CWE-732: CWE-732
Yearly Trend
Top Affected Vendors
All CWE-732 CVEs (307)
The PowerPack Pro for Elementor WordPress plugin allows authenticated attackers with contributor-level access or higher to escalate privileges to admi...
Jun 8, 2024This vulnerability allows authenticated users to upload arbitrary CGI-compatible files through a certificate upload utility and execute them with root...
Jan 12, 2024This vulnerability in PHPJabbers Car Rental Script 3.0 allows remote attackers to take over user accounts by changing email addresses and passwords wi...
Aug 28, 2023CVE-2023-31874 is a critical vulnerability in Yank Note 3.52.1 that allows arbitrary code execution when a malicious file is opened. Attackers can exp...
May 29, 2023The Jenkins File Parameter Plugin vulnerability allows attackers with Item/Configure permission to write arbitrary files with attacker-controlled cont...
May 16, 2023This vulnerability in Ovarro TBox devices allows attackers to read, modify, or delete configuration files via Modbus file access functions. This affec...
Jul 28, 2022Mini-Tmall v1.0 has insecure permissions in tomcat-embed-jasper that allow attackers to bypass authentication and access sensitive files or execute ar...
Jul 6, 2022Sunnet eHRD has a broken access control vulnerability that allows authenticated general users to access the account management page and escalate privi...
Dec 1, 2021This vulnerability in Multipass for macOS allows local privilege escalation due to incorrect directory ownership. An attacker with local access can mo...
Oct 1, 2021This vulnerability in Elastic Enterprise Search App Search allows API keys to access engines beyond their intended scope. A less privileged user could...
Sep 15, 2021CVE-2021-35508 is a privilege escalation vulnerability in TeraRecon AQNetClient's NMSAccess32.exe service that allows low-privileged users to execute ...
Sep 1, 2021CVE-2020-18121 is a configuration vulnerability in Indexhibit CMS that allows authenticated attackers to modify PHP files, potentially leading to remo...
Aug 30, 2021CVE-2021-38557 allows attackers to execute arbitrary commands as root on RaspAP 2.6.6 installations. The vulnerability exists because the www-data use...
Aug 24, 2021This vulnerability in Siemens industrial control software allows attackers to modify configuration metafiles due to improper write permissions. By man...
Jul 13, 2021This vulnerability allows a low-privileged attacker with local Windows access to insert malicious files into TIBCO software installations, which then ...
Jun 29, 2021CVE-2017-17677 allows authenticated users with report creation privileges in BMC Remedy to execute arbitrary code through BIRT templates. This affects...
May 19, 2021Soyal Technology 701Client 9.0.1 has insecure file permissions on its client.exe binary, granting the Authenticated Users group full control. This all...
Apr 27, 2021This vulnerability allows low-privileged users in Advantech WebAccess/SCADA to reset administrator passwords and gain full system control through priv...
Apr 26, 2021CVE-2020-24263 is an insecure permissions vulnerability in Portainer that allows non-admin users to create Docker containers with dangerous capabiliti...
Mar 16, 2021This vulnerability in SAP BusinessObjects Business Intelligence platform allows administrators to generate or retrieve a secret passphrase that enable...
Feb 11, 2025CVE-2025-12985 is a privilege escalation vulnerability in IBM Licensing Operator where incorrect file permissions allow local attackers to gain root p...
Jan 20, 2026Wondershare MirrorGo 2.0.11.346 has insecure file permissions on ElevationService.exe, allowing local unprivileged users to replace it with malicious ...
Dec 22, 2025This vulnerability exposes SQL Server database and configuration files through insecure Windows share permissions in NMIS/BioDose networked installati...
Dec 2, 2025This vulnerability allows local privilege escalation to root within containers running vulnerable IBM Transformation Advisor Operator Catalog images. ...
Sep 3, 2025CVE-2021-22284 is an incorrect permission assignment vulnerability in ABB's OPC Server for AC 800M that allows attackers to execute arbitrary code on ...
Feb 4, 2022This vulnerability in NMIS/BioDose V22.02 and earlier allows attackers with database access to execute arbitrary code through SQL Server stored proced...
Dec 2, 2025A low-privileged attacker can remotely access the PKI folder in CODESYS Control runtime systems, allowing them to read/write certificates and keys. Th...
Aug 4, 2025This vulnerability allows local attackers to escalate privileges on systems running affected versions of B&R Industrial Automation Automation Studio. ...
Feb 2, 2024This vulnerability in Intel QAT drivers for Windows allows authenticated local users to escalate privileges by exploiting incorrect permission assignm...
May 10, 2023This CVE allows a local authenticated low-privileged attacker to copy malicious files into existing Docker containers on Juniper Junos OS Evolved syst...
Apr 17, 2023CVE-2021-32101 is an incorrect access control vulnerability in OpenEMR's Patient Portal that allows unauthenticated attackers to register accounts and...
May 7, 2021This vulnerability allows local privilege escalation to root on Linux and macOS systems running IXON VPN Client versions before 1.4.4. A low-privilege...
May 7, 2025This vulnerability in Oracle Agile PLM Framework allows authenticated attackers with low privileges to access sensitive data or cause denial of servic...
Jan 21, 2025This vulnerability allows authenticated users in Devolutions Remote Desktop Manager to request temporary permissions on entries and receive higher pri...
Dec 4, 2024This vulnerability in Apache Ranger Hive Plugin allows users with only SELECT privilege on a database to alter table ownership in Hive when the plugin...
May 5, 2023This vulnerability in PHP-Fusion allows authenticated attackers to cause a Distributed Denial of Service (DDoS) via the polling feature. Attackers wit...
Feb 17, 2023CVE-2022-24872 is an incorrect permission assignment vulnerability in Shopware where permissions granted via admin API in sales channel context remain...
Apr 20, 2022This vulnerability allows non-administrator users on Windows systems to access the Splunk Enterprise installation directory and all its contents after...
Dec 3, 2025This vulnerability allows non-administrator users on Windows systems to access the Splunk Universal Forwarder installation directory and all its conte...
Dec 3, 2025NMIS/BioDose V22.02 and earlier versions have insecure default file permissions in their installation directories. This allows client workstation user...
Dec 2, 2025This vulnerability allows non-administrator users on Windows systems to access the Splunk Universal Forwarder installation directory and all its conte...
Jun 2, 2025An admin with knowledge of another tenant's 128-bit connector GUID can execute debug commands on that connector in Akamai Enterprise Application Acces...
Jan 29, 2025This vulnerability allows network-adjacent authenticated attackers to modify device configuration due to incorrect permission assignments in ZWX-2000C...
Aug 5, 2024RoboDK versions 5.5.3 and prior have insecure directory permissions that allow local users to write files to the RoboDK process. This enables privileg...
Mar 28, 2023CVE-2026-26101 is an incorrect permission assignment vulnerability in Owl opds 2.2.0.4 that allows attackers to manipulate files through crafted netwo...
Feb 20, 2026NextVPN 4.10 has insecure file permissions that allow local users to modify executable files with full access rights. Attackers can replace system exe...
Feb 12, 2026TeamSpeak 3.5.6 has insecure file permissions that allow local attackers to replace executable files with malicious binaries. This enables privilege e...
Jan 13, 2026This vulnerability allows local attackers to perform unauthorized raw disk operations due to an incorrect NULL DACL in SevenCs ORCA G2's regService pr...
Dec 31, 2025This vulnerability allows local attackers with initial low-privileged access to escalate privileges to SYSTEM level by exploiting incorrect folder per...
Dec 23, 2025BuhoNTFS version 1.3.2 contains an insecure XPC service that allows local, unprivileged users to execute arbitrary code with root privileges. This aff...
Dec 12, 2025About CWE-732 (CWE-732)
Our database tracks 307 CVEs classified as CWE-732, with 39 rated critical and 205 rated high severity. The average CVSS score for CWE-732 vulnerabilities is 7.7.
External reference: View CWE-732 on MITRE CWE →
Monitor CWE-732 Vulnerabilities
Get alerted when new CWE-732 CVEs affect your infrastructure.
Start Monitoring Free