Falhas do tipo CWE-732

690 resultados
CVE-2025-55524HIGHInsecure permissions in Agent-Zero v0.8.* allow attackers to arbitrarily reset the system via unspecified vectors.EPSS 0.3%CVE-2023-35870MEDIUMImproper Access Control in SAP S/4HANA (Manage Journal Entry Template)EPSS 0.3%CVE-2023-0834HIGHIncorrect Permission Assignment for Critical Resource vulnerability in HYPR Workforce Access on MacOS allows Privilege Escalation.This issueEPSS 0.3%CVE-2023-31142LOWDiscourse's general category permissions could be set back to defaultEPSS 0.3%CVE-2023-49257HIGHCommand execution using the certificate upload utilityEPSS 0.3%CVE-2023-4777LOWIncorrect Permission Assignment on Qualys Container Scanning Connector Plugin 1.6.2.6 and earlier EPSS 0.3%CVE-2022-32929MEDIUMA permissions issue was addressed with additional restrictions. This issue is fixed in iOS 15.7.1 and iPadOS 15.7.1, iOS 15.7 and iPadOS 15.EPSS 0.3%CVE-2019-19341MEDIUMA flaw was found in Ansible Tower, versions 3.6.x before 3.6.2, where files in '/var/backup/tower' are left world-readable. These files inclEPSS 0.3%CVE-2020-10781MEDIUMA flaw was found in the Linux Kernel before 5.8-rc6 in the ZRAM kernel module, where a user with a local account and the ability to read theEPSS 0.3%CVE-2024-45164MEDIUMAkamai SIA (Secure Internet Access Enterprise) ThreatAvert, in SPS (Security and Personalization Services) before the latest 19.2.0 patch anEPSS 0.3%CVE-2019-5642LOWMAGICKEPSS 0.3%CVE-2016-8637MEDIUMA local information disclosure issue was found in dracut before 045 when generating initramfs images with world-readable permissions when 'eEPSS 0.3%CVE-2024-41954MEDIUMFOG Weak file permissionsEPSS 0.3%CVE-2024-6360MEDIUMIncorrect Permission Assignment for Critical Resource vulnerability has been discovered in OpenText™ Vertica.EPSS 0.3%CVE-2024-1724MEDIUMsnapd allows $HOME/bin symlinkEPSS 0.3%CVE-2024-23223MEDIUMA privacy issue was addressed with improved handling of files. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, tvOS 17.3EPSS 0.3%CVE-2019-2389MEDIUMProcess termination via PID file manipulationEPSS 0.3%CVE-2025-45468HIGHInsecure permissions in fc-stable-diffusion-plus v1.0.18 allows attackers to escalate privileges and compromise the customer cloud account.EPSS 0.3%CVE-2025-45472HIGHInsecure permissions in autodeploy-layer v1.2.0 allows attackers to escalate privileges and compromise the customer cloud account.EPSS 0.3%CVE-2024-39967MEDIUMInsecure permissions in Aginode GigaSwitch v5 allows attackers to access sensitive information via using the SCP command.EPSS 0.3%