Skip to main content

CWE archive

CWE-266 CVEs

Programmatic archive

1,006 CVEs tagged with CWE-266107 Critical, 272 High, 374 Medium, 252 Low, 1 Unrated.

CVE-2025-0802

Published Jan 29, 2025

A vulnerability classified as critical was found in SourceCodester Best Employee Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /adm…

CVSS 6.9 · Medium
evidence mentions
5
Buzz score
33.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2025-0797

Published Jan 29, 2025

A vulnerability was found in MicroWorld eScan Antivirus 7.0.32 on Linux. It has been declared as problematic. This vulnerability affects unknown code of the file /var/Microworld/…

CVSS 4.8 · Medium
evidence mentions
4
Buzz score
27.1
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2025-0783

Published Jan 28, 2025

A vulnerability, which was classified as problematic, was found in pankajindevops scale up to 20241113. This affects an unknown part of the component API Endpoint. The manipulatio…

CVSS 5.3 · Medium
evidence mentions
5
Buzz score
25.9

CVE-2024-35122

Published Jan 24, 2025

IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to a file level local denial of service caused by an insufficient authority requirement. A local non-privileged user can configure a ref…

CVSS 2.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2024-51888

Published Jan 21, 2025

Incorrect Privilege Assignment vulnerability in favethemes Homey Login Register homey-login-register allows Privilege Escalation.This issue affects Homey Login Register: from n/a…

CVSS 9.8 · Critical

CVE-2024-32555

Published Jan 21, 2025

Incorrect Privilege Assignment vulnerability in InspiryThemes Easy Real Estate easy-real-estate allows Privilege Escalation.This issue affects Easy Real Estate: from n/a through <…

CVSS 9.8 · Critical

CVE-2025-23528

Published Jan 16, 2025

Incorrect Privilege Assignment vulnerability in Mosterd3d DD Roles dd-roles allows Privilege Escalation.This issue affects DD Roles: from n/a through <= 4.1.

CVSS 8.8 · High

CVE-2025-0484

Published Jan 15, 2025

A vulnerability was found in Fanli2012 native-php-cms 1.0 and classified as critical. This issue affects some unknown processing of the file /fladmin/sysconfig_doedit.php of the c…

CVSS 6.9 · Medium
evidence mentions
5
Buzz score
28.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2025-22736

Published Jan 15, 2025

Incorrect Privilege Assignment vulnerability in Saad Iqbal User Management user-management allows Privilege Escalation.This issue affects User Management: from n/a through <= 1.2.

CVSS 8.8 · High

CVE-2024-13211

Published Jan 9, 2025

A vulnerability was found in SingMR HouseRent 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file src/main/java/com/house/wym/cont…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-13206

Published Jan 9, 2025

A vulnerability classified as critical has been found in REVE Antivirus 1.0.0.0 on Linux. This affects an unknown part of the file /usr/local/reveantivirus/tmp/reveinstall. The ma…

CVSS 8.5 · High

CVE-2024-13200

Published Jan 9, 2025

A vulnerability, which was classified as critical, was found in wander-chu SpringBoot-Blog 1.0. This affects the function preHandle of the file src/main/java/com/my/blog/website/i…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-13189

Published Jan 8, 2025

A vulnerability classified as critical has been found in ZeroWdd myblog 1.0. This affects an unknown part of the file src/main/java/com/wdd/myblog/config/MyBlogMvcConfig.java. The…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-13188

Published Jan 8, 2025

A vulnerability was found in MicroWorld eScan Antivirus 7.0.32 on Linux. It has been rated as critical. Affected by this issue is some unknown functionality of the file /opt/Micro…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56280

Published Jan 7, 2025

Incorrect Privilege Assignment vulnerability in AmentoTech Private Limited WPGuppy wpguppy-lite allows Privilege Escalation.This issue affects WPGuppy: from n/a through <= 1.1.0.

CVSS 8.8 · High

CVE-2024-49644

Published Jan 7, 2025

Incorrect Privilege Assignment vulnerability in AllAccessible Accessibility by AllAccessible allaccessible allows Privilege Escalation.This issue affects Accessibility by AllAcces…

CVSS 8.8 · High

CVE-2024-12470

Published Jan 7, 2025

The School Management System – SakolaWP plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.0.8. This is due to the registration fun…

CVSS 9.8 · Critical

CVE-2025-0206

Published Jan 4, 2025

A vulnerability classified as critical was found in code-projects Online Shoe Store 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/index.php. T…

CVSS 6.9 · Medium
evidence mentions
5
Buzz score
29.4
Vendor/product tagsBeta · best-effort

CVE-2024-56513

Published Jan 3, 2025

Karmada is a Kubernetes management system that allows users to run cloud-native applications across multiple Kubernetes clusters and clouds. Prior to version 1.12.0, the PULL mode…

CVSS 8.7 · High

CVE-2024-55542

Published Jan 2, 2025

Local privilege escalation due to excessive permissions assigned to Tray Monitor service. The following products are affected: Acronis Cyber Protect 16 (Linux, macOS, Windows) bef…

CVSS 4.4 · Medium
Showing 751-775 of 1,006 CVEsPage 31 of 41