VYPR

CWE-732

Incorrect Permission Assignment for Critical Resource

ClassDraftLikelihood: High

Description

The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.

When a resource is given a permission setting that provides access to a wider range of actors than required, it could lead to the exposure of sensitive information, or the modification of that resource by unintended parties. This is especially dangerous when the resource is related to program configuration, execution, or sensitive user data. For example, consider a misconfigured storage account for the cloud that can be read or written by a public or anonymous user.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-1 · CAPEC-122 · CAPEC-127 · CAPEC-17 · CAPEC-180 · CAPEC-206 · CAPEC-234 · CAPEC-60 · CAPEC-61 · CAPEC-62 · CAPEC-642

CVEs mapped to this weakness (1,752)

page 63 of 88
  • CVE-2021-30920MedAug 24, 2021
    risk 0.36cvss 5.5epss 0.00

    A permissions issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.0.1. A local attacker may be able to read sensitive information.

  • CVE-2021-38590MedAug 11, 2021
    risk 0.36cvss 5.5epss 0.00

    In cPanel before 96.0.8, weak permissions on web stats can lead to information disclosure (SEC-584).

  • CVE-2021-0552MedJun 22, 2021
    risk 0.36cvss 5.5epss 0.00

    In getEndItemSliceAction of MediaOutputSlice.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2021-0572MedJun 22, 2021
    risk 0.36cvss 5.5epss 0.00

    In doNotification of AccountManagerService.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2020-14335MedJun 2, 2021
    risk 0.36cvss 5.5epss 0.00

    A flaw was found in Red Hat Satellite, which allows a privileged attacker to read OMAPI secrets through the ISC DHCP of Smart-Proxy. This flaw allows an attacker to gain control of DHCP records from the network. The highest threat from this vulnerability is to system…

  • CVE-2021-23021MedJun 1, 2021
    risk 0.36cvss 5.5epss 0.00

    The Nginx Controller 3.x before 3.7.0 agent configuration file /etc/controller-agent/agent.conf is world readable with current permission bits set to 644.

  • CVE-2021-28646MedApr 13, 2021
    risk 0.36cvss 5.5epss 0.00

    An insecure file permissions vulnerability in Trend Micro Apex One, Apex One as a Service and OfficeScan XG SP1 could allow a local attacker to take control of a specific log file on affected installations.

  • CVE-2019-18243MedFeb 18, 2021
    risk 0.36cvss 5.5epss 0.00

    HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide iFIX configurations through the registry. This may allow privilege escalation.

  • CVE-2019-18255MedFeb 18, 2021
    risk 0.36cvss 5.5epss 0.00

    HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide iFIX configurations through section objects. This may allow privilege escalation.

  • CVE-2020-26196MedFeb 9, 2021
    risk 0.36cvss 5.5epss 0.00

    Dell EMC PowerScale OneFS versions 8.1.0-9.1.0 contain a Backup/Restore Privilege implementation issue. A user with the BackupAdmin role may potentially exploit this vulnerability resulting in the ability to write data outside of the intended file system location.

  • CVE-2020-10553MedFeb 5, 2021
    risk 0.36cvss 5.5epss 0.00

    An issue was discovered in Psyprax before 3.2.2. The file %PROGRAMDATA%\Psyprax32\PPScreen.ini contains a hash for the lockscreen (aka screensaver) of the application. If that entry is removed, the lockscreen is no longer displayed and the app is no longer locked. All local…

  • CVE-2021-1126MedJan 13, 2021
    risk 0.36cvss 5.5epss 0.00

    A vulnerability in the storage of proxy server credentials of Cisco Firepower Management Center (FMC) could allow an authenticated, local attacker to view credentials for a configured proxy server. The vulnerability is due to clear-text storage and weak permissions of related…

  • CVE-2021-0304MedJan 11, 2021
    risk 0.36cvss 5.5epss 0.00

    In several functions of GlobalScreenshot.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure of the user's contacts with User execution privileges needed. User interaction is not needed for exploitation.…

  • CVE-2020-10762MedNov 24, 2020
    risk 0.36cvss 5.5epss 0.00

    An information-disclosure flaw was found in the way that gluster-block before 0.5.1 logs the output from gluster-block CLI operations. This includes recording passwords to the cmd_history.log file which is world-readable. This flaw allows local users to obtain sensitive…

  • CVE-2020-17490MedNov 6, 2020
    risk 0.36cvss 5.5epss 0.00

    The TLS module within SaltStack Salt through 3002 creates certificates with weak file permissions.

  • CVE-2020-0410MedOct 14, 2020
    risk 0.36cvss 5.5epss 0.00

    In setNotification of SapServer.java, there is a possible permission bypass due to a PendingIntent error. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0…

  • CVE-2020-4631MedAug 4, 2020
    risk 0.36cvss 5.5epss 0.00

    IBM Spectrum Protect Plus 10.1.0 through 10.1.6 agent files, in non-default configurations, on Windows are assigned access to everyone with full control permissions, which could allow a local user to cause interruption of the service operations. IBM X-Force ID: 185372.

  • CVE-2020-8472MedApr 29, 2020
    risk 0.36cvss 5.5epss 0.00

    Insufficient folder permissions used by system functions in ABB System 800xA products OPCServer for AC800M (versions 6.0 and earlier) and Control Builder M Professional, MMSServer for AC800M, Base Software for SoftControl (version 6.1 and earlier) allow low privileged users to…

  • CVE-2019-19894MedJan 23, 2020
    risk 0.36cvss 5.5epss 0.00

    In IXP EasyInstall 6.2.13723, it is possible to temporarily disable UAC by using the Agent Service on a client system. An authenticated attacker (non-admin) can disable UAC for other users by renaming and replacing %SYSTEMDRIVE%\IXP\DATA\IXPAS.IXP.

  • CVE-2019-14629MedJan 17, 2020
    risk 0.36cvss 5.5epss 0.00

    Improper permissions in Intel(R) DAAL before version 2020 Gold may allow an authenticated user to potentially enable information disclosure via local access.