CWE-732— Incorrect Permission Assignment for Critical Resource
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.— MITRE CWE catalog
1,885 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-732page 16 of 38
- CVE-2020-22474MEDIUMCVSS 6.5EG 6.52021-02-22
In webERP 4.15, the ManualContents.php file allows users to specify the "Language" parameter, which can lead to local file inclusion.
- CVE-2020-23834HIGHCVSS 8.8EG 8.82020-09-04
Insecure Service File Permissions in the bd service in Real Time Logic BarracudaDrive v6.5 allow local attackers to escalate privileges to admin by replacing the %SYSTEMDRIVE%\bd\bd.exe file. When the computer next starts, the new bd.exe w…
- CVE-2020-24028HIGHCVSS 8.8EG 8.82020-09-02
ForLogic Qualiex v1 and v3 allows any authenticated customer to achieve privilege escalation via user creations, password changes, or user permission updates. NOTE: as of 2025-10-14, the Supplier's perspective is that this "does not allow …
- CVE-2020-24263HIGHCVSS 8.8EG 8.82021-03-16
Portainer 1.24.1 and earlier is affected by an insecure permissions vulnerability that may lead to remote arbitrary code execution. A non-admin user is allowed to spawn new containers with critical capabilities such as SYS_MODULE, which ca…
- CVE-2020-24330HIGHCVSS 7.8EG 7.82020-08-13
An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges instead of by the tss user, it fails to drop the root gid privilege when no longer needed.
- CVE-2020-24331HIGHCVSS 7.8EG 7.82020-08-13
An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges, the tss user still has read and write access to the /etc/tcsd.conf file (which contains various settings related to this daemon).
- CVE-2020-24355CRITICALCVSS 9.8EG 9.82020-09-02
Zyxel VMG5313-B30B router on firmware 5.13(ABCJ.6)b3_1127, and possibly older versions of firmware are affected by insecure permissions which allows regular and other users to create new users with elevated privileges. This is done by chan…
- CVE-2020-24367HIGHCVSS 7.8EG 7.82020-11-10
Incorrect file permissions in BlueStacks 4 through 4.230 on Windows allow a local attacker to escalate privileges by modifying a file that is later executed by a higher-privileged user.
- CVE-2020-24394HIGHCVSS 7.1EG 7.12020-08-19
In the Linux kernel before 5.7.8, fs/nfsd/vfs.c (in the NFS server) can set incorrect permissions on new filesystem objects when the filesystem lacks ACL support, aka CID-22cf8419f131. This occurs because the current umask is not considere…
- CVE-2020-24525HIGHCVSS 7.8EG 7.82020-11-12
Insecure inherited permissions in firmware update tool for some Intel(R) NUCs may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2020-24578MEDIUMCVSS 6.5EG 6.52020-12-22
An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. It has a misconfigured FTP service that allows a malicious network user to access system folders and download sensitive files (such as the pass…
- CVE-2020-24681HIGHCVSS 8.2EG 8.22024-02-02
Incorrect Permission Assignment for Critical Resource vulnerability in B&R Industrial Automation Automation Studio allows Privilege Escalation.This issue affects Automation Studio: from 4.6.0 through 4.6.X, from 4.7.0 before 4.7.7 SP, from…
- CVE-2020-24716HIGHCVSS 7.8EG 7.82020-08-27
OpenZFS before 2.0.0-rc1, when used on FreeBSD, allows execute permissions for all directories.
- CVE-2020-25011CRITICALCVSS 9.8EG 9.82020-12-17
A sensitive information disclosure vulnerability in Kyland KPS2204 6 Port Managed Din-Rail Programmable Serial Device Servers Software Version:R0002.P05 allows remote attackers to get username and password by request /cgi-bin/webadminget.c…
- CVE-2020-25191HIGHCVSS 7.5EG 7.52020-12-11
Incorrect permissions are set by default for an API entry-point of a specific service, allowing a non-authenticated user to trigger a function that could reboot the CompactRIO (Driver versions prior to 20.5) remotely.
- CVE-2020-25284MEDIUMCVSS 4.1EG 4.12020-09-13
The rbd block device driver in drivers/block/rbd.c in the Linux kernel through 5.8.9 used incomplete permission checking for access to rbd devices, which could be leveraged by local attackers to map or unmap rbd block devices, aka CID-f44d…
- CVE-2020-25507HIGHCVSS 7.8EG 7.82020-12-28
An incorrect permission assignment during the installation script of TeamworkCloud 18.0 thru 19.0 allows a local unprivileged attacker to execute arbitrary code as root. During installation, the user is instructed to set the system envirom…
- CVE-2020-25564HIGHCVSS 8.8EG 8.82021-08-11
In SapphireIMS 5.0, it is possible to create local administrator on any client with credentials of a non-privileged user by directly accessing RemoteMgmtTaskSave (Automation Tasks) feature.
- CVE-2020-25718HIGHCVSS 8.8EG 8.82022-02-18
A flaw was found in the way samba, as an Active Directory Domain Controller, is able to support an RODC (read-only domain controller). This would allow an RODC to print administrator tickets.
- CVE-2020-25826HIGHCVSS 7.8EG 7.82020-09-23
PingID Integration for Windows Login before 2.4.2 allows local users to gain privileges by modifying CefSharp.BrowserSubprocess.exe.
- CVE-2020-26106HIGHCVSS 7.5EG 7.52020-09-25
cPanel before 88.0.3 has weak permissions (world readable) for the proxy subdomains log file (SEC-558).
- CVE-2020-26130HIGHCVSS 7.8EG 7.82020-10-28
Issues were discovered in Open TFTP Server multithreaded 1.66 and Open TFTP Server single port 1.66. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the OpenTFT…
- CVE-2020-26131HIGHCVSS 7.8EG 7.82020-10-28
Issues were discovered in Open DHCP Server (Regular) 1.75 and Open DHCP Server (LDAP Based) 0.1Beta. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the OpenDHC…
- CVE-2020-26132HIGHCVSS 7.8EG 7.82020-10-28
An issue was discovered in Home DNS Server 0.10. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the HomeDNSServer.exe binary.
- CVE-2020-26133HIGHCVSS 7.8EG 7.82020-10-28
An issue was discovered in Dual DHCP DNS Server 7.40. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the DualServer.exe binary.
- CVE-2020-26155HIGHCVSS 7.8EG 7.82021-03-18
Multiple files and folders in Utimaco SecurityServer 4.20.0.4 and 4.31.1.0. are installed with Read/Write permissions for authenticated users, which allows for binaries to be manipulated by non-administrator users. Additionally, entries ar…
- CVE-2020-26171MEDIUMCVSS 4.3EG 4.32020-12-18
In tangro Business Workflow before 1.18.1, the documentId of attachment uploads to /api/document/attachments/upload can be manipulated. By doing this, users can add attachments to workitems that do not belong to them.
- CVE-2020-26175MEDIUMCVSS 6.5EG 6.52020-12-18
In tangro Business Workflow before 1.18.1, an attacker can manipulate the value of PERSON in requests to /api/profile in order to change profile information of other users.
- CVE-2020-26177MEDIUMCVSS 4.3EG 4.32020-12-18
In tangro Business Workflow before 1.18.1, a user's profile contains some items that are greyed out and thus are not intended to be edited by regular users. However, this restriction is only applied client-side. Manipulating any of the gre…
- CVE-2020-26194HIGHCVSS 7.0EG 7.02021-02-09
Dell EMC PowerScale OneFS versions 8.1.2 and 8.2.2 contain an Incorrect Permission Assignment for a Critical Resource vulnerability. This may allow a non-admin user with either ISI_PRIV_LOGIN_CONSOLE or ISI_PRIV_LOGIN_SSH privileges to exp…
- CVE-2020-26196MEDIUMCVSS 5.5EG 5.52021-02-09
Dell EMC PowerScale OneFS versions 8.1.0-9.1.0 contain a Backup/Restore Privilege implementation issue. A user with the BackupAdmin role may potentially exploit this vulnerability resulting in the ability to write data outside of the inten…
- CVE-2020-26932MEDIUMCVSS 4.3EG 4.32020-10-10
debian/sympa.postinst for the Debian Sympa package before 6.2.40~dfsg-7 uses mode 4755 for sympa_newaliases-wrapper, whereas the intended permissions are mode 4750 (for access by the sympa group)
- CVE-2020-27034MEDIUMCVSS 5.5EG 5.52020-12-15
In createSimSelectNotification of SimSelectNotification.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is …
- CVE-2020-27041MEDIUMCVSS 5.5EG 5.52020-12-15
In showProvisioningNotification of ConnectivityService.java, there is an unsafe PendingIntent. This could lead to local information disclosure of notification data with no additional execution privileges needed. User interaction is not nee…
- CVE-2020-27097MEDIUMCVSS 5.5EG 5.52021-01-26
In checkGrantUriPermission of UriGrantsManagerService.java, there is a possible permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploita…
- CVE-2020-27098MEDIUMCVSS 5.5EG 5.52021-01-26
In checkGrantUriPermission of UriGrantsManagerService.java, there is a possible way to access contacts due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User intera…
- CVE-2020-27568HIGHCVSS 7.5EG 7.52021-04-21
Insecure File Permissions exist in Aviatrix Controller 5.3.1516. Several world writable files and directories were found in the controller resource. Note: All Aviatrix appliances are fully encrypted. This is an extra layer of security.
- CVE-2020-27658HIGHCVSS 7.1EG 7.12020-10-29
Synology Router Manager (SRM) before 1.2.4-8081 does not include the HTTPOnly flag in a Set-Cookie header for the session cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to t…
- CVE-2020-27836CRITICALCVSS 9.8EG 9.82022-08-22
A flaw was found in cluster-ingress-operator. A change to how the router-default service allows only certain IP source ranges could allow an attacker to access resources that would otherwise be restricted to specified IP ranges. The highes…
- CVE-2020-27958MEDIUMCVSS 4.3EG 4.32022-02-26
The Job Composer app in Ohio Supercomputer Center Open OnDemand before 1.7.19 and 1.8.x before 1.8.18 allows remote authenticated users to provide crafted input in a job template.
- CVE-2020-27992HIGHCVSS 7.8EG 7.82020-11-02
Dr.Fone 3.0.0 allows local users to gain privileges via a Trojan horse DriverInstall.exe because %PROGRAMFILES(X86)%\Wondershare\dr.fone\Library\DriverInstaller has Full Control for BUILTIN\Users.
- CVE-2020-28055HIGHCVSS 7.8EG 7.82020-11-10
A vulnerability in the TCL Android Smart TV series V8-R851T02-LF1 V295 and below and V8-T658T01-LF1 V373 and below by TCL Technology Group Corporation allows a local unprivileged attacker, such as a malicious App, to read & write to the /d…
- CVE-2020-28169HIGHCVSS 7.0EG 7.02020-12-24
The td-agent-builder plugin before 2020-12-18 for Fluentd allows attackers to gain privileges because the bin directory is writable by a user account, but a file in bin is executed as NT AUTHORITY\SYSTEM.
- CVE-2020-28482MEDIUMCVSS 5.9EG 5.92021-01-19
This affects the package fastify-csrf before 3.0.0. 1. The generated cookie used insecure defaults, and did not have the httpOnly flag on: cookieOpts: { path: '/', sameSite: true } 2. The CSRF token was available in the GET query parameter
- CVE-2020-28909HIGHCVSS 8.8EG 8.82021-05-24
Incorrect File Permissions in Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation to root via modification of scripts. Low-privileges users are able to modify files that can be executed by sudo.
- CVE-2020-28910CRITICALCVSS 9.8EG 9.82021-05-24
Creation of a Temporary Directory with Insecure Permissions in Nagios XI 5.7.5 and earlier allows for Privilege Escalation via creation of symlinks, which are mishandled in getprofile.sh.
- CVE-2020-28914HIGHCVSS 7.1EG 7.12020-11-17
An improper file permissions vulnerability affects Kata Containers prior to 1.11.5. When using a Kubernetes hostPath volume and mounting either a file or directory into a container as readonly, the file/directory is mounted as readOnly ins…
- CVE-2020-28953MEDIUMCVSS 4.3EG 4.32020-11-19
In BigBlueButton before 2.2.29, a user can vote more than once in a single poll.
- CVE-2020-29074HIGHCVSS 8.8EG 8.82020-11-25
scan.c in x11vnc 0.9.16 uses IPC_CREAT|0777 in shmget calls, which allows access by actors other than the current user.
- CVE-2020-29479HIGHCVSS 8.8EG 8.82020-12-15
An issue was discovered in Xen through 4.14.x. In the Ocaml xenstored implementation, the internal representation of the tree has special cases for the root node, because this node has no parent. Unfortunately, permissions were not checked…
Map vulnerabilities like CWE-732 to your infrastructure
EchelonGraph correlates every CVE — across CWE-732 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →