Vulnerabilities > Incorrect Permission Assignment for Critical Resource

DATE CVE VULNERABILITY TITLE RISK
2023-10-12 CVE-2023-32723 Incorrect Permission Assignment for Critical Resource vulnerability in Zabbix
Request to LDAP is sent before user permissions are checked.
network
low complexity
zabbix CWE-732
critical
9.1
2023-10-12 CVE-2023-32724 Incorrect Permission Assignment for Critical Resource vulnerability in Zabbix
Memory pointer is in a property of the Ducktape object.
network
low complexity
zabbix CWE-732
8.8
2023-10-10 CVE-2022-30527 Incorrect Permission Assignment for Critical Resource vulnerability in Siemens Sinec NMS 1.0/1.0.3
A vulnerability has been identified in SINEC NMS (All versions < V2.0).
local
low complexity
siemens CWE-732
7.8
2023-10-10 CVE-2023-38640 Incorrect Permission Assignment for Critical Resource vulnerability in Siemens Sicam Pas/Pqs
A vulnerability has been identified in SICAM PAS/PQS (All versions >= V8.00 < V8.22).
local
low complexity
siemens CWE-732
4.4
2023-10-10 CVE-2023-45205 Incorrect Permission Assignment for Critical Resource vulnerability in Siemens Sicam Pas/Pqs
A vulnerability has been identified in SICAM PAS/PQS (All versions >= V8.00 < V8.20).
local
low complexity
siemens CWE-732
7.8
2023-10-10 CVE-2023-42189 Incorrect Permission Assignment for Critical Resource vulnerability in multiple products
Insecure Permissions vulnerability in Connectivity Standards Alliance Matter Official SDK v.1.1.0.0 , Nanoleaf Light strip v.3.5.10, Govee LED Strip v.3.00.42, switchBot Hub2 v.1.0-0.8, Phillips hue hub v.1.59.1959097030, and yeelight smart lamp v.1.12.69 allows a remote attacker to cause a denial of service via a crafted script to the KeySetRemove function.
7.5
2023-10-09 CVE-2023-45369 Incorrect Permission Assignment for Critical Resource vulnerability in Mediawiki
An issue was discovered in the PageTriage extension for MediaWiki before 1.35.12, 1.36.x through 1.39.x before 1.39.5, and 1.40.x before 1.40.1.
network
low complexity
mediawiki CWE-732
4.3
2023-10-09 CVE-2023-45364 Incorrect Permission Assignment for Critical Resource vulnerability in multiple products
An issue was discovered in includes/page/Article.php in MediaWiki 1.36.x through 1.39.x before 1.39.5 and 1.40.x before 1.40.1.
network
low complexity
mediawiki debian CWE-732
5.3
2023-10-06 CVE-2023-36465 Incorrect Permission Assignment for Critical Resource vulnerability in Decidim
Decidim is a participatory democracy framework, written in Ruby on Rails, originally developed for the Barcelona City government online and offline participation website.
network
low complexity
decidim CWE-732
7.1
2023-10-05 CVE-2023-44387 Incorrect Permission Assignment for Critical Resource vulnerability in Gradle
Gradle is a build tool with a focus on build automation and support for multi-language development.
local
low complexity
gradle CWE-732
6.5