CVE-2022-46869
https://notcve.org/view.php?id=CVE-2022-46869
31 Aug 2023 — Local privilege escalation during installation due to improper soft link handling. • https://security-advisory.acronis.com/advisories/SEC-3835 • CWE-59: Improper Link Resolution Before File Access ('Link Following') CWE-269: Improper Privilege Management CWE-610: Externally Controlled Reference to a Resource in Another Sphere •
CVE-2023-41744
https://notcve.org/view.php?id=CVE-2023-41744
31 Aug 2023 — Local privilege escalation due to unrestricted loading of unsigned libraries. • https://security-advisory.acronis.com/advisories/SEC-4728 • CWE-347: Improper Verification of Cryptographic Signature •
CVE-2023-41743
https://notcve.org/view.php?id=CVE-2023-41743
31 Aug 2023 — Local privilege escalation due to insecure driver communication port permissions. • https://security-advisory.acronis.com/SEC-4858 • CWE-269: Improper Privilege Management •
CVE-2022-46868
https://notcve.org/view.php?id=CVE-2022-46868
31 Aug 2023 — Local privilege escalation during recovery due to improper soft link handling. • https://security-advisory.acronis.com/advisories/SEC-2499 • CWE-610: Externally Controlled Reference to a Resource in Another Sphere •
CVE-2022-45451
https://notcve.org/view.php?id=CVE-2022-45451
31 Aug 2023 — Local privilege escalation due to insecure driver communication port permissions. • https://github.com/alfarom256/CVE-2022-45451 • CWE-269: Improper Privilege Management •
CVE-2023-4015 – Use-after-free in Linux kernel's netfilter: nf_tables component
https://notcve.org/view.php?id=CVE-2023-4015
30 Aug 2023 — A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. ... A use-after-free flaw was found in the Linux kernel's netfilter: nf_tables component, which can be exploited to achieve local privilege escalation. • https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=0a771f7b266b02d262900c75f1e175c7fe76fec2 • CWE-416: Use After Free •
CVE-2023-3777 – Use-after-free in Linux kernel's netfilter: nf_tables component
https://notcve.org/view.php?id=CVE-2023-3777
30 Aug 2023 — A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. ... A use-after-free flaw was found in the Linux kernel's netfilter: nf_tables component, which can be exploited to achieve local privilege escalation. • http://packetstormsecurity.com/files/175072/Kernel-Live-Patch-Security-Notice-LSN-0098-1.html • CWE-416: Use After Free •
CVE-2023-41265 – Qlik Sense HTTP Tunneling Vulnerability
https://notcve.org/view.php?id=CVE-2023-41265
29 Aug 2023 — Qlik Sense contains an HTTP tunneling vulnerability that allows an attacker to escalate privileges and execute HTTP requests on the backend server hosting the software. • https://github.com/praetorian-inc/zeroqlik-detect • CWE-444: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') •
CVE-2020-24165
https://notcve.org/view.php?id=CVE-2020-24165
28 Aug 2023 — An issue was discovered in TCG Accelerator in QEMU 4.2.0, allows local attackers to execute arbitrary code, escalate privileges, and cause a denial of service (DoS). • https://bugs.launchpad.net/qemu/+bug/1863025 •
CVE-2023-32079 – Netmaker Privilige Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2023-32079
24 Aug 2023 — A Mass assignment vulnerability was found in versions prior to 0.17.1 and 0.18.6 that allows a non-admin user to escalate privileges to those of an admin user. • https://github.com/gravitl/netmaker/security/advisories/GHSA-826j-8wp2-4x6q • CWE-915: Improperly Controlled Modification of Dynamically-Determined Object Attributes •