CWE-732

High likelihood

Incorrect Permission Assignment for Critical Resource

Parent: CWE-285 - Improper Authorization

The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.

1,622 vulnerabilities with CWE-732
CVE-2025-41664 HIGH
Service Runtime - Privilege Escalation
CVSS 7.5
CVE-2025-58372 HIGH
Roo Code <3.25.23 - Command Injection
CVSS 8.1
CVE-2025-10059 MEDIUM
Mongodb < 6.0.24 - Incorrect Permission Assignment
CVSS 6.5
CVE-2025-23258 HIGH
NVIDIA DOCA - Privilege Escalation
CVSS 7.3
CVE-2025-23257 HIGH
NVIDIA DOCA - Privilege Escalation
CVSS 7.3
CVE-2025-36193 HIGH
IBM Transformation Advisor < 4.3.2 - Incorrect Permission Assignment
CVSS 8.4
CVE-2025-43268 HIGH
macOS Sequoia <15.6 - Privilege Escalation
CVSS 7.8
CVE-2025-9578 HIGH
Acronis Cyber Protect Cloud Agent <40734 - Privilege Escalation
CVSS 7.8
CVE-2025-53396 HIGH
SS1 <16.0.0.10 - Privilege Escalation
CVSS 7.0
CVE-2025-43729 HIGH
Dell Thinos < 2508 - Incorrect Permission Assignment
CVSS 7.8
CVE-2025-30063 CRITICAL
Product - Info Disclosure
CVE-2025-0093 HIGH
AdapterService - Info Disclosure
CVSS 7.5
CVE-2025-4609 CRITICAL
Google Chrome <136.0.7103.113 - Sandbox Escape
CVSS 9.6
CVE-2025-43759 LOW
Liferay Digital Experience Platform - Incorrect Permission Assignment
CVSS 2.7
CVE-2025-52094 HIGH
PDQ Smart Deploy < 3.0.2046 - Incorrect Permission Assignment
CVSS 7.8
CVE-2025-38742 MEDIUM
Dell Emc Idrac Service Module - Incorrect Permission Assignment
CVSS 5.3
CVE-2025-55524 HIGH
Agent-Zero <0.8.* - Privilege Escalation
CVSS 7.3
CVE-2025-27216 HIGH
UISP Application - Privilege Escalation
CVSS 8.8
CVE-2025-1139 MEDIUM
IBM Edge Application Manager - Incorrect Permission Assignment
CVSS 6.1
CVE-2025-8042 CRITICAL
Mozilla Firefox < 141.0 - Incorrect Permission Assignment
CVSS 9.8
CVE-2025-5819 MEDIUM
GitLab CE/EE <18.0.6-18.2.2 - Info Disclosure
CVSS 5.0
CVE-2025-50675 HIGH
GPMAW 14 - Info Disclosure
CVSS 7.8
CVE-2025-54618 MEDIUM
Distributed Clipboard Module - Info Disclosure
CVSS 5.7
CVE-2025-46093 CRITICAL
Liquidfiles < 4.1.2 - Incorrect Permission Assignment
CVSS 9.9
CVE-2025-41659 HIGH
CODESYS Control - Info Disclosure
CVSS 8.3
Details
Vulnerabilities 1,622
Exploit Likelihood High