Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-732 (关键资源的不正确权限授予) — Vulnerability Class 445

445 vulnerabilities classified as CWE-732 (关键资源的不正确权限授予). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-41659 CODESYS Control PKI Exposure Enables Remote Certificate Access — Control RTE (SL) 8.3 High2025-08-04
CVE-2025-46093 Liquidfiles 安全漏洞 — LiquidFiles 9.9 Critical2025-08-04
CVE-2025-23285 NVIDIA GPU Display Driver 安全漏洞 — GPU Display Drivers 5.5 Medium2025-08-02
CVE-2025-26469 MedDream PACS Premium 安全漏洞 — MedDream PACS Premium 9.3 Critical2025-07-28
CVE-2017-20198 DC/OS Marathon UI < 1.9.0 Unauthenticated RCE via Docker Mount Abuse — DC/OS Marathon 9.8 -2025-07-23
CVE-2025-30661 Junos OS: Low-privileged user can cause script to run as root, leading to privilege escalation — Junos OS 7.3 High2025-07-11
CVE-2025-27446 Apache APISIX Java Plugin Runner: Local listening file permissions in APISIX plugin runner allow a local attacker to elevate privileges — Apache APISIX Java Plugin Runner 7.8 -2025-07-06
CVE-2025-52992 Nix、lix和GNU Guix 安全漏洞 — Nix 3.2 Low2025-06-27
CVE-2025-5995 Canon EOS Webcam Utility Pro for MAC OS contains an insecure permission issue potentially leading to code execution and privilege escalation — Canon EOS Webcam Utility Pro 7.2AIHighAI2025-06-26
CVE-2025-52923 Sangfor aTrust 安全漏洞 — aTrust 4.3 Medium2025-06-22
CVE-2025-49131 FastGPT Sandbox Vulnerable to Sandbox Bypass — FastGPT 6.3 Medium2025-06-09
CVE-2025-48961 Acronis Cyber Protect 安全漏洞 — Acronis Cyber Protect 16 7.8AIHighAI2025-06-04
CVE-2024-45655 IBM Application Gateway incorrect permission assignment — Application Gateway 5.5 Medium2025-06-03
CVE-2025-20298 Incorrect permission assignment on Universal Forwarder for Windows during new installation or upgrade — Splunk/UniversalForwarder for Windows 8.0 High2025-06-02
CVE-2025-2503 Lenovo PC Manager 安全漏洞 — PC Manager 7.1 High2025-05-30
CVE-2025-48382 Fess has Insecure Temporary File Permissions — fess 5.5AIMediumAI2025-05-27
CVE-2025-40672 Privilege Escalation in Panloader.exe — Panloader.exe 7.8AIHighAI2025-05-26
CVE-2025-32915 Sensitive data exposed during automatic agent updates — Checkmk 5.5AIMediumAI2025-05-22
CVE-2025-3944 Incorrect Permission Assignment for Critical Resource — Niagara Framework 7.2 High2025-05-22
CVE-2025-3936 Incorrect Permission Assignment for Critical Resource — Niagara Framework 6.5 Medium2025-05-22
CVE-2025-2759 GStreamer Incorrect Permission Assignment Local Privilege Escalation Vulnerability — GStreamer 7.8AIHighAI2025-05-22
CVE-2025-34025 Versa Concerto Insecure Docker Mount Container Escape — Concerto 9.8AICriticalAI2025-05-21
CVE-2025-40574 Siemens SCALANCE LPE9403 安全漏洞 — SCALANCE LPE9403 7.8 High2025-05-13
CVE-2025-40572 Siemens SCALANCE LPE9403 安全漏洞 — SCALANCE LPE9403 5.5 Medium2025-05-13
CVE-2025-24009 Siemens SIRIUS 3RK3 Modular Safety System和Siemens SIRIUS Safety Relays 3SK2 安全漏洞 — SIRIUS 3RK3 Modular Safety System (MSS) 5.9 Medium2025-05-13
CVE-2025-42997 Information Disclosure vulnerability in SAP Gateway Client — SAP Gateway Client 6.6 Medium2025-05-13
CVE-2025-26168 IXON VPN Client 安全漏洞 — VPN Client 8.1 High2025-05-07
CVE-2025-26169 IXON VPN Client 安全漏洞 — VPN Client 8.1 High2025-05-07
CVE-2025-23245 NVIDIA vGPU 安全漏洞 — vGPU Software, Cloud Gaming 5.5 Medium2025-05-01
CVE-2025-3395 ABB Automation Builder 安全漏洞 — Automation Builder 7.1 High2025-04-30

Vulnerabilities classified as CWE-732 (关键资源的不正确权限授予) represent 445 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.