CWE-732

High likelihood

Incorrect Permission Assignment for Critical Resource

Parent: CWE-285 - Improper Authorization

The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.

1,624 vulnerabilities with CWE-732
CVE-2017-16754 MEDIUM
Bolt <3.3.6 - Info Disclosure
CVSS 5.3
CVE-2017-16757 HIGH
Hola VPN 1.34 - Privilege Escalation
CVSS 7.8
CVE-2017-16659 HIGH
Gentoo mail-filter/assp <1.9.8.13030 - Privilege Escalation
CVSS 7.8
CVE-2017-16638 CRITICAL
Gentoo net-misc/vde <2.3.2-r4 - Privilege Escalation
CVSS 9.8
CVE-2017-1000153 CRITICAL
Mahara <15.04.10-16.04.4 - Info Disclosure
CVSS 9.8
CVE-2017-1000134 HIGH
Mahara <1.8.6, <1.9.4, <1.10.1, <15.04.0 - Info Disclosure
CVSS 8.1
CVE-2017-15945 HIGH
Mariadb < 10.0.30 - Incorrect Permission Assignment
CVSS 7.8
CVE-2017-5118 MEDIUM
Google Chrome <61.0.3163.79-61.0.3163.81 - XSS
CVSS 4.3
CVE-2017-15906 MEDIUM
Openbsd Openssh < 7.6 - Incorrect Permission Assignment
CVSS 5.3
CVE-2017-7146 MEDIUM
Apple <11 - Info Disclosure
CVSS 5.3
CVE-2017-15611 MEDIUM
Octopus Deploy < 3.17.6 - Incorrect Permission Assignment
CVSS 6.5
CVE-2017-9514 HIGH
Bamboo <6.0.5, <6.1.x-6.1.4, <6.2.x-6.2.1 - Code Injection
CVSS 8.8
CVE-2017-1000096 HIGH
Jenkins - RCE
CVSS 8.8
CVE-2017-1000095 MEDIUM
Groovy - Info Disclosure
CVSS 6.5
CVE-2017-9792 MEDIUM
Apache Impala <2.10.0 - Privilege Escalation
CVSS 6.5
CVE-2017-9958 HIGH
Schneider-electric U.motion Builder - Incorrect Permission Assignment
CVSS 7.8
CVE-2017-14730 HIGH
Gentoo logstash-bin <5.5.3-5.6.1 - Privilege Escalation
CVSS 7.8
CVE-2017-13779 HIGH
Gstn India Goods And Services Tax Net... - Incorrect Permission Assignment
CVSS 7.8
CVE-2017-7560 MEDIUM
RHEL - DoS
CVSS 5.5
CVE-2017-0784 HIGH
Android <7.1.2 - Privilege Escalation
CVSS 8.8
CVE-2017-0752 HIGH
Android <7.1.2 - Privilege Escalation
CVSS 7.8
CVE-2017-12713 HIGH
Advantech Webaccess < 8.2 - Incorrect Permission Assignment
CVSS 7.8
CVE-2017-12816 CRITICAL
Kaspersky Internet Security - Incorrect Permission Assignment
CVSS 9.8
CVE-2017-11653 HIGH
Razer Synapse <2.20.15.1104 - Privilege Escalation
CVSS 7.8
CVE-2017-11652 HIGH
Razer Synapse <2.20.15.1104 - Privilege Escalation
CVSS 8.4
Details
Vulnerabilities 1,624
Exploit Likelihood High