VYPR

CWE-732

Incorrect Permission Assignment for Critical Resource

ClassDraftLikelihood: High

Description

The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.

When a resource is given a permission setting that provides access to a wider range of actors than required, it could lead to the exposure of sensitive information, or the modification of that resource by unintended parties. This is especially dangerous when the resource is related to program configuration, execution, or sensitive user data. For example, consider a misconfigured storage account for the cloud that can be read or written by a public or anonymous user.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-1 · CAPEC-122 · CAPEC-127 · CAPEC-17 · CAPEC-180 · CAPEC-206 · CAPEC-234 · CAPEC-60 · CAPEC-61 · CAPEC-62 · CAPEC-642

CVEs mapped to this weakness (1,752)

page 10 of 88
  • CVE-2022-35167HigAug 19, 2022
    risk 0.57cvss 8.8epss 0.01

    Printix Cloud Print Management v1.3.1149.0 for Windows was discovered to contain insecure permissions.

  • CVE-2021-22648HigJul 28, 2022
    risk 0.57cvss 8.8epss 0.01

    Ovarro TBox proprietary Modbus file access functions allow attackers to read, alter, or delete the configuration file.

  • CVE-2021-38289HigJul 12, 2022
    risk 0.57cvss 8.8epss 0.01

    An issue has been discovered in Novastar-VNNOX-iCare Novaicare 7.16.0 that gives attacker privilege escalation and allows attackers to view corporate information and SMTP server details, delete users, view roles, and other unspecified impacts. NOTE: As of April 2026, the vendor…

  • CVE-2022-30929HigJul 6, 2022
    risk 0.57cvss 8.8epss 0.02

    Mini-Tmall v1.0 is vulnerable to Insecure Permissions via tomcat-embed-jasper.

  • CVE-2022-22941HigMar 29, 2022
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1. When configured as a Master-of-Masters, with a publisher_acl, if a user configured in the publisher_acl targets any minion connected to the Syndic, the Salt Master incorrectly interpreted no…

  • CVE-2021-42309HigDec 15, 2021
    risk 0.57cvss 8.8epss 0.03

    Microsoft SharePoint Server Remote Code Execution Vulnerability

  • CVE-2021-43359HigDec 1, 2021
    risk 0.57cvss 8.8epss 0.02

    Sunnet eHRD has broken access control vulnerability, which allows a remote attacker to access account management page after being authenticated as a general user, then perform privilege escalation to execute arbitrary code and control the system or interrupt services.

  • CVE-2021-41170CriNov 8, 2021
    risk 0.57cvss 9.8epss 0.02

    neoan3-apps/template is a neoan3 minimal template engine. Versions prior to 1.1.1 have allowed for passing in closures directly into the template engine. As a result values that are callable are executed by the template engine. The issue arises if a value has the same name as a…

  • CVE-2021-3747HigOct 1, 2021
    risk 0.57cvss 8.8epss 0.00

    The MacOS version of Multipass, version 1.7.0, fixed in 1.7.2, accidentally installed the application directory with incorrect owner.

  • CVE-2021-22149HigSep 15, 2021
    risk 0.57cvss 8.8epss 0.01

    Elastic Enterprise Search App Search versions before 7.14.0 are vulnerable to an issue where API keys were missing authorization via an alternate route. Using this vulnerability, an authenticated attacker could utilize API keys belonging to higher privileged users.

  • CVE-2021-22148HigSep 15, 2021
    risk 0.57cvss 8.8epss 0.01

    Elastic Enterprise Search App Search versions before 7.14.0 was vulnerable to an issue where API keys were not bound to the same engines as their creator. This could lead to a less privileged user gaining access to unauthorized engines.

  • CVE-2021-35508HigSep 1, 2021
    risk 0.57cvss 8.8epss 0.01

    NMSAccess32.exe in TeraRecon AQNetClient 4.4.13 allows attackers to execute a malicious binary with SYSTEM privileges via a low-privileged user account. To exploit this, a low-privileged user must change the service configuration or overwrite the binary service.

  • CVE-2020-18121HigAug 30, 2021
    risk 0.57cvss 8.8epss 0.01

    A configuration issue in Indexhibit 2.1.5 allows authenticated attackers to modify .php files, leading to getshell.

  • CVE-2021-38557HigAug 24, 2021
    risk 0.57cvss 8.8epss 0.02

    raspap-webgui in RaspAP 2.6.6 allows attackers to execute commands as root because of the insecure sudoers permissions. The www-data account can execute /etc/raspap/hostapd/enablelog.sh as root with no password; however, the www-data account can also overwrite…

  • CVE-2017-16630HigAug 11, 2021
    risk 0.57cvss 8.8epss 0.01

    In SapphireIMS 4097_1, a guest user can create a local administrator account on any system that has SapphireIMS installed, because of an Insecure Direct Object Reference (IDOR) in the local user creation function.

  • CVE-2021-25318HigJul 15, 2021
    risk 0.57cvss 8.8epss 0.01

    A Incorrect Permission Assignment for Critical Resource vulnerability in Rancher allows users in the cluster to modify resources they should not have access to. This issue affects: Rancher versions prior to 2.5.9 ; Rancher versions prior to 2.4.16.

  • CVE-2021-20423HigJul 13, 2021
    risk 0.57cvss 8.8epss 0.01

    IBM Cloud Pak for Applications 4.3 could allow an authenticated user gain escalated privilesges due to improper application permissions. IBM X-Force ID: 196308.

  • CVE-2021-31894HigJul 13, 2021
    risk 0.57cvss 8.8epss 0.00

    A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.X (All versions < V9.1 SP2), SIMATIC PDM (All versions < V9.2 SP2), SIMATIC STEP 7 V5.X (All versions < V5.7), SINAMICS STARTER (containing STEP 7 OEM version) (All versions <…

  • CVE-2021-23275HigJun 29, 2021
    risk 0.57cvss 8.8epss 0.00

    The Windows Installation component of TIBCO Software Inc.'s TIBCO Enterprise Runtime for R - Server Edition, TIBCO Enterprise Runtime for R - Server Edition, TIBCO Enterprise Runtime for R - Server Edition, TIBCO Spotfire Analytics Platform for AWS Marketplace, TIBCO Spotfire…

  • CVE-2017-17677HigMay 19, 2021
    risk 0.57cvss 8.8epss 0.01

    BMC Remedy 9.1SP3 is affected by authenticated code execution. Authenticated users that have the right to create reports can use BIRT templates to run code.