CWE-732

High likelihood

Incorrect Permission Assignment for Critical Resource

Parent: CWE-285 - Improper Authorization

The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.

1,622 vulnerabilities with CWE-732
CVE-2023-40622 CRITICAL
SAP BusinessObjects <430 - Info Disclosure
CVSS 9.9
CVE-2023-32005 MEDIUM
Node.js <20 - Info Disclosure
CVSS 5.3
CVE-2023-4777 LOW
Qualys Container Scanning Connector - Incorrect Permission Assignment
CVSS 3.1
CVE-2023-32162 HIGH
Wacom Driver - Incorrect Permission Assignment
CVSS 7.8
CVE-2023-3915 MEDIUM
GitLab EE <16.1.5-16.3.1 - Privilege Escalation
CVSS 6.5
CVE-2023-34391 HIGH
Selinc Sel-5033 Acselerator Real-time... - Incorrect Permission Assignment
CVSS 7.4
CVE-2023-40754 HIGH
PHPJabbers Car Rental Script 3.0 - RCE
CVSS 8.8
CVE-2023-4228 LOW
ioLogik 4000 Series <v1.6 - Info Disclosure
CVSS 3.1
CVE-2023-20234 MEDIUM
Cisco FXOS Software - Privilege Escalation
CVSS 4.4
CVE-2023-20230 MEDIUM
Cisco APIC - Info Disclosure
CVSS 5.4
CVE-2023-20200 HIGH
Cisco FXOS Software - DoS
CVSS 7.7
CVE-2023-4383 HIGH
MicroWorld eScan Anti-Virus 7.0.32 - Use After Free
CVSS 7.8
CVE-2023-4332 HIGH
Broadcom RAID Controller - Info Disclosure
CVSS 7.5
CVE-2023-28658 MEDIUM
Intel oneMKL <2022.0 - Privilege Escalation
CVSS 6.7
CVE-2023-39005 HIGH
OPNsense <23.7-23.4.2 - Info Disclosure
CVSS 7.5
CVE-2023-39004 CRITICAL
OPNsense <23.7-23.4.2 - Info Disclosure
CVSS 9.8
CVE-2023-39003 HIGH
OPNsense <23.7-23.4.2 - Info Disclosure
CVSS 7.5
CVE-2023-38497 HIGH
Cargo <0.72.2 - Code Injection
CVSS 7.9
CVE-2023-38991 MEDIUM
jeesite <1.2.6 - Privilege Escalation
CVSS 5.4
CVE-2023-20216 MEDIUM
Cisco BroadWorks - Privilege Escalation
CVSS 4.4
CVE-2023-3322 HIGH
ABB Ability zenon <11.106404 - Info Disclosure
CVSS 7.0
CVE-2023-28133 HIGH
Checkpoint Endpoint Security - Incorrect Permission Assignment
CVSS 7.8
CVE-2023-35870 MEDIUM
SAP S4core - Incorrect Permission Assignment
CVSS 6.3
CVE-2023-33990 HIGH
SAP SQL Anywhere 17.0 - DoS
CVSS 7.8
CVE-2023-37237 MEDIUM
Veritas Netbackup Appliance - Incorrect Permission Assignment
CVSS 6.5
Details
Vulnerabilities 1,622
Exploit Likelihood High