CWE-732— Incorrect Permission Assignment for Critical Resource
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.— MITRE CWE catalog
1,885 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-732page 20 of 38
- CVE-2021-29711MEDIUMCVSS 4.3EG 4.32021-07-08
IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 6.2.7.8 , 6.2.7.9, 7.0.3.0, 7.0.4.0, 7.0.5.4, 7.1.0.0, 7.1.1.0, 7.1.1.1, and 7.1.1.2 could allow an authenticated user with certain permissions to initiate an agent upgrade through the CLI inter…
- CVE-2021-29951MEDIUMCVSS 6.5EG 6.52021-06-24
The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal remote users access to start or stop the service. This could be used to prevent the browser update service from operati…
- CVE-2021-30152MEDIUMCVSS 4.3EG 4.32021-04-09
An issue was discovered in MediaWiki before 1.31.13 and 1.32.x through 1.35.x before 1.35.2. When using the MediaWiki API to "protect" a page, a user is currently able to protect to a higher level than they currently have permissions for.
- CVE-2021-30156MEDIUMCVSS 4.3EG 4.32021-04-09
An issue was discovered in MediaWiki before 1.31.12 and 1.32.x through 1.35.x before 1.35.2. Special:Contributions can leak that a "hidden" user exists.
- CVE-2021-30477MEDIUMCVSS 4.3EG 4.32021-04-15
An issue was discovered in Zulip Server before 3.4. A bug in the implementation of replies to messages sent by outgoing webhooks to private streams meant that an outgoing webhook bot could be used to send messages to private streams that t…
- CVE-2021-30478MEDIUMCVSS 4.3EG 4.32021-04-15
An issue was discovered in Zulip Server before 3.4. A bug in the implementation of the can_forge_sender permission (previously is_api_super_user) resulted in users with this permission being able to send messages appearing as if sent by a …
- CVE-2021-30479MEDIUMCVSS 5.3EG 5.32021-04-15
An issue was discovered in Zulip Server before 3.4. A bug in the implementation of the all_public_streams API feature resulted in guest users being able to receive message traffic to public streams that should have been only accessible to …
- CVE-2021-30487LOWCVSS 2.7EG 2.72021-04-15
In the topic moving API in Zulip Server 3.x before 3.4, organization administrators were able to move messages to streams in other organizations hosted by the same Zulip installation.
- CVE-2021-30577HIGHCVSS 7.8EG 7.82021-08-03
Insufficient policy enforcement in Installer in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to perform local privilege escalation via a crafted file.
- CVE-2021-30892MEDIUMCVSS 5.5EG 5.52021-08-24
An inherited permissions issue was addressed with additional restrictions. This issue is fixed in macOS Monterey 12.0.1, Security Update 2021-007 Catalina, macOS Big Sur 11.6.1. A malicious application may be able to modify protected parts…
- CVE-2021-30920MEDIUMCVSS 5.5EG 5.52021-08-24
A permissions issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.0.1. A local attacker may be able to read sensitive information.
- CVE-2021-30964MEDIUMCVSS 5.5EG 5.52021-08-24
An inherited permissions issue was addressed with additional restrictions. This issue is fixed in macOS Monterey 12.1, watchOS 8.3, iOS 15.2 and iPadOS 15.2. A malicious application may be able to bypass Privacy preferences.
- CVE-2021-31155HIGHCVSS 7.8EG 7.82021-05-27
Failure to normalize the umask in please before 0.4 allows a local attacker to gain full root privileges if they are allowed to execute at least one command.
- CVE-2021-31167HIGHCVSS 7.8EG 7.82021-05-11
Windows Container Manager Service Elevation of Privilege Vulnerability
- CVE-2021-31377MEDIUMCVSS 5.5EG 5.52021-10-19
An Incorrect Permission Assignment for Critical Resource vulnerability of a certain file in the filesystem of Junos OS allows a local authenticated attacker to cause routing process daemon (RPD) to crash and restart, causing a Denial of Se…
- CVE-2021-31475HIGHCVSS 8.8EG 8.82021-05-21
This vulnerability allows remote attackers to execute arbitrary code on affected installations of SolarWinds Orion Job Scheduler 2020.2.1 HF 2. Authentication is required to exploit this vulnerability. The specific flaw exists within the J…
- CVE-2021-31540HIGHCVSS 7.1EG 7.12021-04-23
Wowza Streaming Engine through 4.8.5 (in a default installation) has incorrect file permissions of configuration files in the conf/ directory. A regular local user is able to read and write to all the configuration files, e.g., modify the …
- CVE-2021-3165HIGHCVSS 8.8EG 8.82021-01-26
SmartAgent 3.1.0 allows a ViewOnly attacker to create a SuperUser account via the /#/CampaignManager/users URI.
- CVE-2021-3172HIGHCVSS 8.1EG 8.12023-02-17
An issue in Php-Fusion v9.03.90 fixed in v9.10.00 allows authenticated attackers to cause a Distributed Denial of Service via the Polling feature.
- CVE-2021-31859HIGHCVSS 7.8EG 7.82021-07-14
Incorrect privileges in the MU55 FlexiSpooler service in YSoft SafeQ 6 6.0.55 allows local user privilege escalation by overwriting the executable file via an alternative data stream.
- CVE-2021-31894HIGHCVSS 8.8EG 8.82021-07-13
A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.X (All versions < V9.1 SP2), SIMATIC PDM (All versions < V9.2 SP2), SIMATIC STEP 7 V5.X (All versions < V5.7), SINAMICS STARTER (contain…
- CVE-2021-31902HIGHCVSS 7.5EG 7.52021-05-11
In JetBrains YouTrack before 2020.6.6600, access control during the exporting of issues was implemented improperly.
- CVE-2021-31907MEDIUMCVSS 5.3EG 5.32021-05-11
In JetBrains TeamCity before 2020.2.2, permission checks for changing TeamCity plugins were implemented improperly.
- CVE-2021-31918HIGHCVSS 7.5EG 7.52021-05-06
A flaw was found in tripleo-ansible version as shipped in Red Hat Openstack 16.1. The Ansible log file is readable to all users during stack update and creation. The highest threat from this vulnerability is to data confidentiality.
- CVE-2021-31929MEDIUMCVSS 4.3EG 4.32021-06-10
Annex Cloud Loyalty Experience Platform <2021.1.0.1 allows any authenticated attacker to modify loyalty campaigns and settings, such as fraud prevention, coupon groups, email templates, or referrals.
- CVE-2021-32056MEDIUMCVSS 4.3EG 4.32021-05-10
Cyrus IMAP before 3.2.7, and 3.3.x and 3.4.x before 3.4.1, allows remote authenticated users to bypass intended access restrictions on server annotations and consequently cause replication to stall.
- CVE-2021-32101HIGHCVSS 8.2EG 8.22021-05-07
The Patient Portal of OpenEMR 5.0.2.1 is affected by a incorrect access control system in portal/patient/_machine_config.php. To exploit the vulnerability, an unauthenticated attacker can register an account, bypassing the permission check…
- CVE-2021-32460HIGHCVSS 7.8EG 7.82021-06-03
The Trend Micro Maximum Security 2021 (v17) consumer product is vulnerable to an improper access control vulnerability in the installer which could allow a local attacker to escalate privileges on a target machine. Please note than an atta…
- CVE-2021-32463HIGHCVSS 7.8EG 7.82021-07-20
An incorrect permission assignment denial-of-service vulnerability in Trend Micro Apex One, Apex One as a Service (SaaS), Worry-Free Business Security 10.0 SP1 and Worry-Free Servgices could allow a local attacker to escalate privileges an…
- CVE-2021-32526MEDIUMCVSS 6.5EG 6.52021-07-07
Incorrect permission assignment for critical resource vulnerability in QSAN Storage Manager allows authenticated remote attackers to access arbitrary password files. Suggest contacting with QSAN and refer to recommendations in QSAN Documen…
- CVE-2021-32577HIGHCVSS 7.8EG 7.82021-08-05
Acronis True Image prior to 2021 Update 5 for Windows allowed local privilege escalation due to insecure folder permissions.
- CVE-2021-32717HIGHCVSS 7.5EG 7.52021-06-24
Shopware is an open source eCommerce platform. In versions prior to 6.4.1.1 private files publicly accessible with Cloud Storage providers when the hashed URL is known. Users are recommend to first change their configuration to set the cor…
- CVE-2021-32729LOWCVSS 2.0EG 2.02021-07-01
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. A vulnerability exists in versions prior to 12.6.88, 12.10.4, and 13.0. The script service method used to reset the authentication fai…
- CVE-2021-32760MEDIUMCVSS 5.0EG 5.02021-07-19
containerd is a container runtime. A bug was found in containerd versions prior to 1.4.8 and 1.5.4 where pulling and extracting a specially-crafted container image can result in Unix file permission changes for existing files in the host��…
- CVE-2021-33091HIGHCVSS 7.8EG 7.82021-11-17
Insecure inherited permissions in the installer for the Intel(R) NUC M15 Laptop Kit audio driver pack before version 1.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2021-33093HIGHCVSS 7.8EG 7.82021-11-17
Insecure inherited permissions in the installer for the Intel(R) NUC M15 Laptop Kit Serial IO driver pack before version 30.100.2104.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2021-33094HIGHCVSS 7.8EG 7.82021-11-17
Insecure inherited permissions in the installer for the Intel(R) NUC M15 Laptop Kit Keyboard LED Service driver pack before version 1.0.0.4 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2021-33509CRITICALCVSS 9.9EG 9.92021-05-21
Plone through 5.2.4 allows remote authenticated managers to perform disk I/O via crafted keyword arguments to the ReStructuredText transform in a Python script.
- CVE-2021-33586MEDIUMCVSS 4.3EG 4.32021-05-27
InspIRCd 3.8.0 through 3.9.x before 3.10.0 allows any user (able to connect to the server) to access recently deallocated memory, aka the "malformed PONG" issue.
- CVE-2021-34110HIGHCVSS 7.8EG 7.82021-07-08
WinWaste.NET version 1.0.6183.16475 has incorrect permissions, allowing a local unprivileged user to replace the executable with a malicious file that will be executed with "LocalSystem" privileges.
- CVE-2021-34409HIGHCVSS 7.8EG 7.82021-09-27
It was discovered that the installation packages of the Zoom Client for Meetings for MacOS (Standard and for IT Admin) installation before version 5.2.0, Zoom Client Plugin for Sharing iPhone/iPad before version 5.2.0, and Zoom Rooms for C…
- CVE-2021-34410HIGHCVSS 7.8EG 7.82021-09-27
A user-writable application bundle unpacked during the install for all versions of the Zoom Plugin for Microsoft Outlook for Mac before 5.0.25611.0521 allows for privilege escalation to root.
- CVE-2021-34758MEDIUMCVSS 4.4EG 4.42021-10-06
A vulnerability in the memory management of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an authenticated, local attacker to corrupt a shared memory segment, resulting in a denial of service…
- CVE-2021-35202MEDIUMCVSS 4.3EG 4.32021-09-30
NETSCOUT Systems nGeniusONE 6.3.0 build 1196 allows Authorization Bypass (to access an endpoint) in FDSQueryService.
- CVE-2021-35221HIGHCVSS 6.3EG 8.12021-08-31
Improper Access Control Tampering Vulnerability using ImportAlert function which can lead to a Remote Code Execution (RCE) from the Alerts Settings page.
- CVE-2021-35248MEDIUMCVSS 6.8EG 6.82021-12-20
It has been reported that any Orion user, e.g. guest accounts can query the Orion.UserSettings entity and enumerate users and their basic settings.
- CVE-2021-35449HIGHCVSS 7.8EG 7.82021-07-19
The Lexmark Universal Print Driver version 2.15.1.0 and below, G2 driver 2.7.1.0 and below, G3 driver 3.2.0.0 and below, and G4 driver 4.2.1.0 and below are affected by a privilege escalation vulnerability. A standard low priviliged user c…
- CVE-2021-35508HIGHCVSS 8.8EG 8.82021-09-01
NMSAccess32.exe in TeraRecon AQNetClient 4.4.13 allows attackers to execute a malicious binary with SYSTEM privileges via a low-privileged user account. To exploit this, a low-privileged user must change the service configuration or overwr…
- CVE-2021-3557MEDIUMCVSS 6.5EG 6.52022-02-16
A flaw was found in argocd. Any unprivileged user is able to deploy argocd in their namespace and with the created ServiceAccount argocd-argocd-server, the unprivileged user is able to read all resources of the cluster including all secret…
- CVE-2021-35970HIGHCVSS 7.5EG 7.52021-06-30
Talk 4 in Coral before 4.12.1 allows remote attackers to discover e-mail addresses and other sensitive information via GraphQL because permission checks use an incorrect data type.
Map vulnerabilities like CWE-732 to your infrastructure
EchelonGraph correlates every CVE — across CWE-732 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →