CWE-732
High likelihoodIncorrect Permission Assignment for Critical Resource
Parent: CWE-285 - Improper Authorization
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.
1,624 vulnerabilities with CWE-732
CVE-2017-16754
MEDIUM
Bolt <3.3.6 - Info Disclosure
CVSS 5.3
CVE-2017-16757
HIGH
Hola VPN 1.34 - Privilege Escalation
CVSS 7.8
CVE-2017-16659
HIGH
Gentoo mail-filter/assp <1.9.8.13030 - Privilege Escalation
CVSS 7.8
CVE-2017-16638
CRITICAL
Gentoo net-misc/vde <2.3.2-r4 - Privilege Escalation
CVSS 9.8
CVE-2017-1000153
CRITICAL
Mahara <15.04.10-16.04.4 - Info Disclosure
CVSS 9.8
CVE-2017-1000134
HIGH
Mahara <1.8.6, <1.9.4, <1.10.1, <15.04.0 - Info Disclosure
CVSS 8.1
CVE-2017-15945
HIGH
Mariadb < 10.0.30 - Incorrect Permission Assignment
CVSS 7.8
CVE-2017-5118
MEDIUM
Google Chrome <61.0.3163.79-61.0.3163.81 - XSS
CVSS 4.3
CVE-2017-15906
MEDIUM
Openbsd Openssh < 7.6 - Incorrect Permission Assignment
CVSS 5.3
CVE-2017-7146
MEDIUM
Apple <11 - Info Disclosure
CVSS 5.3
CVE-2017-15611
MEDIUM
Octopus Deploy < 3.17.6 - Incorrect Permission Assignment
CVSS 6.5
CVE-2017-9514
HIGH
Bamboo <6.0.5, <6.1.x-6.1.4, <6.2.x-6.2.1 - Code Injection
CVSS 8.8
CVE-2017-1000096
HIGH
Jenkins - RCE
CVSS 8.8
CVE-2017-1000095
MEDIUM
Groovy - Info Disclosure
CVSS 6.5
CVE-2017-9792
MEDIUM
Apache Impala <2.10.0 - Privilege Escalation
CVSS 6.5
CVE-2017-9958
HIGH
Schneider-electric U.motion Builder - Incorrect Permission Assignment
CVSS 7.8
CVE-2017-14730
HIGH
Gentoo logstash-bin <5.5.3-5.6.1 - Privilege Escalation
CVSS 7.8
CVE-2017-13779
HIGH
Gstn India Goods And Services Tax Net... - Incorrect Permission Assignment
CVSS 7.8
CVE-2017-7560
MEDIUM
RHEL - DoS
CVSS 5.5
CVE-2017-0784
HIGH
Android <7.1.2 - Privilege Escalation
CVSS 8.8
CVE-2017-0752
HIGH
Android <7.1.2 - Privilege Escalation
CVSS 7.8
CVE-2017-12713
HIGH
Advantech Webaccess < 8.2 - Incorrect Permission Assignment
CVSS 7.8
CVE-2017-12816
CRITICAL
Kaspersky Internet Security - Incorrect Permission Assignment
CVSS 9.8
CVE-2017-11653
HIGH
Razer Synapse <2.20.15.1104 - Privilege Escalation
CVSS 7.8
CVE-2017-11652
HIGH
Razer Synapse <2.20.15.1104 - Privilege Escalation
CVSS 8.4
Details
Vulnerabilities
1,624
Exploit Likelihood
High