CWE-732
High likelihoodIncorrect Permission Assignment for Critical Resource
Parent: CWE-285 - Improper Authorization
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.
1,622 vulnerabilities with CWE-732
CVE-2023-40622
CRITICAL
SAP BusinessObjects <430 - Info Disclosure
CVSS 9.9
CVE-2023-32005
MEDIUM
Node.js <20 - Info Disclosure
CVSS 5.3
CVE-2023-4777
LOW
Qualys Container Scanning Connector - Incorrect Permission Assignment
CVSS 3.1
CVE-2023-32162
HIGH
Wacom Driver - Incorrect Permission Assignment
CVSS 7.8
CVE-2023-3915
MEDIUM
GitLab EE <16.1.5-16.3.1 - Privilege Escalation
CVSS 6.5
CVE-2023-34391
HIGH
Selinc Sel-5033 Acselerator Real-time... - Incorrect Permission Assignment
CVSS 7.4
CVE-2023-40754
HIGH
PHPJabbers Car Rental Script 3.0 - RCE
CVSS 8.8
CVE-2023-4228
LOW
ioLogik 4000 Series <v1.6 - Info Disclosure
CVSS 3.1
CVE-2023-20234
MEDIUM
Cisco FXOS Software - Privilege Escalation
CVSS 4.4
CVE-2023-20230
MEDIUM
Cisco APIC - Info Disclosure
CVSS 5.4
CVE-2023-20200
HIGH
Cisco FXOS Software - DoS
CVSS 7.7
CVE-2023-4383
HIGH
MicroWorld eScan Anti-Virus 7.0.32 - Use After Free
CVSS 7.8
CVE-2023-4332
HIGH
Broadcom RAID Controller - Info Disclosure
CVSS 7.5
CVE-2023-28658
MEDIUM
Intel oneMKL <2022.0 - Privilege Escalation
CVSS 6.7
CVE-2023-39005
HIGH
OPNsense <23.7-23.4.2 - Info Disclosure
CVSS 7.5
CVE-2023-39004
CRITICAL
OPNsense <23.7-23.4.2 - Info Disclosure
CVSS 9.8
CVE-2023-39003
HIGH
OPNsense <23.7-23.4.2 - Info Disclosure
CVSS 7.5
CVE-2023-38497
HIGH
Cargo <0.72.2 - Code Injection
CVSS 7.9
CVE-2023-38991
MEDIUM
jeesite <1.2.6 - Privilege Escalation
CVSS 5.4
CVE-2023-20216
MEDIUM
Cisco BroadWorks - Privilege Escalation
CVSS 4.4
CVE-2023-3322
HIGH
ABB Ability zenon <11.106404 - Info Disclosure
CVSS 7.0
CVE-2023-28133
HIGH
Checkpoint Endpoint Security - Incorrect Permission Assignment
CVSS 7.8
CVE-2023-35870
MEDIUM
SAP S4core - Incorrect Permission Assignment
CVSS 6.3
CVE-2023-33990
HIGH
SAP SQL Anywhere 17.0 - DoS
CVSS 7.8
CVE-2023-37237
MEDIUM
Veritas Netbackup Appliance - Incorrect Permission Assignment
CVSS 6.5
Details
Vulnerabilities
1,622
Exploit Likelihood
High