CWE-732— Incorrect Permission Assignment for Critical Resource
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.— MITRE CWE catalog
1,885 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-732page 19 of 38
- CVE-2021-21809CRITICALCVSS 9.1EG 9.12021-06-23
A command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted series of HTTP requests can lead to command execution. An attacker must have administrator privileges to exploit this vu…
- CVE-2021-22117HIGHCVSS 7.8EG 7.82021-05-18
RabbitMQ installers on Windows prior to version 3.8.16 do not harden plugin directory permissions, potentially allowing attackers with sufficient local filesystem permissions to add arbitrary plugins.
- CVE-2021-22147MEDIUMCVSS 6.5EG 6.52021-09-15
Elasticsearch before 7.14.0 did not apply document and field level security to searchable snapshots. This could lead to an authenticated user gaining access to information that they are unauthorized to view.
- CVE-2021-22148HIGHCVSS 8.8EG 8.82021-09-15
Elastic Enterprise Search App Search versions before 7.14.0 was vulnerable to an issue where API keys were not bound to the same engines as their creator. This could lead to a less privileged user gaining access to unauthorized engines.
- CVE-2021-22149HIGHCVSS 8.8EG 8.82021-09-15
Elastic Enterprise Search App Search versions before 7.14.0 are vulnerable to an issue where API keys were missing authorization via an alternate route. Using this vulnerability, an authenticated attacker could utilize API keys belonging t…
- CVE-2021-22284HIGHCVSS 8.4EG 8.42022-02-04
Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to execute arbitrary code in the node running the AC800M OPC Server.
- CVE-2021-22566CRITICALCVSS 9.8EG 9.82022-01-18
An incorrect setting of UXN bits within mmu_flags_to_s1_pte_attr lead to privileged executable pages being mapped as executable from an unprivileged context. This can be leveraged by an attacker to bypass executability restrictions of kern…
- CVE-2021-22648CRITICALCVSS 8.8EG 9.82022-07-28
Ovarro TBox proprietary Modbus file access functions allow attackers to read, alter, or delete the configuration file.
- CVE-2021-22669HIGHCVSS 8.8EG 8.82021-04-26
Incorrect permissions are set to default on the ‘Project Management’ page of WebAccess/SCADA portal of WebAccess/SCADA Versions 9.0.1 and prior, which may allow a low-privileged user to update an administrator’s password and login as…
- CVE-2021-22716HIGHCVSS 7.8EG 7.82021-04-13
A CWE-732: Incorrect Permission Assignment for Critical Resource vulnerability exists that could allow remote code execution when an unprivileged user modifies a file. Affected Product: C-Bus Toolkit (V1.15.9 and prior)
- CVE-2021-22850CRITICALCVSS 5.3EG 9.82021-01-19
HGiga EIP product lacks ineffective access control in certain pages that allow attackers to access database or perform privileged functions.
- CVE-2021-22921HIGHCVSS 7.8EG 7.82021-07-12
Node.js before 16.4.1, 14.17.2, and 12.22.2 is vulnerable to local privilege escalation attacks under certain conditions on Windows platforms. More specifically, improper configuration of permissions in the installation directory allows an…
- CVE-2021-23021MEDIUMCVSS 5.5EG 5.52021-06-01
The Nginx Controller 3.x before 3.7.0 agent configuration file /etc/controller-agent/agent.conf is world readable with current permission bits set to 644.
- CVE-2021-23022HIGHCVSS 7.8EG 7.82021-06-10
On version 7.2.1.x before 7.2.1.3 and 7.1.x before 7.1.9.9 Update 1, the BIG-IP Edge Client Windows Installer Service's temporary folder has weak file and folder permissions. Note: Software versions which have reached End of Technical Supp…
- CVE-2021-23055MEDIUMCVSS 6.5EG 6.52022-04-21
On version 2.x before 2.0.3 and 1.x before 1.12.3, the command line restriction that controls snippet use with NGINX Ingress Controller does not apply to Ingress objects. Note: Software versions which have reached End of Technical Support …
- CVE-2021-23244HIGHCVSS 7.8EG 7.82021-12-27
ColorOS pregrant dangerous permissions to apps which are listed in a whitelist xml named default-grant-permissions.But some apps in whitelist is not installed, attacker can disguise app with the same package name to obtain dangerous permis…
- CVE-2021-23275HIGHCVSS 8.8EG 8.82021-06-29
The Windows Installation component of TIBCO Software Inc.'s TIBCO Enterprise Runtime for R - Server Edition, TIBCO Enterprise Runtime for R - Server Edition, TIBCO Enterprise Runtime for R - Server Edition, TIBCO Spotfire Analytics Platfor…
- CVE-2021-23874CRITICALCVSS 8.2EG 9.0⚠ KEV2021-02-10
Arbitrary Process Execution vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevated privileges and execute arbitrary code bypassing MTP self-defense.
- CVE-2021-24703MEDIUMCVSS 5.7EG 5.72021-11-23
The Download Plugin WordPress plugin before 1.6.1 does not have capability and CSRF checks in the dpwap_plugin_activate AJAX action, allowing any authenticated users, such as subscribers, to activate plugins that are already installed.
- CVE-2021-25250HIGHCVSS 7.8EG 7.82021-04-13
An improper access control vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Service and OfficeScan XG SP1 on a sensitive file could allow a local attacker to escalate privileges on affected installations. Please note: an at…
- CVE-2021-25253HIGHCVSS 7.8EG 7.82021-04-13
An improper access control vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Service and OfficeScan XG SP1 on a resource used by the service could allow a local attacker to escalate privileges on affected installations. Plea…
- CVE-2021-25263HIGHCVSS 7.8EG 7.82021-08-17
Local privilege vulnerability in Yandex Browser for Windows prior to 21.9.0.390 allows a local, low privileged, attacker to execute arbitary code with the SYSTEM privileges through manipulating files in directory with insecure permissions …
- CVE-2021-25276HIGHCVSS 7.1EG 7.12021-02-03
In SolarWinds Serv-U before 15.2.2 Hotfix 1, there is a directory containing user profile files (that include users' password hashes) that is world readable and writable. An unprivileged Windows user (having access to the server's filesyst…
- CVE-2021-25318HIGHCVSS 8.8EG 8.82021-07-15
A Incorrect Permission Assignment for Critical Resource vulnerability in Rancher allows users in the cluster to modify resources they should not have access to. This issue affects: Rancher versions prior to 2.5.9 ; Rancher versions prior t…
- CVE-2021-25393MEDIUMCVSS 6.6EG 6.62021-06-11
Improper sanitization of incoming intent in SecSettings prior to SMR MAY-2021 Release 1 allows local attackers to get permissions to access system uid data.
- CVE-2021-25519MEDIUMCVSS 4.0EG 4.02021-12-08
An improper access control vulnerability in CPLC prior to SMR Dec-2021 Release 1 allows local attackers to access CPLC information without permission.
- CVE-2021-25759MEDIUMCVSS 6.5EG 6.52021-02-03
In JetBrains Hub before 2020.1.12629, an authenticated user can delete 2FA settings of any other user.
- CVE-2021-25768MEDIUMCVSS 5.3EG 5.32021-02-03
In JetBrains YouTrack before 2020.4.4701, permissions for attachments actions were checked improperly.
- CVE-2021-25775LOWCVSS 3.8EG 3.82021-02-03
In JetBrains TeamCity before 2020.2.1, the server admin could create and see access tokens for any other users.
- CVE-2021-25778MEDIUMCVSS 5.3EG 5.32021-02-03
In JetBrains TeamCity before 2020.2.1, permissions during user deletion were checked improperly.
- CVE-2021-25877HIGHCVSS 7.2EG 7.22021-11-01
AVideo/YouPHPTube 10.0 and prior is affected by Insecure file write. An administrator privileged user is able to write files on filesystem using flag and code variables in file save.php.
- CVE-2021-26434HIGHCVSS 7.8EG 7.82021-09-15
Visual Studio Elevation of Privilege Vulnerability
- CVE-2021-26589MEDIUMCVSS 6.1EG 6.12021-10-19
A potential security vulnerability has been identified in HPE Superdome Flex Servers. The vulnerability could be remotely exploited to allow Cross Site Scripting (XSS) because the Session Cookie is missing an HttpOnly Attribute. HPE has pr…
- CVE-2021-27024HIGHCVSS 8.1EG 8.12021-11-18
A flaw was discovered in Continuous Delivery for Puppet Enterprise (CD4PE) that results in a user with lower privileges being able to access a Puppet Enterprise API token. This issue is resolved in CD4PE 4.10.0
- CVE-2021-27070HIGHCVSS 7.3EG 7.82021-03-11
Windows 10 Update Assistant Elevation of Privilege Vulnerability
- CVE-2021-27445HIGHCVSS 7.8EG 7.82021-12-21
Mesa Labs AmegaView Versions 3.0 and prior has insecure file permissions that could be exploited to escalate privileges on the device.
- CVE-2021-27483HIGHCVSS 7.8EG 7.82021-06-16
ZOLL Defibrillator Dashboard, v prior to 2.2,The affected products contain insecure filesystem permissions that could allow a lower privilege user to escalate privileges to an administrative level user.
- CVE-2021-27760MEDIUMCVSS 4.6EG 5.52022-05-06
An issue was discovered in the Sametime chat feature in the Notes 11.0 - 11.0.1 FP4 clients. An authenticated Sametime chat user could cause Remote Code Execution on another chat client by sending a specially formatted message through chat…
- CVE-2021-27764HIGHCVSS 7.4EG 7.42022-05-06
Cookie without HTTPONLY flag set. NUMBER cookie(s) was set without Secure or HTTPOnly flags. The images show the cookie with the missing flag. (WebUI)
- CVE-2021-27962HIGHCVSS 7.1EG 7.12021-03-22
Grafana Enterprise 7.2.x and 7.3.x before 7.3.10 and 7.4.x before 7.4.5 allows a dashboard editor to bypass a permission check concerning a data source they should not be able to access.
- CVE-2021-27963HIGHCVSS 8.2EG 8.22021-03-05
SonLogger before 6.4.1 is affected by user creation with any user permissions profile (e.g., SuperAdmin). An anonymous user can send a POST request to /User/saveUser without any authentication or session header.
- CVE-2021-28098HIGHCVSS 7.8EG 7.82021-04-14
An issue was discovered in Forescout CounterACT before 8.1.4. A local privilege escalation vulnerability is present in the logging function. SecureConnector runs with administrative privileges and writes logs entries to a file in %PROGRAMD…
- CVE-2021-28269HIGHCVSS 8.8EG 8.82021-04-27
Soyal Technology 701Client 9.0.1 is vulnerable to Insecure permissions via client.exe binary with Authenticated Users group with Full permissions.
- CVE-2021-28374HIGHCVSS 7.5EG 7.52021-03-15
The Debian courier-authlib package before 0.71.1-2 for Courier Authentication Library creates a /run/courier/authdaemon directory with weak permissions, allowing an attacker to read user information. This may include a cleartext password i…
- CVE-2021-28488MEDIUMCVSS 6.5EG 6.52022-03-10
Ericsson Network Manager (ENM) before 21.2 has incorrect access-control behavior (that only affects the level of access available to persons who were already granted a highly privileged role). Users in the same AMOS authorization group can…
- CVE-2021-28645HIGHCVSS 7.8EG 7.82021-04-13
An incorrect permission assignment vulnerability in Trend Micro Apex One, Apex One as a Service and OfficeScan XG SP1 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain…
- CVE-2021-28646MEDIUMCVSS 5.5EG 5.52021-04-13
An insecure file permissions vulnerability in Trend Micro Apex One, Apex One as a Service and OfficeScan XG SP1 could allow a local attacker to take control of a specific log file on affected installations.
- CVE-2021-29247MEDIUMCVSS 5.3EG 5.32021-05-05
BTCPay Server through 1.0.7.0 could allow a remote attacker to obtain sensitive information, caused by failure to set the HTTPOnly flag for a cookie.
- CVE-2021-29396CRITICALCVSS 9.8EG 9.82022-02-04
Systemic Insecure Permissions in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to use various functionalities without authentication.
- CVE-2021-29686HIGHCVSS 8.8EG 8.82021-05-20
IBM Security Identity Manager 7.0.2 could allow an authenticated user to bypass security and perform actions that they should not have access to. IBM X-Force ID: 200015
Map vulnerabilities like CWE-732 to your infrastructure
EchelonGraph correlates every CVE — across CWE-732 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →