CWE-732: CWE-732

307
Total CVEs
39
Critical
205
High
7.7
Avg CVSS

Yearly Trend

2026
19
2025
111
2024
57
2023
40
2022
26

Top Affected Vendors

1 Oracle 11
2 Google 10
3 Siemens 9
4 Apple 7
5 Nagios 7
6 Ibm 6
7 Intel 6
8 Sap 5
9 Dell 5
10 Trendmicro 4

All CWE-732 CVEs (307)

CVE-2024-3668
8.8

The PowerPack Pro for Elementor WordPress plugin allows authenticated attackers with contributor-level access or higher to escalate privileges to admi...

Jun 8, 2024
CVE-2023-49257
8.8

This vulnerability allows authenticated users to upload arbitrary CGI-compatible files through a certificate upload utility and execute them with root...

Jan 12, 2024
CVE-2023-40754
8.8

This vulnerability in PHPJabbers Car Rental Script 3.0 allows remote attackers to take over user accounts by changing email addresses and passwords wi...

Aug 28, 2023
CVE-2023-31874
8.8

CVE-2023-31874 is a critical vulnerability in Yank Note 3.52.1 that allows arbitrary code execution when a malicious file is opened. Attackers can exp...

May 29, 2023
CVE-2023-32986
8.8

The Jenkins File Parameter Plugin vulnerability allows attackers with Item/Configure permission to write arbitrary files with attacker-controlled cont...

May 16, 2023
CVE-2021-22648
8.8

This vulnerability in Ovarro TBox devices allows attackers to read, modify, or delete configuration files via Modbus file access functions. This affec...

Jul 28, 2022
CVE-2022-30929
8.8

Mini-Tmall v1.0 has insecure permissions in tomcat-embed-jasper that allow attackers to bypass authentication and access sensitive files or execute ar...

Jul 6, 2022
CVE-2021-43359
8.8

Sunnet eHRD has a broken access control vulnerability that allows authenticated general users to access the account management page and escalate privi...

Dec 1, 2021
CVE-2021-3747
8.8

This vulnerability in Multipass for macOS allows local privilege escalation due to incorrect directory ownership. An attacker with local access can mo...

Oct 1, 2021
CVE-2021-22148
8.8

This vulnerability in Elastic Enterprise Search App Search allows API keys to access engines beyond their intended scope. A less privileged user could...

Sep 15, 2021
CVE-2021-35508
8.8

CVE-2021-35508 is a privilege escalation vulnerability in TeraRecon AQNetClient's NMSAccess32.exe service that allows low-privileged users to execute ...

Sep 1, 2021
CVE-2020-18121
8.8

CVE-2020-18121 is a configuration vulnerability in Indexhibit CMS that allows authenticated attackers to modify PHP files, potentially leading to remo...

Aug 30, 2021
CVE-2021-38557
8.8

CVE-2021-38557 allows attackers to execute arbitrary commands as root on RaspAP 2.6.6 installations. The vulnerability exists because the www-data use...

Aug 24, 2021
CVE-2021-31894
8.8

This vulnerability in Siemens industrial control software allows attackers to modify configuration metafiles due to improper write permissions. By man...

Jul 13, 2021
CVE-2021-23275
8.8

This vulnerability allows a low-privileged attacker with local Windows access to insert malicious files into TIBCO software installations, which then ...

Jun 29, 2021
CVE-2017-17677
8.8

CVE-2017-17677 allows authenticated users with report creation privileges in BMC Remedy to execute arbitrary code through BIRT templates. This affects...

May 19, 2021
CVE-2021-28269
8.8

Soyal Technology 701Client 9.0.1 has insecure file permissions on its client.exe binary, granting the Authenticated Users group full control. This all...

Apr 27, 2021
CVE-2021-22669
8.8

This vulnerability allows low-privileged users in Advantech WebAccess/SCADA to reset administrator passwords and gain full system control through priv...

Apr 26, 2021
CVE-2020-24263
8.8

CVE-2020-24263 is an insecure permissions vulnerability in Portainer that allows non-admin users to create Docker containers with dangerous capabiliti...

Mar 16, 2021
CVE-2025-0064
8.7

This vulnerability in SAP BusinessObjects Business Intelligence platform allows administrators to generate or retrieve a secret passphrase that enable...

Feb 11, 2025
CVE-2025-12985
8.4

CVE-2025-12985 is a privilege escalation vulnerability in IBM Licensing Operator where incorrect file permissions allow local attackers to gain root p...

Jan 20, 2026
CVE-2022-50690
8.4

Wondershare MirrorGo 2.0.11.346 has insecure file permissions on ElevationService.exe, allowing local unprivileged users to replace it with malicious ...

Dec 22, 2025
CVE-2025-64298
8.4

This vulnerability exposes SQL Server database and configuration files through insecure Windows share permissions in NMIS/BioDose networked installati...

Dec 2, 2025
CVE-2025-36193
8.4

This vulnerability allows local privilege escalation to root within containers running vulnerable IBM Transformation Advisor Operator Catalog images. ...

Sep 3, 2025
CVE-2021-22284
8.4

CVE-2021-22284 is an incorrect permission assignment vulnerability in ABB's OPC Server for AC 800M that allows attackers to execute arbitrary code on ...

Feb 4, 2022
CVE-2025-62575
8.3

This vulnerability in NMIS/BioDose V22.02 and earlier allows attackers with database access to execute arbitrary code through SQL Server stored proced...

Dec 2, 2025
CVE-2025-41659
8.3

A low-privileged attacker can remotely access the PKI folder in CODESYS Control runtime systems, allowing them to read/write certificates and keys. Th...

Aug 4, 2025
CVE-2020-24681
8.2

This vulnerability allows local attackers to escalate privileges on systems running affected versions of B&R Industrial Automation Automation Studio. ...

Feb 2, 2024
CVE-2022-41699
8.2

This vulnerability in Intel QAT drivers for Windows allows authenticated local users to escalate privileges by exploiting incorrect permission assignm...

May 10, 2023
CVE-2023-28960
8.2

This CVE allows a local authenticated low-privileged attacker to copy malicious files into existing Docker containers on Juniper Junos OS Evolved syst...

Apr 17, 2023
CVE-2021-32101
8.2

CVE-2021-32101 is an incorrect access control vulnerability in OpenEMR's Patient Portal that allows unauthenticated attackers to register accounts and...

May 7, 2021
CVE-2025-26168
8.1

This vulnerability allows local privilege escalation to root on Linux and macOS systems running IXON VPN Client versions before 1.4.4. A low-privilege...

May 7, 2025
CVE-2025-21564
8.1

This vulnerability in Oracle Agile PLM Framework allows authenticated attackers with low privileges to access sensitive data or cause denial of servic...

Jan 21, 2025
CVE-2024-12149
8.1

This vulnerability allows authenticated users in Devolutions Remote Desktop Manager to request temporary permissions on entries and receive higher pri...

Dec 4, 2024
CVE-2021-40331
8.1

This vulnerability in Apache Ranger Hive Plugin allows users with only SELECT privilege on a database to alter table ownership in Hive when the plugin...

May 5, 2023
CVE-2021-3172
8.1

This vulnerability in PHP-Fusion allows authenticated attackers to cause a Distributed Denial of Service (DDoS) via the polling feature. Attackers wit...

Feb 17, 2023
CVE-2022-24872
8.1

CVE-2022-24872 is an incorrect permission assignment vulnerability in Shopware where permissions granted via admin API in sales channel context remain...

Apr 20, 2022
CVE-2025-20386
8.0

This vulnerability allows non-administrator users on Windows systems to access the Splunk Enterprise installation directory and all its contents after...

Dec 3, 2025
CVE-2025-20387
8.0

This vulnerability allows non-administrator users on Windows systems to access the Splunk Universal Forwarder installation directory and all its conte...

Dec 3, 2025
CVE-2025-64642
8.0

NMIS/BioDose V22.02 and earlier versions have insecure default file permissions in their installation directories. This allows client workstation user...

Dec 2, 2025
CVE-2025-20298
8.0

This vulnerability allows non-administrator users on Windows systems to access the Splunk Universal Forwarder installation directory and all its conte...

Jun 2, 2025
CVE-2025-24527
8.0

An admin with knowledge of another tenant's 128-bit connector GUID can execute debug commands on that connector in Akamai Enterprise Application Acces...

Jan 29, 2025
CVE-2024-41720
8.0

This vulnerability allows network-adjacent authenticated attackers to modify device configuration due to incorrect permission assignments in ZWX-2000C...

Aug 5, 2024
CVE-2023-1516
7.9

RoboDK versions 5.5.3 and prior have insecure directory permissions that allow local users to write files to the RoboDK process. This enables privileg...

Mar 28, 2023
CVE-2026-26101
7.8

CVE-2026-26101 is an incorrect permission assignment vulnerability in Owl opds 2.2.0.4 that allows attackers to manipulate files through crafted netwo...

Feb 20, 2026
CVE-2019-25343
7.8

NextVPN 4.10 has insecure file permissions that allow local users to modify executable files with full access rights. Attackers can replace system exe...

Feb 12, 2026
CVE-2022-50931
7.8

TeamSpeak 3.5.6 has insecure file permissions that allow local attackers to replace executable files with malicious binaries. This enables privilege e...

Jan 13, 2026
CVE-2025-64699
7.8

This vulnerability allows local attackers to perform unauthorized raw disk operations due to an incorrect NULL DACL in SevenCs ORCA G2's regService pr...

Dec 31, 2025
CVE-2025-13703
7.8

This vulnerability allows local attackers with initial low-privileged access to escalate privileges to SYSTEM level by exploiting incorrect folder per...

Dec 23, 2025
CVE-2025-13733
7.8

BuhoNTFS version 1.3.2 contains an insecure XPC service that allows local, unprivileged users to execute arbitrary code with root privileges. This aff...

Dec 12, 2025

About CWE-732 (CWE-732)

Our database tracks 307 CVEs classified as CWE-732, with 39 rated critical and 205 rated high severity. The average CVSS score for CWE-732 vulnerabilities is 7.7.

External reference: View CWE-732 on MITRE CWE →

Monitor CWE-732 Vulnerabilities

Get alerted when new CWE-732 CVEs affect your infrastructure.

Start Monitoring Free