CWE-279: CWE-279

10
Total CVEs
1
Critical
5
High
6.9
Avg CVSS

Yearly Trend

2026
3
2025
5
2024
2

Top Affected Vendors

1 Google 1
2 Ibm 1
3 Intel 1
4 Open Emr 1
5 Linuxfoundation 1
6 Openautomationsoftware 1

All CWE-279 CVEs (10)

CVE-2024-37734
9.8

CVE-2024-37734 is a privilege escalation vulnerability in OpenEMR 7.0.2 that allows remote attackers to gain elevated privileges by sending a speciall...

Jun 26, 2024
CVE-2025-14025
8.5

This vulnerability in Ansible Automation Platform allows read-only OAuth2 API tokens to perform unauthorized write operations on backend services like...

Jan 8, 2026
CVE-2025-22843
7.8

This vulnerability in Intel Tiber Edge Platform's Edge Orchestrator software allows authenticated users with local access to escalate privileges due t...

May 13, 2025
CVE-2024-11220
7.8

This vulnerability allows local low-privileged users on servers running OAS services to execute arbitrary code with SYSTEM privileges by creating and ...

Dec 6, 2024
CVE-2024-25621
7.3

Containerd versions before 1.7.29, 2.0.7, 2.1.5, and 2.2.0 create critical directories with overly permissive access controls, allowing group/world re...

Nov 6, 2025
CVE-2026-20062
7.2

This vulnerability allows authenticated local administrators in one context of Cisco ASA multi-context mode to copy files to/from other contexts via S...

Mar 4, 2026
CVE-2025-13663
6.7

The Quartus Prime Pro Installer for Windows fails to verify directory permissions when installing to an existing directory, allowing attackers to pote...

Dec 11, 2025
CVE-2025-12801
6.5

A vulnerability in the rpc.mountd daemon in nfs-utils allows NFSv3 clients to bypass access restrictions defined in /etc/exports. This enables unautho...

Mar 4, 2026
CVE-2025-26422
4.0

This vulnerability allows local attackers to execute the dumpsys command without proper permissions due to a missing permission check in WindowManager...

Sep 4, 2025
CVE-2025-36228
3.8

IBM Aspera Faspex 5 versions 5.0.0 through 5.0.14.1 have inconsistent permissions between the user interface and backend API, allowing users to access...

Dec 26, 2025

About CWE-279 (CWE-279)

Our database tracks 10 CVEs classified as CWE-279, with 1 rated critical and 5 rated high severity. The average CVSS score for CWE-279 vulnerabilities is 6.9.

External reference: View CWE-279 on MITRE CWE →

Monitor CWE-279 Vulnerabilities

Get alerted when new CWE-279 CVEs affect your infrastructure.

Start Monitoring Free