Vulnerabilities > Incorrect Permission Assignment for Critical Resource

DATE CVE VULNERABILITY TITLE RISK
2023-10-25 CVE-2023-42861 Incorrect Permission Assignment for Critical Resource vulnerability in Apple Macos 14.0
A logic issue was addressed with improved state management.
network
low complexity
apple CWE-732
6.5
2023-10-25 CVE-2023-42489 Incorrect Permission Assignment for Critical Resource vulnerability in Busbaer Eisbaer Scada
EisBaer Scada - CWE-732: Incorrect Permission Assignment for Critical Resource
network
low complexity
busbaer CWE-732
critical
9.8
2023-10-20 CVE-2023-40361 Incorrect Permission Assignment for Critical Resource vulnerability in Secudos Qiata 4.13
SECUDOS Qiata (DOMOS OS) 4.13 has Insecure Permissions for the previewRm.sh daily cronjob.
local
low complexity
secudos CWE-732
7.8
2023-10-13 CVE-2023-44201 Incorrect Permission Assignment for Critical Resource vulnerability in Juniper Junos
An Incorrect Permission Assignment for Critical Resource vulnerability in a specific file of Juniper Networks Junos OS and Junos OS Evolved allows a local authenticated attacker to read configuration changes without having the permissions. When a user with the respective permissions commits a configuration change, a specific file is created.
local
low complexity
juniper CWE-732
5.5
2023-10-12 CVE-2023-32723 Incorrect Permission Assignment for Critical Resource vulnerability in Zabbix
Request to LDAP is sent before user permissions are checked.
network
low complexity
zabbix CWE-732
critical
9.1
2023-10-12 CVE-2023-32724 Incorrect Permission Assignment for Critical Resource vulnerability in Zabbix
Memory pointer is in a property of the Ducktape object.
network
low complexity
zabbix CWE-732
8.8
2023-10-10 CVE-2022-30527 Incorrect Permission Assignment for Critical Resource vulnerability in Siemens Sinec NMS 1.0/1.0.3
A vulnerability has been identified in SINEC NMS (All versions < V2.0).
local
low complexity
siemens CWE-732
7.8
2023-10-10 CVE-2023-38640 Incorrect Permission Assignment for Critical Resource vulnerability in Siemens Sicam Pas/Pqs
A vulnerability has been identified in SICAM PAS/PQS (All versions >= V8.00 < V8.22).
local
low complexity
siemens CWE-732
4.4
2023-10-10 CVE-2023-45205 Incorrect Permission Assignment for Critical Resource vulnerability in Siemens Sicam Pas/Pqs
A vulnerability has been identified in SICAM PAS/PQS (All versions >= V8.00 < V8.20).
local
low complexity
siemens CWE-732
7.8
2023-10-10 CVE-2023-42189 Incorrect Permission Assignment for Critical Resource vulnerability in multiple products
Insecure Permissions vulnerability in Connectivity Standards Alliance Matter Official SDK v.1.1.0.0 , Nanoleaf Light strip v.3.5.10, Govee LED Strip v.3.00.42, switchBot Hub2 v.1.0-0.8, Phillips hue hub v.1.59.1959097030, and yeelight smart lamp v.1.12.69 allows a remote attacker to cause a denial of service via a crafted script to the KeySetRemove function.
7.5