Vulnerabilities > Incorrect Permission Assignment for Critical Resource

DATE CVE VULNERABILITY TITLE RISK
2022-10-21 CVE-2022-36122 Incorrect Permission Assignment for Critical Resource vulnerability in Automox
The Automox Agent before 40 on Windows incorrectly sets permissions on key files.
local
low complexity
automox CWE-732
7.8
2022-10-18 CVE-2022-22248 Incorrect Permission Assignment for Critical Resource vulnerability in Juniper Junos OS Evolved
An Incorrect Permission Assignment vulnerability in shell processing of Juniper Networks Junos OS Evolved allows a low-privileged local user to modify the contents of a configuration file which could cause another user to execute arbitrary commands within the context of the follow-on user's session.
local
low complexity
juniper CWE-732
7.3
2022-10-06 CVE-2022-26236 Incorrect Permission Assignment for Critical Resource vulnerability in Beckmancoulter Remisol Advance 2.0.12.1
The default privileges for the running service Normand Remisol Advance Launcher in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries.
local
low complexity
beckmancoulter CWE-732
5.5
2022-10-06 CVE-2022-26238 Incorrect Permission Assignment for Critical Resource vulnerability in Beckmancoulter Remisol Advance 2.0.12.1
The default privileges for the running service Normand Service Manager in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries.
local
low complexity
beckmancoulter CWE-732
5.5
2022-10-06 CVE-2022-39284 Incorrect Permission Assignment for Critical Resource vulnerability in Codeigniter
CodeIgniter is a PHP full-stack web framework.
network
low complexity
codeigniter CWE-732
4.3
2022-10-06 CVE-2022-26237 Incorrect Permission Assignment for Critical Resource vulnerability in Beckmancoulter Remisol Advance 2.0.12.1
The default privileges for the running service Normand Viewer Service in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries.
local
low complexity
beckmancoulter CWE-732
5.5
2022-10-06 CVE-2022-26239 Incorrect Permission Assignment for Critical Resource vulnerability in Beckmancoulter Remisol Advance 2.0.12.1
The default privileges for the running service Normand License Manager in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows unprivileged users to overwrite and manipulate executables and libraries.
local
low complexity
beckmancoulter CWE-732
5.5
2022-10-06 CVE-2022-26240 Incorrect Permission Assignment for Critical Resource vulnerability in Beckmancoulter Remisol Advance 2.0.12.1
The default privileges for the running service Normand Message Buffer in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries.
network
low complexity
beckmancoulter CWE-732
6.5
2022-10-06 CVE-2022-2975 Incorrect Permission Assignment for Critical Resource vulnerability in Avaya Aura Application Enablement Services
A vulnerability related to weak permissions was detected in Avaya Aura Application Enablement Services web application, allowing an administrative user to modify accounts leading to execution of arbitrary code as the root user.
local
low complexity
avaya CWE-732
6.7
2022-09-30 CVE-2022-23726 Incorrect Permission Assignment for Critical Resource vulnerability in Pingidentity Pingcentral
PingCentral versions prior to listed versions expose Spring Boot actuator endpoints that with administrative authentication return large amounts of sensitive environmental and application information.
network
low complexity
pingidentity CWE-732
4.9