VYPR

CWE-732

Incorrect Permission Assignment for Critical Resource

ClassDraftLikelihood: High

Description

The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.

When a resource is given a permission setting that provides access to a wider range of actors than required, it could lead to the exposure of sensitive information, or the modification of that resource by unintended parties. This is especially dangerous when the resource is related to program configuration, execution, or sensitive user data. For example, consider a misconfigured storage account for the cloud that can be read or written by a public or anonymous user.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-1 · CAPEC-122 · CAPEC-127 · CAPEC-17 · CAPEC-180 · CAPEC-206 · CAPEC-234 · CAPEC-60 · CAPEC-61 · CAPEC-62 · CAPEC-642

CVEs mapped to this weakness (1,752)

page 25 of 88
  • CVE-2022-22516HigApr 7, 2022
    risk 0.51cvss 7.8epss 0.00

    The SysDrv3S driver in the CODESYS Control runtime system on Microsoft Windows allows any system user to read and write within restricted memory space.

  • CVE-2022-26250HigApr 6, 2022
    risk 0.51cvss 7.8epss 0.00

    Synaman v5.1 and below was discovered to contain weak file permissions which allows authenticated attackers to escalate privileges.

  • CVE-2022-26526HigMar 17, 2022
    risk 0.51cvss 7.8epss 0.00

    Anaconda Anaconda3 (Anaconda Distribution) through 2021.11.0.0 and Miniconda3 through 4.11.0.0 can create a world-writable directory under %PROGRAMDATA% and place that directory into the system PATH environment variable. Thus, for example, local users can gain privileges by…

  • CVE-2022-22148HigMar 11, 2022
    risk 0.51cvss 7.8epss 0.00

    'Root Service' service implemented in the following Yokogawa Electric products creates some named pipe with improper ACL configuration. CENTUM CS 3000 versions from R3.08.10 to R3.09.00, CENTUM VP versions from R4.01.00 to R4.03.00, from R5.01.00 to R5.04.20, and from R6.01.00…

  • CVE-2022-22141HigMar 11, 2022
    risk 0.51cvss 7.8epss 0.00

    'Long-term Data Archive Package' service implemented in the following Yokogawa Electric products creates some named pipe with imporper ACL configuration. CENTUM CS 3000 versions from R3.08.10 to R3.09.00, CENTUM VP versions from R4.01.00 to R4.03.00, from R5.01.00 to R5.04.20,…

  • CVE-2021-42855HigMar 10, 2022
    risk 0.51cvss 7.8epss 0.00

    It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) uses the ".debug_command.config" file to store a json string that contains a list of IDs and pre-configured commands. The config file is subsequently used by the…

  • CVE-2021-4199HigMar 7, 2022
    risk 0.51cvss 7.8epss 0.01

    Incorrect Permission Assignment for Critical Resource vulnerability in the crash handling component BDReinit.exe as used in Bitdefender Total Security, Internet Security, Antivirus Plus, Endpoint Security Tools for Windows allows a remote attacker to escalate local privileges to…

  • CVE-2022-0483HigFeb 11, 2022
    risk 0.51cvss 7.8epss 0.00

    Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis VSS Doctor (Windows) before build 53

  • CVE-2021-39992HigFeb 9, 2022
    risk 0.51cvss 7.8epss 0.00

    There is an improper security permission configuration vulnerability on ACPU.Successful exploitation of this vulnerability may affect service confidentiality, integrity, and availability.

  • CVE-2021-39627HigJan 14, 2022
    risk 0.51cvss 7.8epss 0.00

    In sendLegacyVoicemailNotification of LegacyModeSmsHandler.java, there is a possible permissions bypass due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for…

  • CVE-2021-39621HigJan 14, 2022
    risk 0.51cvss 7.8epss 0.00

    In sendLegacyVoicemailNotification of LegacyModeSmsHandler.java, there is a possible permissions bypass due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for…

  • CVE-2021-20172HigDec 30, 2021
    risk 0.51cvss 7.8epss 0.00

    All known versions of the Netgear Genie Installer for macOS contain a local privilege escalation vulnerability. The installer of the macOS version of Netgear Genie handles certain files in an insecure way. A malicious actor who has local access to the endpoint on which the…

  • CVE-2021-27445HigDec 21, 2021
    risk 0.51cvss 7.8epss 0.00

    Mesa Labs AmegaView Versions 3.0 and prior has insecure file permissions that could be exploited to escalate privileges on the device.

  • CVE-2021-43065HigDec 9, 2021
    risk 0.51cvss 7.8epss 0.00

    A incorrect permission assignment for critical resource in Fortinet FortiNAC version 9.2.0, version 9.1.3 and below, version 8.8.9 and below allows attacker to gain higher privileges via the access to sensitive system data.

  • CVE-2021-43034HigDec 6, 2021
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. A world writable file allowed local users to execute arbitrary code as the user apache, leading to privilege escalation.

  • CVE-2021-43019HigNov 23, 2021
    risk 0.51cvss 7.8epss 0.02

    Adobe Creative Cloud version 5.5 (and earlier) are affected by a privilege escalation vulnerability in the resources leveraged by the Setup.exe service. An unauthenticated attacker could leverage this vulnerability to remove files and escalate privileges under the context of…

  • CVE-2021-0064HigNov 17, 2021
    risk 0.51cvss 7.8epss 0.00

    Insecure inherited permissions in the Intel(R) PROSet/Wireless WiFi software installer for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2021-33094HigNov 17, 2021
    risk 0.51cvss 7.8epss 0.00

    Insecure inherited permissions in the installer for the Intel(R) NUC M15 Laptop Kit Keyboard LED Service driver pack before version 1.0.0.4 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2021-33093HigNov 17, 2021
    risk 0.51cvss 7.8epss 0.00

    Insecure inherited permissions in the installer for the Intel(R) NUC M15 Laptop Kit Serial IO driver pack before version 30.100.2104.1 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2021-33091HigNov 17, 2021
    risk 0.51cvss 7.8epss 0.00

    Insecure inherited permissions in the installer for the Intel(R) NUC M15 Laptop Kit audio driver pack before version 1.3 may allow an authenticated user to potentially enable escalation of privilege via local access.