CVE-2026-59501
CWE-284: Improper Access Control
CVSS
8.2
Alto
EPSS
—
KEV
—
Exploit Today
0
0-100
Publicado: 13 ago 2026 · Última mod.: 13 ago 2026 · CWE-284
Sin historial EPSS suficiente todavía.
CWE-284: Improper Access Control
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-595058.6 ALT—
——0CWE-284: Improper Access Control3hCVE-2026-133677.8 ALT—
——0IBM Informix Dynamic Server 14.10, and 15.0 contain a local privilege escalation vulnerability in the oninit setuid-root utility.16hCVE-2026-599177.8 ALT—
——0Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.17, contain Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges and arbitrary code execution.8hCVE-2026-599147.8 ALT—
——0Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.17, contain an Authentication Bypass by Spoofing vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges and arbitrary code execution.8hCVE-2026-67287——
——0Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Page Builder < 6.8.0 - An unauthenticated attacker can create comments on instances with disabled guest commenting by overriding the setting in question with user supplied input.22hCVE-2026-67284—27.9%
——8Joomla Extension - tabaoca.org - Improper ACL implementation allows file operations in Cotton Cloud < 2.0.3 - Authenticated users could perform various file-related operations (read, delete, overwrite, re-assign permissions) on files owned by other users.1d