Vulnerabilities > Incorrect Permission Assignment for Critical Resource

DATE CVE VULNERABILITY TITLE RISK
2021-06-09 CVE-2021-0055 Incorrect Permission Assignment for Critical Resource vulnerability in Intel products
Insecure inherited permissions for some Intel(R) NUC 9 Extreme Laptop Kit LAN Drivers before version 10.42 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2021-06-09 CVE-2021-0056 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Lapbc510 Firmware and Lapbc710 Firmware
Insecure inherited permissions for the Intel(R) NUC M15 Laptop Kit Driver Pack software before updated version 1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2021-06-09 CVE-2021-0077 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Vtune Profiler 2017/2018/2019
Insecure inherited permissions in the installer for the Intel(R) VTune(TM) Profiler before version 2021.1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2021-06-09 CVE-2021-0102 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Unite
Insecure inherited permissions in the Intel Unite(R) Client for Windows before version 4.2.25031 may allow an authenticated user to potentially enable an escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2021-06-09 CVE-2021-0105 Incorrect Permission Assignment for Critical Resource vulnerability in Intel products
Insecure inherited permissions in some Intel(R) ProSet/Wireless WiFi drivers may allow an authenticated user to potentially enable information disclosure and denial of service via adjacent access.
low complexity
intel CWE-732
7.3
2021-06-07 CVE-2020-1742 Incorrect Permission Assignment for Critical Resource vulnerability in multiple products
An insecure modification vulnerability flaw was found in containers using nmstate/kubernetes-nmstate-handler.
local
high complexity
nmstate redhat CWE-732
7.0
2021-06-03 CVE-2021-32460 Incorrect Permission Assignment for Critical Resource vulnerability in Trendmicro Maximum Security 2021 17.0
The Trend Micro Maximum Security 2021 (v17) consumer product is vulnerable to an improper access control vulnerability in the installer which could allow a local attacker to escalate privileges on a target machine.
local
low complexity
trendmicro CWE-732
7.8
2021-06-01 CVE-2021-23021 Incorrect Permission Assignment for Critical Resource vulnerability in F5 Nginx Controller
The Nginx Controller 3.x before 3.7.0 agent configuration file /etc/controller-agent/agent.conf is world readable with current permission bits set to 644.
local
low complexity
f5 CWE-732
5.5
2021-05-27 CVE-2021-31155 Incorrect Permission Assignment for Critical Resource vulnerability in Umask Project Umask
Failure to normalize the umask in please before 0.4 allows a local attacker to gain full root privileges if they are allowed to execute at least one command.
local
low complexity
umask-project CWE-732
7.8
2021-05-27 CVE-2021-33586 Incorrect Permission Assignment for Critical Resource vulnerability in Inspircd 3.8.0/3.8.1/3.9.0
InspIRCd 3.8.0 through 3.9.x before 3.10.0 allows any user (able to connect to the server) to access recently deallocated memory, aka the "malformed PONG" issue.
network
low complexity
inspircd CWE-732
4.3