 Edge 2024-11-21 6.8 MEDIUM 5.3 MEDIUM
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2021-36927 1 Microsoft 5 Windows 7, Windows 8.1, Windows Rt 8.1 and 2 more 2024-11-21 4.6 MEDIUM 7.8 HIGH
Windows Digital TV Tuner device registration application Elevation of Privilege Vulnerability
CVE-2021-36784 1 Suse 1 Rancher 2024-11-21 6.5 MEDIUM 7.2 HIGH
A Improper Privilege Management vulnerability in SUSE Rancher allows users with the restricted-admin role to escalate to full admin. This issue affects: SUSE Rancher Rancher versions prior to 2.5.13; Rancher versions prior to 2.6.4.
CVE-2021-36316 1 Dell 1 Emc Avamar Server 2024-11-21 6.5 MEDIUM 6.7 MEDIUM
Dell EMC Avamar Server versions 18.2, 19.1, 19.2, 19.3, and 19.4 contain an improper privilege management vulnerability in AUI. A malicious user with high privileges could potentially exploit this vulnerability, leading to the disclosure of the AUI info and performing some unauthorized operation on the AUI.
CVE-2021-36307 1 Dell 1 Networking Os10 2024-11-21 8.5 HIGH 8.8 HIGH
Networking OS10, versions prior to October 2021 with RESTCONF API enabled, contains a privilege escalation vulnerability. A malicious low privileged user with specific access to the API could potentially exploit this vulnerability to gain admin privileges on the affected system.
CVE-2021-36302 1 Dell 2 Emc Integrated System For Microsoft Azure Stack Hub, Emc Integrated System For Microsoft Azure Stack Hub Firmware 2024-11-21 9.0 HIGH 9.9 CRITICAL
All Dell EMC Integrated System for Microsoft Azure Stack Hub versions contain a privilege escalation vulnerability. A remote malicious user with standard level JEA credentials may potentially exploit this vulnerability to elevate privileges and take over the system.