Vulnerabilities > Incorrect Permission Assignment for Critical Resource

DATE CVE VULNERABILITY TITLE RISK
2023-06-29 CVE-2022-44719 Incorrect Permission Assignment for Critical Resource vulnerability in Ucopia Wireless Appliance Firmware
An issue was discovered in Weblib Ucopia before 6.0.13.
network
low complexity
ucopia CWE-732
7.5
2023-06-29 CVE-2023-37237 Incorrect Permission Assignment for Critical Resource vulnerability in Veritas Netbackup Appliance
In Veritas NetBackup Appliance before 4.1.0.1 MR3, insecure permissions may allow an authenticated Admin to bypass shell restrictions and execute arbitrary operating system commands via SSH.
network
low complexity
veritas CWE-732
7.2
2023-06-27 CVE-2023-35799 Incorrect Permission Assignment for Critical Resource vulnerability in Stormshield Endpoint Security
Stormshield Endpoint Security Evolution 2.0.0 through 2.3.2 has Insecure Permissions.
local
low complexity
stormshield CWE-732
5.5
2023-06-27 CVE-2023-35800 Incorrect Permission Assignment for Critical Resource vulnerability in Stormshield Endpoint Security
Stormshield Endpoint Security Evolution 2.0.0 through 2.4.2 has Insecure Permissions.
network
low complexity
stormshield CWE-732
4.3
2023-06-26 CVE-2023-35168 Incorrect Permission Assignment for Critical Resource vulnerability in Dataease
DataEase is an open source data visualization analysis tool to analyze data and gain insight into business trends.
network
low complexity
dataease CWE-732
6.5
2023-06-23 CVE-2023-29860 Incorrect Permission Assignment for Critical Resource vulnerability in Dtstack Taier 1.3.0
An insecure permissions in /Taier/API/tenant/listTenant interface in DTStack Taier 1.3.0 allows attackers to view sensitive information via the getCookie method.
network
low complexity
dtstack CWE-732
7.5
2023-06-20 CVE-2023-26427 Incorrect Permission Assignment for Critical Resource vulnerability in Open-Xchange Appsuite Backend
Default permissions for a properties file were too permissive.
local
low complexity
open-xchange CWE-732
3.3
2023-06-16 CVE-2023-34154 Incorrect Permission Assignment for Critical Resource vulnerability in Huawei Harmonyos
Vulnerability of undefined permissions in HUAWEI VR screen projection.Successful exploitation of this vulnerability will cause third-party apps to create windows in an arbitrary way, consuming system resources.
network
low complexity
huawei CWE-732
8.2
2023-06-15 CVE-2023-34797 Incorrect Permission Assignment for Critical Resource vulnerability in Temenos CWX 8.5.6
Broken access control in the Registration page (/Registration.aspx) of Termenos CWX v8.5.6 allows attackers to access sensitive information.
network
low complexity
temenos CWE-732
5.4
2023-06-15 CVE-2022-33163 Incorrect Permission Assignment for Critical Resource vulnerability in IBM Security Directory Suite VA 8.0.1
IBM Security Directory Suite VA 8.0.1 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.
network
low complexity
ibm CWE-732
8.1