CVE-2023-36326
https://notcve.org/view.php?id=CVE-2023-36326
Integer Overflow vulnerability in RELIC before commit 34580d840469361ba9b5f001361cad659687b9ab, allows attackers to execute arbitrary code, cause a denial of service, and escalate privileges when calling realloc function in bn_grow function. • https://github.com/relic-toolkit/relic/commit/34580d840469361ba9b5f001361cad659687b9ab https://groups.google.com/g/relic-discuss/c/A_J2-ArVIAo/m/qgFiXsUJBQAJ?utm_medium=email&utm_source=footer • CWE-190: Integer Overflow or Wraparound •
CVE-2023-24674
https://notcve.org/view.php?id=CVE-2023-24674
Permissions vulnerability found in Bludit CMS v.4.0.0 allows local attackers to escalate privileges via the role:admin parameter. • https://cupc4k3.medium.com/cve-2023-24674-uncovering-a-privilege-escalation-vulnerability-in-bludit-cms-dcf86c41107 https://medium.com/%40cupc4k3/privilege-scalation-in-bludit-cms-dcf86c41107 • CWE-862: Missing Authorization •
CVE-2022-46869
https://notcve.org/view.php?id=CVE-2022-46869
Local privilege escalation during installation due to improper soft link handling. • https://security-advisory.acronis.com/advisories/SEC-3835 • CWE-59: Improper Link Resolution Before File Access ('Link Following') CWE-269: Improper Privilege Management CWE-610: Externally Controlled Reference to a Resource in Another Sphere •
CVE-2023-41744
https://notcve.org/view.php?id=CVE-2023-41744
Local privilege escalation due to unrestricted loading of unsigned libraries. • https://security-advisory.acronis.com/advisories/SEC-4728 • CWE-347: Improper Verification of Cryptographic Signature •
CVE-2023-41743
https://notcve.org/view.php?id=CVE-2023-41743
Local privilege escalation due to insecure driver communication port permissions. • https://security-advisory.acronis.com/SEC-4858 https://security-advisory.acronis.com/advisories/SEC-5487 • CWE-269: Improper Privilege Management •