CWE-250 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-250 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2024-38813The vCenter Server contains a privilege escalation vulnerability. A malicious actor with network acc…17.4%심각9.8● 실제 악용이 확인됨CVE-2025-40602A local privilege escalation vulnerability due to insufficient authorization in the SonicWall SMA100…2.8%보통6.6CVE-2026-54501Browsertrix is a high-fidelity, browser-based crawling service for web archiving that can be self-ho…1.2%심각9.4CVE-2026-77521MaxKB is an open-source AI assistant for enterprise. Prior to version 2.10.5-lts, assistants with a …1.0%심각10.0CVE-2026-69409Execution with unnecessary privileges in Microsoft Office SharePoint allows an authorized attacker t…1.0%보통6.5CVE-2026-69464Execution with unnecessary privileges in Microsoft Office SharePoint allows an authorized attacker t…0.9%높음8.8CVE-2026-84787ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to…0.8%높음8.1CVE-2026-92574A vulnerability in CRI-O checkpoint restore allows a user who can create a pod from a malicious chec…0.7%높음8.8
전체 목록
23건
CVE-2026-87899Execution with unnecessary privileges in cPanel allows remote authenticated users to execute arbitrary code wi…0.6%심각9.4
CVE-2026-89259Hugo is a static site generator. From v0.161.0, Hugo executes Node tools under Node's permission model, but Ta…0.4%심각9.3
CVE-2026-55094Taskcluster is the task execution framework that supports Mozilla's continuous integration and release process…0.4%높음8.7
CVE-2026-102247A vulnerability was detected in FastAdmin 1.6.1.20250430/1.6.5.20260602. This affects an unknown function of t…0.4%높음7.1
CVE-2026-87506Privilege elevation in WebUI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had comprom…0.3%높음8.3
CVE-2026-66246iControl is affected by a Broken Access Control vulnerability, which could allow an attacker to exploit missin…0.3%높음8.8
CVE-2026-88808A vulnerability has been identified within Rancher Manager where the Fleet agent wrote resources to downstream…0.3%높음8.8
CVE-2026-83534PostgreSQL Anonymizer contains a vulnerability in the anon.anonymize_database_parallel() function that allows …0.2%보통6.4
CVE-2026-55225Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configu…0.2%높음8.0
CVE-2026-80238Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00,…0.1%심각9.3
CVE-2026-75092A privilege escalation flaw was found in the scan_mysql actor of leapp-upgrade-el9toel10 (provided by leapp-re…0.1%높음7.3
CVE-2026-102118A local privilege escalation vulnerability in Kiteworks could have allowed an attacker with an existing shell …0.1%높음7.8
CVE-2026-53605Reachy Mini ISO for Wireless contains the necessary files to build a custom Raspberry Pi OS image for the Reac…0.1%높음7.8
CVE-2026-79942Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00,…0.1%낮음3.4
CVE-2026-19087IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to achieve privilege…0.1%보통4.4
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.