CWE-732— Incorrect Permission Assignment for Critical Resource
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.— MITRE CWE catalog
1,885 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-732page 8 of 38
- CVE-2018-1750HIGHCVSS 4.2EG 8.12018-10-08
IBM Security Key Lifecycle Manager 3.0 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. IBM X-Force ID: 148511.
- CVE-2018-17766MEDIUMCVSS 4.6EG 4.62020-09-09
Ingenico Telium 2 POS Telium2 OS allow bypass of file-reading restrictions via the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N.
- CVE-2018-17775HIGHCVSS 7.8EG 7.82018-10-08
Seqrite End Point Security v7.4 has "Everyone: (F)" permission for %PROGRAMFILES%\Seqrite\Seqrite, which allows local users to gain privileges by replacing an executable file with a Trojan horse.
- CVE-2018-17776HIGHCVSS 7.8EG 7.82018-09-28
PCProtect Anti-Virus v4.8.35 has "Everyone: (F)" permission for %PROGRAMFILES(X86)%\PCProtect, which allows local users to gain privileges by replacing an executable file with a Trojan horse.
- CVE-2018-1787MEDIUMCVSS 5.1EG 5.52019-04-08
IBM Spectrum Protect 7.1 and 8.1 is affected by a password exposure vulnerability caused by insecure file permissions. IBM X-Force ID: 148872.
- CVE-2018-17872HIGHCVSS 8.8EG 8.82018-10-04
Verba Collaboration Compliance and Quality Management Platform before 9.2.1.5545 has Insecure Permissions.
- CVE-2018-17873HIGHCVSS 8.8EG 8.82018-10-23
An incorrect access control vulnerability in the FTP configuration of WiFiRanger devices with firmware version 7.0.8rc3 and earlier allows an attacker with adjacent network access to read the SSH Private Key and log in to the root account.
- CVE-2018-17892HIGHCVSS 8.8EG 8.82018-10-12
NUUO CMS all versions 3.1 and prior, The application implements a method of user account control that causes standard account security features to not be utilized as intended, which could allow user account compromise and may allow for rem…
- CVE-2018-18093HIGHCVSS 7.8EG 7.82018-12-14
Improper file permissions in the installer for Intel VTune Amplifier 2018 Update 3 and before may allow unprivileged user to potentially gain privileged access via local access.
- CVE-2018-18094HIGHCVSS 7.8EG 7.82019-04-17
Improper directory permissions in installer for Intel(R) Media SDK before 2018 R2.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2018-18097HIGHCVSS 7.8EG 7.82018-12-14
Improper directory permissions in Intel Solid State Drive Toolbox before 3.5.7 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2018-18098HIGHCVSS 7.3EG 7.32019-01-10
Improper file verification in install routine for Intel(R) SGX SDK and Platform Software for Windows before 2.2.100 may allow an escalation of privilege via local access.
- CVE-2018-18254HIGHCVSS 7.8EG 7.82019-03-15
An issue was discovered in CapMon Access Manager 5.4.1.1005. An unprivileged user can read the cal_whitelist table in the Custom App Launcher (CAL) database, and potentially gain privileges by placing a Trojan horse program at an app pathn…
- CVE-2018-18331HIGHCVSS 7.5EG 7.52018-12-21
A Trend Micro OfficeScan XG weak file permissions vulnerability on a particular folder for a particular group may allow an attacker to alter the files, which could lead to other exploits on vulnerable installations.
- CVE-2018-18332HIGHCVSS 7.5EG 7.52018-12-21
A Trend Micro OfficeScan XG weak file permissions vulnerability may allow an attacker to potentially manipulate permissions on some key files to modify other files and folders on vulnerable installations.
- CVE-2018-18349MEDIUMCVSS 6.5EG 6.52018-12-11
Remote frame navigations was incorrectly permitted to local resources in Blink in Google Chrome prior to 71.0.3578.80 allowed an attacker who convinced a user to install a malicious extension to access files on the local file system via a …
- CVE-2018-18352MEDIUMCVSS 6.5EG 6.52018-12-11
Service works could inappropriately gain access to cross origin audio in Media in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to bypass same origin policy for audio content via a crafted HTML page.
- CVE-2018-18435HIGHCVSS 7.8EG 7.82019-03-21
KioWare Server version 4.9.6 and older installs by default to "C:\kioware_com" with weak folder permissions granting any user full permission "Everyone: (F)" to the contents of the directory and it's sub-folders. In addition, the program i…
- CVE-2018-18495MEDIUMCVSS 6.5EG 6.52019-02-28
WebExtension content scripts can be loaded into about: pages in some circumstances, in violation of the permissions granted to extensions. This could allow an extension to interfere with the loading and usage of these pages and use capabil…
- CVE-2018-18561HIGHCVSS 8.0EG 8.02018-11-20
An issue was discovered in Roche Accu-Chek Inform II Base Unit / Base Unit Hub before 03.01.04 and CoaguChek / cobas h232 Handheld Base Unit before 03.01.04. Insecure permissions in a service interface may allow authenticated attackers in …
- CVE-2018-18630HIGHCVSS 7.8EG 7.82019-09-06
A vulnerability was found in McKesson Cardiology product 13.x and 14.x. Insecure file permissions in the default installation may allow an attacker with local system access to execute unauthorized arbitrary code.
- CVE-2018-18654HIGHCVSS 7.8EG 7.82018-10-26
Crossroads 2.81 does not properly handle the /tmp directory during a build of xr. A local attacker can first create a world-writable subdirectory in a certain location under the /tmp directory, wait until a user process copies xr there, an…
- CVE-2018-18812MEDIUMCVSS 6.5EG 6.52019-01-16
The Spotfire Library component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace, and TIBCO Spotfire Server contains a vulnerability that might theoretically fail to restrict users with read-only access from mo…
- CVE-2018-19071HIGHCVSS 7.8EG 7.82018-11-07
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. /mnt/mtd/boot.sh has 0777 permissions,…
- CVE-2018-19072MEDIUMCVSS 5.5EG 5.52018-11-07
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. /mnt/mtd/app has 0777 permissions, all…
- CVE-2018-19113HIGHCVSS 7.3EG 7.32019-04-01
The Pronestor PNHM (aka Health Monitoring or HealthMonitor) add-in before 8.1.13.0 for Outlook has "BUILTIN\Users:(I)(F)" permissions for the "%PROGRAMFILES(X86)%\proNestor\Outlook add-in for Pronestor\PronestorHealthMonitor.exe" file, whi…
- CVE-2018-19374HIGHCVSS 7.0EG 7.02019-04-30
Zoho ManageEngine ADManager Plus 6.6 Build 6657 allows local users to gain privileges (after a reboot) by placing a Trojan horse file into the permissive bin directory.
- CVE-2018-19393HIGHCVSS 7.5EG 7.52019-03-15
Cobham Satcom Sailor 800 and 900 devices contained a vulnerability that allowed for arbitrary writing of content to the system's configuration file. This was exploitable via multiple attack vectors depending on the device's configuration. …
- CVE-2018-19446HIGHCVSS 7.8EG 7.82019-06-17
A File Write can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) Professional 5.4.0.1031 when the JavaScript API Doc.createDataObject is used. An attacker can leverage this to gain remote code execution.
- CVE-2018-19589MEDIUMCVSS 6.5EG 6.52019-04-09
Incorrect Access Controls of Security Officer (SO) in PKCS11 R2 provider that ships with the Utimaco CryptoServer HSM product package allows an SO authenticated to a slot to retrieve attributes of keys marked as private keys in external ke…
- CVE-2018-19836MEDIUMCVSS 6.1EG 6.12018-12-03
In Metinfo 6.1.3, include/interface/applogin.php allows setting arbitrary HTTP headers (including the Cookie header), and common.inc.php allows registering variables from the $_COOKIE value. This issue can, for example, be exploited in con…
- CVE-2018-19860HIGHCVSS 8.8EG 8.82019-06-07
Broadcom firmware before summer 2014 on Nexus 5 BCM4335C0 2012-12-11, Raspberry Pi 3 BCM43438A1 2014-06-02, and unspecifed other devices does not properly restrict LMP commnds and executes certain memory contents upon receiving an LMP comm…
- CVE-2018-20007MEDIUMCVSS 6.8EG 6.82019-05-16
Yeelight Smart AI Speaker 3.3.10_0074 devices have improper access control over the UART interface, allowing physical attackers to obtain a root shell. The attacker can then exfiltrate the audio data, read cleartext Wi-Fi credentials in a …
- CVE-2018-20008MEDIUMCVSS 6.8EG 6.82019-05-28
iBall Baton iB-WRB302N20122017 devices have improper access control over the UART interface, allowing physical attackers to discover Wi-Fi credentials (plain text) and the web-console password (base64) via the debugging console.
- CVE-2018-20131HIGHCVSS 7.8EG 7.82019-01-03
The Code42 app before 6.8.4, as used in Code42 for Enterprise, on Linux installs with overly permissive permissions on the /usr/local/crashplan/log directory. This allows a user to manipulate symbolic links to escalate privileges, or show …
- CVE-2018-20145HIGHCVSS 7.5EG 7.52018-12-13
Eclipse Mosquitto 1.5.x before 1.5.5 allows ACL bypass: if the option per_listener_settings was set to true, and the default listener was in use, and the default listener specified an acl_file, then the acl file was being ignored.
- CVE-2018-2024HIGHCVSS 8.1EG 8.12019-07-22
IBM QRadar SIEM 7.2 and 7.3 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. IBM X-Force ID: 155350.
- CVE-2018-20420MEDIUMCVSS 4.9EG 4.92018-12-24
In webERP 4.15, Z_CreateCompanyTemplateFile.php has Incorrect Access Control, leading to the overwrite of an existing .sql file on the target web site by creating a template and then using ../ directory traversal in the TemplateName parame…
- CVE-2018-20500HIGHCVSS 7.5EG 7.52019-05-17
An insecure permissions issue was discovered in GitLab Community and Enterprise Edition 9.4 and later but before 11.4.13, 11.5.x before 11.5.6, and 11.6.x before 11.6.1. The runner registration token in the CI/CD settings could not be rese…
- CVE-2018-20567MEDIUMCVSS 5.3EG 5.32018-12-28
An issue was discovered in DouCo DouPHP 1.5 20181221. \install\index.php allows a reload of the product in opportunistic circumstances in which install.lock cannot be read.
- CVE-2018-20621HIGHCVSS 7.8EG 7.82019-03-13
An issue was discovered in Microvirt MEmu 6.0.6. The MemuService.exe service binary is vulnerable to local privilege escalation through binary planting due to insecure permissions set at install time. This allows code to be run as NT AUTHO…
- CVE-2018-20798HIGHCVSS 7.5EG 7.52019-03-01
The expiretable configuration in pfSense 2.4.4_1 establishes block durations that are incompatible with the block durations implemented by sshguard, which might make it easier for attackers to bypass intended access restrictions.
- CVE-2018-20871CRITICALCVSS 9.8EG 9.82019-07-30
In Univa Grid Engine before 8.6.3, when configured for Docker jobs and execd spooling on root_squash, weak file permissions ("other" write access) occur in certain cases (GE-6890).
- CVE-2018-20904MEDIUMCVSS 4.3EG 4.32019-08-01
cPanel before 71.9980.37 allows attackers to make API calls that bypass the cron feature restriction (SEC-427).
- CVE-2018-20905MEDIUMCVSS 5.4EG 5.42019-08-01
cPanel before 71.9980.37 allows attackers to make API calls that bypass the backup feature restriction (SEC-429).
- CVE-2018-20906MEDIUMCVSS 4.3EG 4.32019-08-01
cPanel before 71.9980.37 allows attackers to make API calls that bypass the images feature restriction (SEC-430).
- CVE-2018-20907MEDIUMCVSS 4.3EG 4.32019-08-01
cPanel before 71.9980.37 does not enforce the Mime::list_hotlinks API feature restriction (SEC-432).
- CVE-2018-20908MEDIUMCVSS 5.5EG 5.52019-08-01
cPanel before 71.9980.37 allows arbitrary file-read operations during pkgacct custom template handling (SEC-435).
- CVE-2018-20909HIGHCVSS 7.1EG 7.12019-08-01
cPanel before 70.0.23 allows arbitrary file-chmod operations during legacy incremental backups (SEC-338).
- CVE-2018-20936LOWCVSS 3.3EG 3.32019-08-01
cPanel before 68.0.27 allows attackers to read the SRS secret via exim.conf (SEC-308).
Map vulnerabilities like CWE-732 to your infrastructure
EchelonGraph correlates every CVE — across CWE-732 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →