CWE-732— Incorrect Permission Assignment for Critical Resource
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.— MITRE CWE catalog
1,912 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-732page 2 of 39
- CVE-2016-5202CRITICALCVSS 9.1EG 9.12019-10-25
browser/extensions/api/dial/dial_registry.cc in Google Chrome before 54.0.2840.98 on macOS, before 54.0.2840.99 on Windows, and before 54.0.2840.100 on Linux neglects to copy a device ID before an erase() call, which causes the erase opera…
- CVE-2016-8637HIGHCVSS 5.0EG 7.82018-08-01
A local information disclosure issue was found in dracut before 045 when generating initramfs images with world-readable permissions when 'early cpio' is used, such as when including microcode updates. Local attacker can use this to obtain…
- CVE-2016-9604MEDIUMCVSS 4.4EG 4.42018-07-11
It was discovered in the Linux kernel before 4.11-rc8 that root can gain direct access to an internal keyring, such as '.dns_resolver' in RHEL-7 or '.builtin_trusted_keys' upstream, by joining it as its session keyring. This allows root to…
- CVE-2017-0311HIGHCVSS 8.8EG 8.82017-02-15
NVIDIA GPU Display Driver R378 contains a vulnerability in the kernel mode layer handler where improper access control may lead to denial of service or possible escalation of privileges.
- CVE-2017-0317HIGHCVSS 7.5EG 7.52017-02-15
All versions of NVIDIA GPU and GeForce Experience installer contain a vulnerability where it fails to set proper permissions on the package extraction path thus allowing a non-privileged user to tamper with the extracted files, potentially…
- CVE-2017-0352HIGHCVSS 7.8EG 7.82017-05-09
All versions of the NVIDIA GPU Display Driver contain a vulnerability in the GPU firmware where incorrect access control may allow CPU access sensitive GPU control registers, leading to an escalation of privileges
- CVE-2017-0423MEDIUMCVSS 5.3EG 5.32017-02-08
An elevation of privilege vulnerability in Bluetooth could enable a proximate attacker to manage access to documents on the device. This issue is rated as Moderate because it first requires exploitation of a separate vulnerability in the B…
- CVE-2017-0593HIGHCVSS 7.8EG 7.82017-05-12
An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to obtain access to custom permissions. This issue is rated as High because it is a general bypass for operating system protections th…
- CVE-2017-0601MEDIUMCVSS 5.5EG 5.52017-05-12
An Elevation of Privilege vulnerability in Bluetooth could potentially enable a local malicious application to accept harmful files shared via bluetooth without user permission. This issue is rated as Moderate due to local bypass of user i…
- CVE-2017-0703HIGHCVSS 7.8EG 7.82017-07-06
A elevation of privilege vulnerability in the Android system ui. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-33123882.
- CVE-2017-0752HIGHCVSS 7.8EG 7.82017-09-08
A elevation of privilege vulnerability in the Android framework (windowmanager). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-62196835.
- CVE-2017-0784HIGHCVSS 8.8EG 8.82017-09-08
A elevation of privilege vulnerability in the Android system (nfc). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37287958.
- CVE-2017-0830HIGHCVSS 7.8EG 7.82017-11-16
An elevation of privilege vulnerability in the Android framework (device policy client). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62623498.
- CVE-2017-0831HIGHCVSS 7.8EG 7.82017-11-16
An elevation of privilege vulnerability in the Android framework (window manager). Product: Android. Versions: 8.0. Android ID: A-37442941.
- CVE-2017-0845HIGHCVSS 7.5EG 7.52017-11-16
A denial of service vulnerability in the Android framework (syncstorageengine). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-35028827.
- CVE-2017-0883MEDIUMCVSS 6.4EG 6.42017-04-05
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a permission increase on re-sharing via OCS API issue. A permission related issue within the OCS sharing API allowed an authenticated adversary to reshare shared files with an increasi…
- CVE-2017-0884MEDIUMCVSS 4.3EG 4.32017-04-05
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a creation of folders in read-only folders despite lacking permissions issue. Due to a logical error in the file caching layer an authenticated adversary is able to create empty folder…
- CVE-2017-0913MEDIUMCVSS 4.7EG 4.72018-07-03
Ubiquiti UCRM versions 2.3.0 to 2.7.7 allow an authenticated user to read arbitrary files in the local file system. Note that by default, the local file system is isolated in a docker container. Successful exploitation requires valid crede…
- CVE-2017-1000022HIGHCVSS 8.8EG 8.82017-07-17
LogicalDoc Community Edition 7.5.3 and prior contain an Incorrect access control which could leave to privilege escalation.
- CVE-2017-1000095MEDIUMCVSS 6.5EG 6.52017-10-05
The default whitelist included the following unsafe entries: DefaultGroovyMethods.putAt(Object, String, Object); DefaultGroovyMethods.getAt(Object, String). These allowed circumventing many of the access restrictions implemented in the scr…
- CVE-2017-1000096HIGHCVSS 8.8EG 8.82017-10-05
Arbitrary code execution due to incomplete sandbox protection: Constructors, instance variable initializers, and instance initializers in Pipeline scripts were not subject to sandbox protection, and could therefore execute arbitrary code. …
- CVE-2017-1000125HIGHCVSS 7.5EG 7.52017-11-17
Codiad(full version) is vulnerable to write anything to configure file in the installation resulting upload a webshell.
- CVE-2017-1000134HIGHCVSS 8.1EG 8.12017-11-03
Mahara 1.8 before 1.8.6 and 1.9 before 1.9.4 and 1.10 before 1.10.1 and 15.04 before 15.04.0 are vulnerable because group members can lose access to the group files they uploaded if another group member changes the access permissions on th…
- CVE-2017-1000153CRITICALCVSS 9.8EG 9.82017-11-03
Mahara 15.04 before 15.04.10 and 15.10 before 15.10.6 and 16.04 before 16.04.4 are vulnerable to incorrect access control after the password reset link is sent via email and then user changes default email, Mahara fails to invalidate old l…
- CVE-2017-1000221MEDIUMCVSS 6.5EG 6.52017-11-17
In Opencast 2.2.3 and older if user names overlap, the Opencast search service used for publication to the media modules and players will handle the access control incorrectly so that users only need to match part of the user name used for…
- CVE-2017-1000403HIGHCVSS 8.8EG 8.82018-01-26
Jenkins Speaks! Plugin, all current versions, allows users with Job/Configure permission to run arbitrary Groovy code inside the Jenkins JVM, effectively elevating privileges to Overall/Run Scripts.
- CVE-2017-1000461MEDIUMCVSS 4.7EG 4.72018-01-03
Brave Software's Brave Browser, version 0.19.73 (and earlier) is vulnerable to an incorrect access control issue in the "JS fingerprinting blocking" component, resulting in a malicious website being able to access the fingerprinting-associ…
- CVE-2017-1000485HIGHCVSS 7.8EG 7.82018-01-03
Nylas Mail Lives 2.2.2 uses 0755 permissions for $HOME/.nylas-mail, which allows local users to obtain sensitive authentication information via standard filesystem operations.
- CVE-2017-11156HIGHCVSS 7.8EG 7.82017-08-14
Synology Download Station 3.8.x before 3.8.5-3475 and 3.x before 3.5-2984 uses weak permissions (0777) for ui/dlm/btsearch directory, which allows remote authenticated users to execute arbitrary code by uploading an executable via unspecif…
- CVE-2017-11422HIGHCVSS 8.8EG 8.82017-07-24
Statamic framework before 2.6.0 does not correctly check a session's permissions when the methods from a user's class are called. Problematic methods include reset password, create new account, create new role, etc.
- CVE-2017-11437MEDIUMCVSS 6.5EG 6.52017-08-02
GitLab Enterprise Edition (EE) before 8.17.7, 9.0.11, 9.1.8, 9.2.8, and 9.3.8 allows an authenticated user with the ability to create a project to use the mirroring feature to potentially read repositories belonging to other users.
- CVE-2017-11652HIGHCVSS 8.4EG 8.42017-08-18
Razer Synapse 2.20.15.1104 and earlier uses weak permissions for the CrashReporter directory, which allows local users to gain privileges via a Trojan horse dbghelp.dll file.
- CVE-2017-11653HIGHCVSS 7.8EG 7.82017-08-18
Razer Synapse 2.20.15.1104 and earlier uses weak permissions for the Devices directory, which allows local users to gain privileges via a Trojan horse (1) RazerConfigNative.dll or (2) RazerConfigNativeLOC.dll file.
- CVE-2017-12167MEDIUMCVSS 5.5EG 5.52018-07-26
It was found in EAP 7 before 7.0.9 that properties based files of the management and the application realm configuration that contain user to role mapping are world readable allowing access to users and roles information to all the users l…
- CVE-2017-1266MEDIUMCVSS 5.4EG 5.42017-12-20
IBM Security Guardium 10.0 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. IBM X-Force ID: 124741.
- CVE-2017-12713HIGHCVSS 7.8EG 7.82017-08-30
An Incorrect Permission Assignment for Critical Resource issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Multiple files and folders with ACLs that affect other users are allowed to be modified by non-administra…
- CVE-2017-12816CRITICALCVSS 9.8EG 9.82017-08-25
In Kaspersky Internet Security for Android 11.12.4.1622, some of application exports activities have weak permissions, which might be used by a malware application to get unauthorized access to the product functionality by using Android IP…
- CVE-2017-13168HIGHCVSS 7.8EG 7.82017-12-06
An elevation of privilege vulnerability in the kernel scsi driver. Product: Android. Versions: Android kernel. Android ID A-65023233.
- CVE-2017-13236HIGHCVSS 7.8EG 7.82018-02-12
In the KeyStore service, there is a permissions bypass that allows access to protected resources. This could lead to local escalation of privilege with system execution privileges needed. User interaction is not needed for exploitation. Pr…
- CVE-2017-13779HIGHCVSS 7.8EG 7.82017-09-14
GSTN_offline_tool in India Goods and Services Tax Network (GSTN) Offline Utility tool before 1.2 executes winstart-server.vbs from the "C:\GST Offline Tool" directory, which has insecure permissions. This allows local users to gain privile…
- CVE-2017-1459MEDIUMCVSS 4.2EG 4.22018-01-10
IBM Security Access Manager Appliance 8.0.0 and 9.0.0 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. IBM X-Force ID: 128378.
- CVE-2017-14730HIGHCVSS 7.8EG 7.82017-09-25
The init script in the Gentoo app-admin/logstash-bin package before 5.5.3 and 5.6.x before 5.6.1 has "chown -R" calls for user-writable directory trees, which allows local users to gain privileges by leveraging access to a $LS_USER account…
- CVE-2017-15288HIGHCVSS 7.8EG 7.82017-11-15
The compilation daemon in Scala before 2.10.7, 2.11.x before 2.11.12, and 2.12.x before 2.12.4 uses weak permissions for private files in /tmp/scala-devel/${USER:shared}/scalac-compile-server-port, which allows local users to write to arbi…
- CVE-2017-15352LOWCVSS 3.1EG 3.12018-02-15
Huawei OceanStor 2800 V3, V300R003C00, V300R003C20, OceanStor 5300 V3, V300R003C00, V300R003C10, V300R003C20, OceanStor 5500 V3, V300R003C00, V300R003C10, V300R003C20, OceanStor 5600 V3, V300R003C00, V300R003C10, V300R003C20, OceanStor 580…
- CVE-2017-15611MEDIUMCVSS 6.5EG 6.52017-10-19
In Octopus before 3.17.7, an authenticated user who was explicitly granted the permission to invite new users (aka UserInvite) can invite users to teams with escalated privileges.
- CVE-2017-15877CRITICALCVSS 9.8EG 9.82017-12-19
Insecure Permissions vulnerability in db.php file in GPWeb 8.4.61 allows remote attackers to view the password and user database.
- CVE-2017-15906MEDIUMCVSS 5.3EG 5.32017-10-26
The process_open function in sftp-server.c in OpenSSH before 7.6 does not properly prevent write operations in readonly mode, which allows attackers to create zero-length files.
- CVE-2017-15945HIGHCVSS 7.8EG 7.82017-10-27
The installation scripts in the Gentoo dev-db/mysql, dev-db/mariadb, dev-db/percona-server, dev-db/mysql-cluster, and dev-db/mariadb-galera packages before 2017-09-29 have chown calls for user-writable directory trees, which allows local u…
- CVE-2017-1624MEDIUMCVSS 4.2EG 5.42018-04-04
IBM QRadar 7.3 and 7.3.1 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. IBM X-Force ID: 133122.
- CVE-2017-16630HIGHCVSS 8.8EG 8.82021-08-11
In SapphireIMS 4097_1, a guest user can create a local administrator account on any system that has SapphireIMS installed, because of an Insecure Direct Object Reference (IDOR) in the local user creation function.
Map vulnerabilities like CWE-732 to your infrastructure
EchelonGraph correlates every CVE — across CWE-732 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →