CWE-732

High likelihood

Incorrect Permission Assignment for Critical Resource

Parent: CWE-285 - Improper Authorization

The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.

1,624 vulnerabilities with CWE-732
CVE-2016-4983 LOW
Dovecot - Incorrect Permission Assignment
CVSS 3.3
CVE-2016-5202 CRITICAL
Google Chrome < 54.0.2840.98 - Incorrect Permission Assignment
CVSS 9.1
CVE-2016-2121 MEDIUM
Redhat Openstack - Incorrect Permission Assignment
CVSS 4.0
CVE-2016-8637 MEDIUM
dracut <045 - Info Disclosure
CVSS 5.0
CVE-2016-9604 MEDIUM
Linux Kernel < 4.11 - Incorrect Permission Assignment
CVSS 4.4
CVE-2015-9456 MEDIUM
Orbisius Child Theme Creator < 1.2.8 - Incorrect Permission Assignment
CVSS 6.5
CVE-2014-125121 CRITICAL
Array Networks vAPV/vxAG <8.3.2.17-9.2.0.34 - Privilege Escalation
CVE-2014-0068 MEDIUM
Watchman - Info Disclosure
CVSS 5.5
CVE-2014-10402 MEDIUM
Perl Dbi < 1.643 - Incorrect Permission Assignment
CVSS 6.1
CVE-2014-10401 MEDIUM
Perl Dbi < 1.632 - Incorrect Permission Assignment
CVSS 6.1
CVE-2014-1422 MEDIUM
Ubuntu Trust Store <1.1.0+15.04.20150123 - Info Disclosure
CVSS 5.0
CVE-2013-0326 MEDIUM
Openstack Nova - Incorrect Permission Assignment
CVSS 5.5
CVE-2013-4367 HIGH
Ovirt-engine - Incorrect Permission Assignment
CVSS 7.8
CVE-2013-0887
Google Chrome <25.0.1364.97-25.0.1364.99 - Privilege Escalation
CVE-2013-0885
Google Chrome <25.0.1364.97-25.0.1364.99 - Info Disclosure
CVE-2012-10030 CRITICAL
FreeFloat FTP Server - Unauthenticated RCE
CVSS 9.8
CVE-2012-2087 CRITICAL
Ispconfig - Incorrect Permission Assignment
CVSS 9.8
CVE-2012-6655 LOW
Accountsservice - Incorrect Permission Assignment
CVSS 3.3
CVE-2012-1160 LOW
Moodle < 2.2.2 - Incorrect Permission Assignment
CVSS 2.7
CVE-2012-0433 LOW
crowbar <2012-10-02 - Info Disclosure
CVSS 3.3
CVE-2011-4912 MEDIUM
Joomla! < 1.5.13 - Incorrect Permission Assignment
CVSS 5.3
CVE-2011-2515 MEDIUM
Packagekit - Incorrect Permission Assignment
CVSS 5.3
CVE-2011-3923 CRITICAL
Apache Struts <2.3.1.2 - Command Injection
CVSS 9.8
CVE-2011-4339
OpenIPMI - Local Privilege Escalation
CVE-2010-0747 HIGH
drbd8 - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 1,624
Exploit Likelihood High