Falhas do tipo CWE-732

691 resultados
CVE-2023-27084MEDIUMPermissions vulnerability found in isoftforce Dreamer CMS v.4.0.1 allows local attackers to obtain sensitive information via the AttachmentCEPSS 0.2%CVE-2021-34758MEDIUMCisco TelePresence Collaboration Endpoint and RoomOS Software Denial of Service VulnerabilityEPSS 0.2%CVE-2024-38864MEDIUMUser-Readable Private Key in Windows AgentEPSS 0.2%CVE-2022-43309MEDIUMSupermicro X11SSL-CF HW Rev 1.01, BMC firmware v1.63 was discovered to contain insecure permissions.EPSS 0.2%CVE-2025-1067HIGHThere is a code injection vulnerability in ArcGIS ProEPSS 0.2%CVE-2022-41771MEDIUMIncorrect permission assignment for critical resource in some Intel(R) QAT drivers for Windows before version 1.9.0 may allow an authenticatEPSS 0.2%CVE-2024-54159MEDIUMstalld through 1.19.7 allows local users to cause a denial of service (file overwrite) via a /tmp/rtthrottle symlink attack.EPSS 0.2%CVE-2022-42972HIGHA CWE-732: Incorrect Permission Assignment for Critical Resource vulnerability exists that could cause local privilege escalation when a locEPSS 0.2%CVE-2024-38646HIGHNotes Station 3EPSS 0.2%CVE-2026-7431MEDIUMAn incorrect permission assignment for critical resource of Ivanti Secure Access Client   before 22.8R6 allows a local authenticated user toEPSS 0.2%CVE-2024-28745LOWImproper export of Android application components issue exists in 'ABEMA' App for Android prior to 10.65.0 allowing another app installed onEPSS 0.2%CVE-2026-32810MEDIUMHalloy has insecure file permissions on credential filesEPSS 0.2%CVE-2024-6780LOWImproper permission control in com.android.server.telecomEPSS 0.2%CVE-2023-3282MEDIUMCortex XSOAR: Local Privilege Escalation (PE) Vulnerability in Cortex XSOAR EngineEPSS 0.2%CVE-2022-41699HIGHIncorrect permission assignment for critical resource in some Intel(R) QAT drivers for Windows before version 1.9.0 may allow an authenticatEPSS 0.2%CVE-2025-52094HIGHInsecure Permissions vulnerability in PDQ Smart Deploy V.3.0.2040 allows a local attacker to execute arbtirary code via the \HKLM\SYSTEM\SetEPSS 0.2%CVE-2023-52554MEDIUMPermission control vulnerability in the Bluetooth module. Impact: Successful exploitation of this vulnerability may affect service confidentEPSS 0.2%CVE-2024-0128HIGHNVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager that allows a user of the guest OS to access global resources. A suEPSS 0.2%CVE-2024-46062HIGHMiniconda3 macOS installers before 23.11.0-1 contain a local privilege escalation vulnerability when installed outside the user's home direcEPSS 0.2%CVE-2024-46060HIGHAnaconda3 macOS installers before 2024.06-1 contain a local privilege escalation vulnerability when installed outside the user's home directEPSS 0.2%