CWE-266: CWE-266

417
Total CVEs
48
Critical
131
High
6.7
Avg CVSS

Yearly Trend

2026
74
2025
267
2024
59
2023
5
2022
4

Top Affected Vendors

1 Jeecg 11
2 Portabilis 11
3 Dell 10
4 Google 9
5 Fuyang Lipengjun 8
6 Macrozheng 8
7 Dlink 8
8 Totolink 7
9 Wekan Project 7
10 Youlai 6

All CWE-266 CVEs (417)

CVE-2024-32009
7.8

This vulnerability allows any local attacker on a Spectrum Power 4 system to escalate privileges to administrative level due to incorrect file permiss...

Nov 11, 2025
CVE-2024-58273
7.8

Nagios Log Server versions before 2024R1.0.2 contain a local privilege escalation vulnerability. An attacker who can execute commands as the Apache we...

Oct 30, 2025
CVE-2025-36007
7.8

IBM QRadar SIEM versions 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 contain a privilege escalation vulnerability due to improper privilege as...

Oct 27, 2025
CVE-2025-10941
7.8

This CVE describes a local privilege escalation vulnerability in Topaz SERVCore Teller installer versions 2.14.0-RC2 and 2.14.1. The vulnerability all...

Sep 25, 2025
CVE-2025-58322
7.8

This vulnerability in NAVER MYBOX Explorer for Windows allows local attackers to escalate privileges to SYSTEM level by loading arbitrary DLLs. It aff...

Aug 28, 2025
CVE-2025-2713
7.8

This CVE describes a local privilege escalation vulnerability in Google gVisor's runsc component where incorrect file permission handling allowed unpr...

Mar 28, 2025
CVE-2024-49561
7.8

Dell SmartFabric OS10 Software contains an incorrect privilege assignment vulnerability (CWE-266) that allows local low-privileged attackers to elevat...

Mar 17, 2025
CVE-2024-46974
7.8

This vulnerability allows non-privileged software to improperly access Direct Memory Access (DMA) buffers, potentially leading to memory corruption or...

Jan 31, 2025
CVE-2024-13206
7.8

This critical vulnerability in REVE Antivirus 1.0.0.0 on Linux involves incorrect default permissions on the /usr/local/reveantivirus/tmp/reveinstall ...

Jan 9, 2025
CVE-2024-52048
7.8

A local privilege escalation vulnerability in Trend Micro Apex One's LogServer component allows attackers who already have low-privileged access to el...

Dec 31, 2024
CVE-2024-12786
7.8

This critical vulnerability in X1a0He Adobe Downloader allows local attackers to escalate privileges on macOS systems. The flaw exists in the XPC serv...

Dec 19, 2024
CVE-2024-29119
7.8

This vulnerability in Siemens Spectrum Power 7 allows authenticated local attackers to escalate privileges by exploiting root-owned SUID binaries. Att...

Nov 12, 2024
CVE-2024-47904
7.8

This vulnerability allows authenticated local attackers to execute arbitrary commands with root privileges on affected InterMesh devices. It affects I...

Oct 23, 2024
CVE-2024-34738
7.8

This vulnerability allows unprivileged Android apps to read their own restricted app-op states due to a logic error in AppOpsService.java. This could ...

Aug 15, 2024
CVE-2024-41139
7.8

This vulnerability allows local authenticated users to escalate privileges to SYSTEM by placing a malicious DLL in a specific folder. It affects SKYSE...

Jul 29, 2024
CVE-2024-31315
7.8

This vulnerability allows a malicious app to hide itself from the Device & app notifications settings by exploiting improper input validation in Andro...

Jul 9, 2024
CVE-2024-31771
7.8

This CVE describes an insecure permission vulnerability in TotalAV antivirus software that allows a local attacker to escalate privileges by creating ...

May 14, 2024
CVE-2024-20320
7.8

This vulnerability allows authenticated local attackers with low privileges on affected Cisco routers to elevate their privileges to root by exploitin...

Mar 13, 2024
CVE-2024-23288
7.8

This vulnerability allows an application to elevate its privileges on affected Apple devices, potentially gaining unauthorized access to system resour...

Mar 8, 2024
CVE-2023-40109
7.8

This vulnerability allows a malicious app to launch background activities without proper permissions, potentially leading to local privilege escalatio...

Feb 15, 2024
CVE-2023-20957
7.8

This vulnerability allows local attackers to bypass Factory Reset Protection (FRP) on Android devices, potentially gaining elevated privileges without...

Mar 24, 2023
CVE-2022-20681
7.8

This vulnerability allows authenticated local attackers on Cisco Catalyst 9000 switches and wireless controllers to escalate privileges to level 15 (a...

Apr 15, 2022
CVE-2021-20264
7.8

This vulnerability allows attackers with access to openjdk containers to modify the /etc/passwd file, enabling privilege escalation. It affects openjd...

Oct 6, 2021
CVE-2021-1572
7.8

CVE-2021-1572 is a privilege escalation vulnerability in Cisco ConfD software that allows authenticated local attackers to execute arbitrary commands ...

Aug 4, 2021
CVE-2019-19354
7.8

This vulnerability allows attackers with access to a container running the operator-framework/hadoop in Red Hat OpenShift 4 to modify the /etc/passwd ...

Mar 24, 2021
CVE-2019-19349
7.8

This vulnerability allows an attacker with access to the operator-metering container in Red Hat OpenShift 4 to modify the /etc/passwd file, potentiall...

Mar 24, 2021
CVE-2026-20852
7.7

CVE-2026-20852 is a privilege assignment vulnerability in Windows Hello that allows local attackers to tamper with authentication mechanisms. This aff...

Jan 13, 2026
CVE-2026-20804
7.7

This Windows Hello vulnerability allows an unauthorized local attacker to tamper with authentication processes due to incorrect privilege assignment. ...

Jan 13, 2026
CVE-2024-4555
7.7

CVE-2024-4555 is an improper privilege management vulnerability in OpenText NetIQ Access Manager that allows user account impersonation in specific sc...

Aug 28, 2024
CVE-2025-31420
7.6

This vulnerability allows attackers to escalate privileges in wpForo Forum, potentially granting unauthorized administrative access. It affects all Wo...

Apr 4, 2025
CVE-2023-5077
7.6

This vulnerability in HashiCorp Vault's Google Cloud secrets engine removes existing IAM Conditions when creating or updating rolesets, potentially gr...

Sep 29, 2023
CVE-2023-25591
7.6

This vulnerability in ClearPass Policy Manager's web interface allows authenticated low-privilege users to access sensitive information. Attackers cou...

Mar 22, 2023
CVE-2022-1746
7.6

The authentication mechanism in Dominion Voting Systems ImageCast X voting machines exposes cryptographic secrets used to protect election data. Attac...

Jun 24, 2022
CVE-2025-43914
7.5

Dell PowerProtect Data Domain BoostFS for Linux Ubuntu systems contain an Incorrect Privilege Assignment vulnerability (CWE-266). A local attacker wit...

Oct 7, 2025
CVE-2025-47291
7.5

A bug in containerd's CRI implementation fails to place usernamespaced containers under Kubernetes' cgroup hierarchy, causing Kubernetes resource limi...

May 21, 2025
CVE-2025-2898
7.5

This vulnerability in IBM Maximo Application Suite 9.0 allows authenticated attackers to escalate their privileges due to misconfigured Role-Based Acc...

May 6, 2025
CVE-2025-24648
7.5

This vulnerability allows attackers to escalate privileges in WordPress sites using the Admin and Site Enhancements (ASE) plugin. Attackers could gain...

Feb 4, 2025
CVE-2024-43333
7.5

This CVE describes a privilege escalation vulnerability in the Admin and Site Enhancements (ASE) Pro WordPress plugin. Attackers can exploit incorrect...

Feb 3, 2025
CVE-2024-9779
7.5

This vulnerability in Open Cluster Management allows attackers with access to worker nodes to steal service account tokens and gain full cluster contr...

Dec 17, 2024
CVE-2024-31912
7.5

IBM MQ 9.3 LTS and 9.3 CD contain a privilege escalation vulnerability where authenticated users can gain elevated privileges under certain configurat...

Jun 28, 2024
CVE-2021-1594
7.5

This vulnerability allows an unauthenticated remote attacker to execute arbitrary commands with root privileges on Cisco Identity Services Engine (ISE...

Oct 6, 2021
CVE-2024-27275
7.4

This CVE describes a local privilege escalation vulnerability in IBM i operating systems where a non-administrative user can configure a physical file...

Jun 15, 2024
CVE-2026-2983
7.3

This vulnerability in SourceCodester Student Result Management System 1.0 allows unauthenticated attackers to upload arbitrary files via the bulk impo...

Feb 23, 2026
CVE-2026-2896
7.3

This vulnerability allows remote attackers to bypass authorization controls in funadmin's configuration handler, potentially enabling unauthorized con...

Feb 22, 2026
CVE-2026-2668
7.3

This vulnerability allows unauthorized access to the user management functionality in Rongzhitong Visual Integrated Command and Dispatch Platform. Att...

Feb 18, 2026
CVE-2026-2549
7.3

This vulnerability in zhanghuanhao LibrarySystem allows attackers to bypass access controls in the BookController.java component, potentially enabling...

Feb 16, 2026
CVE-2025-68027
7.3

This vulnerability allows attackers to escalate privileges in the Themefic Hydra Booking WordPress plugin. Attackers can gain higher-level access than...

Jan 22, 2026
CVE-2025-55948
7.3

This vulnerability allows attackers to bypass role-based access controls in yzcheng90 X-SpringBoot 6.0 by exploiting desynchronization between fronten...

Dec 4, 2025
CVE-2025-13808
7.3

This CVE describes an improper authorization vulnerability in orion-ops that allows attackers to manipulate user IDs in the user profile update functi...

Dec 1, 2025
CVE-2025-13806
7.3

This vulnerability allows unauthorized Ethereum transactions through NutzBoot's Transaction API. Attackers can manipulate 'from/to/wei' parameters to ...

Dec 1, 2025

About CWE-266 (CWE-266)

Our database tracks 417 CVEs classified as CWE-266, with 48 rated critical and 131 rated high severity. The average CVSS score for CWE-266 vulnerabilities is 6.7.

External reference: View CWE-266 on MITRE CWE →

Monitor CWE-266 Vulnerabilities

Get alerted when new CWE-266 CVEs affect your infrastructure.

Start Monitoring Free