Search Results (3432 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-36968 1 Microsoft 4 Windows 7, Windows Server 2008, Windows Server 2008 R2 and 1 more 2026-08-10 7.8 High
Windows DNS Elevation of Privilege Vulnerability
CVE-2021-36967 1 Microsoft 11 Windows 10, Windows 10 1507, Windows 10 1607 and 8 more 2026-08-10 8 High
Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability
CVE-2021-36966 1 Microsoft 9 Windows 10, Windows 10 1809, Windows 10 1909 and 6 more 2026-08-10 7.8 High
Windows Subsystem for Linux Elevation of Privilege Vulnerability
CVE-2021-36964 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2026-08-10 7.8 High
Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-36963 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2026-08-10 7.8 High
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2021-36954 1 Microsoft 10 Windows 10, Windows 10 1809, Windows 10 1909 and 7 more 2026-08-10 8.8 High
Windows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2021-36930 1 Microsoft 2 Edge, Edge Chromium 2026-08-10 5.3 Medium
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2021-36943 1 Microsoft 1 Azure Cyclecloud 2026-08-10 4 Medium
Azure CycleCloud Elevation of Privilege Vulnerability
CVE-2021-36927 1 Microsoft 8 Windows 7, Windows 8.1, Windows Rt 8.1 and 5 more 2026-08-10 7.8 High
Windows Digital TV Tuner device registration application Elevation of Privilege Vulnerability
CVE-2021-34483 1 Microsoft 19 Windows 10, Windows 10 1507, Windows 10 1607 and 16 more 2026-08-10 7.8 High
Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2021-34471 1 Microsoft 1 Malware Protection Engine 2026-08-10 7.8 High
Microsoft Defender Elevation of Privilege Vulnerability
CVE-2021-36945 1 Microsoft 1 Windows 10 Update Assistant 2026-08-10 7.3 High
Windows 10 Update Assistant Elevation of Privilege Vulnerability
CVE-2021-34537 1 Microsoft 18 Windows 10, Windows 10 1507, Windows 10 1607 and 15 more 2026-08-10 7.8 High
Windows Bluetooth Driver Elevation of Privilege Vulnerability
CVE-2021-34487 1 Microsoft 10 Windows 10, Windows 10 1607, Windows 10 1809 and 7 more 2026-08-10 7 High
Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2026-19360 1 Wongcyrus 1 Excellexbot 2026-08-10 4.7 Medium
A vulnerability was detected in wongcyrus ExcelLexBot up to 0.0.3. This affects the function ExcelLexBotS3TriggerFunction of the component Lambda Function Handler. Performing a manipulation results in improper privilege management. The attack may be initiated remotely. The vendor was contacted early about this disclosure but did not respond in any way. This vulnerability only affects products that are no longer supported by the maintainer.
CVE-2026-54415 1 Azuriom 1 Azuriom 2026-08-10 8.1 High
Missing Authorization in the server management routes (routes/admin.php) in Azuriom Azuriom CMS before 1.2.11 on all platforms allows an authenticated attacker with the admin.access permission to create AzLink server tokens and take over non-admin user accounts by changing their passwords and email addresses via crafted HTTP requests to /admin/servers/create and the AzLink API endpoints (/api/azlink/password, /api/azlink/email, /api/azlink/user/{id}).
CVE-2026-15215 2 Wordpress, Wpswings 2 Wordpress, Subscriptions For Woocommerce 2026-08-08 8.8 High
The Subscriptions for WooCommerce WordPress plugin before 2.0.1 does not verify the user's capability before installing and activating a Subscriptions for WooCommerce WordPress plugin before 2.0.1 from a user-supplied slug through a nonce-protected AJAX action, allowing users with the Shop Manager role (who lack Subscriptions for WooCommerce WordPress plugin before 2.0.1-management capabilities) to install and activate arbitrary Subscriptions for WooCommerce WordPress plugin before 2.0.1, resulting in remote code execution.
CVE-2024-8424 2 Watchgua, Watchguard 5 Panda Dome Firmware, Endpoint Security, Epdr Firmware and 2 more 2026-08-07 N/A
Improper Privilege Management vulnerability in WatchGuard EPDR, Panda AD360 and Panda Dome on Windows (PSANHost.exe module) allows arbitrary file delete with SYSTEM permissions.
CVE-2026-64637 1 Webpros 1 Plesk 2026-08-07 N/A
Improper privilege management in the XML-RPC API of Plesk before 18.0.80, allows an authenticated reseller to obtain an administrative session for the root user account.
CVE-2026-19189 1 Poweriso 1 Poweriso 2026-08-07 7.8 High
A security flaw has been discovered in Power Sofware PowerISO 9.3.0.0. Affected by this issue is some unknown functionality in the library C:\Windows\System32\drivers\scdemu.sys of the component Kernel Driver. The manipulation results in improper privilege management. The attack is only possible with local access. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.