CWE-732— Incorrect Permission Assignment for Critical Resource
1,703 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-732page 1 of 35
- CVE-2001-0006HIGHCVSS 7.1EG 7.12001-02-12
The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allows local users to modify the permissions to "No Access" and disable Winsock network connectivity to cause a denial of s…
- CVE-2004-1714HIGHCVSS 7.1EG 7.12004-08-11
BlackICE PC Protection and Server Protection installs (1) firewall.ini, (2) blackice.ini, (3) sigs.ini and (4) protect.ini with Everyone Full Control permissions, which allows local users to cause a denial of service (crash) or modify conf…
- CVE-2005-4868HIGHCVSS 7.1EG 7.12005-12-31
Shared memory sections and events in IBM DB2 8.1 have default permissions of read and write for the Everyone group, which allows local users to gain unauthorized access, gain sensitive information, such as cleartext passwords, and cause a …
- CVE-2007-5544HIGHCVSS 7.8EG 7.82007-10-29
IBM Lotus Notes before 6.5.6, and 7.x before 7.0.3; and Domino before 6.5.5 FP3, and 7.x before 7.0.2 FP1; uses weak permissions (Everyone:Full Control) for memory mapped files (shared memory) in IPC, which allows local users to obtain sen…
- CVE-2007-5743HIGHCVSS 7.5EG 7.52019-11-07
viewvc 1.0.3 allows improper access control to files in a repository when using the "forbidden" configuration option.
- CVE-2007-6033HIGHCVSS 8.8EG 8.82007-11-20
Invensys Wonderware InTouch 8.0 creates a NetDDE share with insecure permissions (Everyone/Full Control), which allows remote authenticated attackers, and possibly anonymous users, to execute arbitrary programs.
- CVE-2008-0322HIGHCVSS 7.8EG 7.82008-05-13
The I2O Utility Filter driver (i2omgmt.sys) 5.1.2600.2180 for Microsoft Windows XP sets Everyone/Write permissions for the "\\.\I2OExc" device interface, which allows local users to gain privileges. NOTE: this issue can be leveraged to ov…
- CVE-2008-0662HIGHCVSS 7.8EG 7.82008-02-08
The Auto Local Logon feature in Check Point VPN-1 SecuRemote/SecureClient NGX R60 and R56 for Windows caches credentials under the Checkpoint\SecuRemote registry key, which has Everyone/Full Control permissions, which allows local users to…
- CVE-2008-0884NONECVSS 0.0EG 0.02008-04-04
The Replace function in the capp-lspp-config script in the (1) lspp-eal4-config-ibm and (2) capp-lspp-eal4-config-hp packages before 0.65-2 in Red Hat Enterprise Linux (RHEL) 5 uses lstat instead of stat to determine the /etc/pam.d/system-…
- CVE-2008-3789NONECVSS 0.0EG 0.02008-08-27
Samba 3.2.0 uses weak permissions (0666) for the (1) group_mapping.tdb and (2) group_mapping.ldb files, which allows local users to modify the membership of Unix groups.
- CVE-2008-4870NONECVSS 0.0EG 0.02008-11-01
dovecot 1.0.7 in Red Hat Enterprise Linux (RHEL) 5, and possibly Fedora, uses world-readable permissions for dovecot.conf, which allows local users to obtain the ssl_key_password parameter value.
- CVE-2009-0115HIGHCVSS 7.8EG 7.82009-03-30
The Device Mapper multipathing driver (aka multipath-tools or device-mapper-multipath) 0.4.8, as used in SUSE openSUSE, SUSE Linux Enterprise Server (SLES), Fedora, and possibly other operating systems, uses world-writable permissions for …
- CVE-2009-0141MEDIUMCVSS 5.5EG 5.52009-02-13
XTerm in Apple Mac OS X 10.4.11 and 10.5.6, when used with luit, creates tty devices with insecure world-writable permissions, which allows local users to write to the Xterm of another user.
- CVE-2009-1073MEDIUMCVSS 5.5EG 5.52009-03-31
nss-ldapd before 0.6.8 uses world-readable permissions for the /etc/nss-ldapd.conf file, which allows local users to obtain a cleartext password for the LDAP server by reading the bindpw field.
- CVE-2009-2948NONECVSS 0.0EG 0.02009-10-07
mount.cifs in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8 and 3.4 before 3.4.2, when mount.cifs is installed suid root, does not properly enforce permissions, which allows local users to read part of the credentials file a…
- CVE-2009-3289HIGHCVSS 7.8EG 7.82009-09-22
The g_file_copy function in glib 2.0 sets the permissions of a target file to the permissions of a symbolic link (777), which allows user-assisted local users to modify files of other users, as demonstrated by using Nautilus to modify the …
- CVE-2009-3482HIGHCVSS 7.8EG 7.82009-09-30
TrustPort Antivirus before 2.8.0.2266 and PC Security before 2.0.0.1291 use weak permissions (Everyone: Full Control) for files under %PROGRAMFILES%, which allows local users to gain privileges by replacing executables with Trojan horse pr…
- CVE-2009-3489HIGHCVSS 7.8EG 7.82009-09-30
Adobe Photoshop Elements 8.0 installs the Adobe Active File Monitor V8 service with an insecure security descriptor, which allows local users to (1) stop the service via the stop command, (2) execute arbitrary commands as SYSTEM by using t…
- CVE-2009-3611HIGHCVSS 7.1EG 7.12009-10-26
common/snapshots.py in Back In Time (aka backintime) 0.9.26 changes certain permissions to 0777 before deleting the files in an old backup snapshot, which allows local users to obtain sensitive information by reading these files, or interf…
- CVE-2009-3897MEDIUMCVSS 5.5EG 5.52009-11-24
Dovecot 1.2.x before 1.2.8 sets 0777 permissions during creation of certain directories at installation time, which allows local users to access arbitrary user accounts by replacing the auth socket, related to the parent directories of the…
- CVE-2009-3939HIGHCVSS 7.1EG 7.12009-11-16
The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file.
- CVE-2010-0488MEDIUMCVSS 6.5EG 6.52010-03-31
Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 does not properly handle unspecified "encoding strings," which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted web site, aka "Pos…
- CVE-2010-0737HIGHCVSS 8.0EG 8.02019-10-30
A missing permission check was found in The CLI in JBoss Operations Network before 2.3.1 does not properly check permissions, which allows JBoss ON users to perform management tasks and configuration changes with the privileges of the admi…
- CVE-2010-0747HIGHCVSS 7.8EG 7.82019-10-30
drbd8 allows local users to bypass intended restrictions for certain actions via netlink packets, similar to CVE-2009-3725.
- CVE-2010-2116NONECVSS 0.0EG 0.02010-05-28
The web interface in McAfee Email Gateway (formerly IronMail) 6.7.1 allows remote authenticated users, with only Read privileges, to gain Write privileges to modify configuration via the save action in a direct request to admin/systemWebAd…
- CVE-2011-2515MEDIUMCVSS 5.3EG 5.32019-11-27
PackageKit 0.6.17 allows installation of unsigned RPM packages as though they were signed which may allow installation of non-trusted packages and execution of arbitrary code.
- CVE-2011-3923CRITICALCVSS 9.8EG 9.82019-11-01
Apache Struts before 2.3.1.2 allows remote attackers to bypass security protections in the ParameterInterceptor class and execute arbitrary commands.
- CVE-2011-4339NONECVSS 0.0EG 0.02011-12-15
ipmievd (aka the IPMI event daemon) in OpenIPMI, as used in the ipmitool package 1.8.11 in Red Hat Enterprise Linux (RHEL) 6, Debian GNU/Linux, Fedora 16, and other products uses 0666 permissions for its ipmievd.pid PID file, which allows …
- CVE-2011-4912MEDIUMCVSS 5.3EG 5.32020-02-04
Joomla! com_mailto 1.5.x through 1.5.13 has an automated mail timeout bypass.
- CVE-2012-0433LOWCVSS 3.3EG 5.52018-06-08
The install-chef-suse.sh script shipped with crowbar before 2012-10-02 is creating files containing confidential data with insecure permissions, allowing local users to read confidential data.
- CVE-2012-10030CRITICALCVSS 9.8EG 9.82025-08-05
FreeFloat FTP Server contains multiple critical design flaws that allow unauthenticated remote attackers to upload arbitrary files to sensitive system directories. The server accepts empty credentials, defaults user access to the root of t…
- CVE-2012-1160LOWCVSS 2.7EG 2.72019-11-14
Moodle before 2.2.2 has a permission issue in Forum Subscriptions where unenrolled users can subscribe/unsubscribe via mod/forum/index.php
- CVE-2012-2087CRITICALCVSS 9.8EG 9.82020-01-23
ISPConfig 3.0.4.3: the "Add new Webdav user" can chmod and chown entire server from client interface.
- CVE-2012-6655LOWCVSS 3.3EG 3.32019-11-27
An issue exists AccountService 0.6.37 in the user_change_password_authorized_cb() function in user.c which could let a local users obtain encrypted passwords.
- CVE-2013-0326MEDIUMCVSS 5.5EG 5.52019-12-05
OpenStack nova base images permissions are world readable
- CVE-2013-0885NONECVSS 0.0EG 0.02013-02-23
Google Chrome before 25.0.1364.97 on Windows and Linux, and before 25.0.1364.99 on Mac OS X, does not properly restrict API privileges during interaction with the Chrome Web Store, which has unspecified impact and attack vectors.
- CVE-2013-0887NONECVSS 0.0EG 0.02013-02-23
The developer-tools process in Google Chrome before 25.0.1364.97 on Windows and Linux, and before 25.0.1364.99 on Mac OS X, does not properly restrict privileges during interaction with a connected server, which has unspecified impact and …
- CVE-2013-4367HIGHCVSS 7.8EG 7.82019-11-01
ovirt-engine 3.2 running on Linux kernel 3.1 and newer creates certain files world-writeable due to an upstream kernel change which impacted how python's os.chmod() works when passed a mode of '-1'.
- CVE-2014-0068MEDIUMCVSS 5.5EG 5.52022-06-30
It was reported that watchman in openshift node-utils creates /var/run/watchman.pid and /var/log/watchman.ouput with world writable permission.
- CVE-2014-10401MEDIUMCVSS 6.1EG 6.12020-09-11
An issue was discovered in the DBI module before 1.632 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute.
- CVE-2014-10402MEDIUMCVSS 6.1EG 6.12020-09-16
An issue was discovered in the DBI module through 1.643 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute in the data source name (DSN). NOTE: this issue exists because of …
- CVE-2014-125121CRITICALCVSS 10.0EG 0.02025-07-31
Array Networks vAPV (version 8.3.2.17) and vxAG (version 9.2.0.34) appliances are affected by a privilege escalation vulnerability caused by a combination of hardcoded SSH credentials (or SSH private key) and insecure permissions on a star…
- CVE-2014-1422MEDIUMCVSS 5.0EG 5.02020-07-22
In Ubuntu's trust-store, if a user revokes location access from an application, the location is still available to the application because the application will honour incorrect, cached permissions. This is because the cache was not ordered…
- CVE-2015-9456MEDIUMCVSS 6.5EG 6.52019-10-07
The orbisius-child-theme-creator plugin before 1.2.8 for WordPress has incorrect access control for file modification via the wp-admin/admin-ajax.php?action=orbisius_ctc_theme_editor_ajax&sub_cmd=save_file theme_1, theme_1_file, or theme_1…
- CVE-2016-11062MEDIUMCVSS 5.3EG 5.32020-06-19
An issue was discovered in Mattermost Server before 3.5.1. E-mail address verification can be bypassed.
- CVE-2016-11065MEDIUMCVSS 4.3EG 4.32020-06-19
An issue was discovered in Mattermost Server before 3.3.0. An attacker could use the WebSocket feature to send pop-up messages to users or change a post's appearance.
- CVE-2016-11077LOWCVSS 2.7EG 2.72020-06-19
An issue was discovered in Mattermost Server before 3.0.0. It has a superfluous API in which the System Admin can change the account name and e-mail address of an LDAP account.
- CVE-2016-11080MEDIUMCVSS 4.3EG 4.32020-06-19
An issue was discovered in Mattermost Server before 3.0.0. It offers superfluous APIs for a Team Administrator to view account details.
- CVE-2016-2121MEDIUMCVSS 4.0EG 5.52018-10-31
A permissions flaw was found in redis, which sets weak permissions on certain files and directories that could potentially contain sensitive information. A local, unprivileged user could possibly use this flaw to access unauthorized system…
- CVE-2016-4983LOWCVSS 3.3EG 3.32019-11-05
A postinstall script in the dovecot rpm allows local users to read the contents of newly created SSL/TLS key files.
Map vulnerabilities like CWE-732 to your infrastructure
EchelonGraph correlates every CVE — across CWE-732 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →