CWE-268: CWE-268

10
Total CVEs
1
Critical
6
High
7.4
Avg CVSS

Yearly Trend

2025
8
2024
1
2023
1

Top Affected Vendors

1 Beyondtrust 2
2 Microsoft 1
3 Ibm 1
4 Openvpn 1
5 Silabs 1

All CWE-268 CVEs (10)

CVE-2023-0971
9.6

A logic error in Silicon Labs Z/IP Gateway SDK versions 7.18.02 and earlier allows attackers to bypass authentication, remotely administer Z-Wave cont...

Jun 21, 2023
CVE-2024-4877
8.8

This vulnerability allows a lower-privileged process on Windows to create a named pipe that the OpenVPN GUI component automatically connects to, enabl...

Apr 3, 2025
CVE-2025-64701
7.8

This privilege escalation vulnerability in QND software versions 11.0.9i and earlier allows authenticated Windows users to gain administrator privileg...

Dec 11, 2025
CVE-2025-2297
7.8

This vulnerability allows local authenticated users to edit their profile files and insert illegitimate challenge response codes, enabling privilege e...

Jul 28, 2025
CVE-2025-0889
7.8

This vulnerability allows local authenticated attackers to elevate privileges on systems running Privilege Management for Windows versions before 25.2...

Feb 26, 2025
CVE-2024-47045
7.8

This CVE describes a privilege escalation vulnerability in the e-Tax software installer where an attacker can plant a malicious DLL that gets executed...

Sep 26, 2024
CVE-2025-49741
7.4

This vulnerability in Microsoft Edge (Chromium-based) allows unauthorized attackers to access sensitive information over a network. It affects all use...

Jul 1, 2025
CVE-2025-32955
6.0

CVE-2025-32955 is a privilege escalation vulnerability in Harden-Runner CI/CD security agent that allows attackers to bypass the 'disable-sudo' policy...

Apr 21, 2025
CVE-2025-36124
5.9

IBM WebSphere Application Server Liberty versions 17.0.0.3 through 25.0.0.8 contain a vulnerability where JMS messaging configuration is not properly ...

Aug 12, 2025
CVE-2025-20112
5.1

This vulnerability in Cisco Unified Communications and Contact Center Solutions allows authenticated local attackers with administrative ESXi hypervis...

May 21, 2025

About CWE-268 (CWE-268)

Our database tracks 10 CVEs classified as CWE-268, with 1 rated critical and 6 rated high severity. The average CVSS score for CWE-268 vulnerabilities is 7.4.

External reference: View CWE-268 on MITRE CWE →

Monitor CWE-268 Vulnerabilities

Get alerted when new CWE-268 CVEs affect your infrastructure.

Start Monitoring Free