CWE-269: Improper Privilege Management

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

1,360 tracked CVEs are classified under this weakness.

Highest-risk vulnerabilities

Recently published

More specific weaknesses

Browse the full CVE database