Fallos del tipo CWE-732

690 resultados
CVE-2024-22334MEDIUMIBM UrbanCode Deploy improper privilege controlEPSS 0.4%CVE-2025-43247MEDIUMA permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS VenturEPSS 0.4%CVE-2024-8039CRITICALImproper permission configurationDomain configuration vulnerability of the mobile application (com.afmobi.boomplayer) can lead to account taEPSS 0.4%CVE-2024-5618CRITICALBroken Access Control in PruvaSoft Informatics' Apinizer Management ConsoleEPSS 0.4%CVE-2025-21325HIGHWindows Secure Kernel Mode Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2024-3668HIGHPowerPack Pro for Elementor <= 2.10.17 - Authenticated (Contributor+) Privilege EscalationEPSS 0.4%CVE-2018-14650MEDIUMIt was discovered that sos-collector does not properly set the default permissions of newly created files, making all files created by the tEPSS 0.4%CVE-2023-31238MEDIUMA vulnerability has been identified in SICAM P850 (7KG8500-0AA00-0AA0) (All versions < V3.11), SICAM P850 (7KG8500-0AA00-2AA0) (All versionsEPSS 0.4%CVE-2020-10642In Rockwell Automation RSLinx Classic versions 4.11.00 and prior, an authenticated local attacker could modify a registry key, which could lEPSS 0.4%CVE-2024-8900HIGHAn attacker could write data to the user's clipboard, bypassing the user prompt, during a certain sequence of navigational events. This vulnEPSS 0.4%CVE-2023-33004MEDIUMA missing permission check in Jenkins Tag Profiler Plugin 0.2 and earlier allows attackers with Overall/Read permission to reset profiler stEPSS 0.4%CVE-2022-26340MEDIUMOn F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior EPSS 0.4%CVE-2025-8042CRITICALSandboxed iframe could start downloadsEPSS 0.4%CVE-2024-25646HIGHInformation Disclosure vulnerability in SAP BusinessObjects Web IntelligenceEPSS 0.4%CVE-2026-42497HIGHArchive::Tar versions before 3.08 for Perl extract hardlinks to attacker controlled paths outside the extraction directoryEPSS 0.4%CVE-2024-41820MEDIUMCluster-level privilege escalation in kubeanEPSS 0.4%CVE-2024-9142CRITICALLocal File Inclusion (LFI) in Olgu Computer Systems' e-BelediyeEPSS 0.4%CVE-2024-25645MEDIUMInformation Disclosure vulnerability in SAP NetWeaver (Enterprise Portal)EPSS 0.4%CVE-2024-25644MEDIUMInformation Disclosure vulnerability in NetWeaver (WSRM)EPSS 0.4%CVE-2025-14988CRITICALIncorrect Permission Assignment for Critical Resource vulnerability in iba Systems ibaPDAEPSS 0.4%