CWE-708 · 19 kayıt
Incorrect Ownership Assignment
Bu sınıftaki CVE’ler
19 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2021-32726İstismar yok | Webauthn tokens not removed after user has been deletednextcloud · nextcloud server · CWE-708 | Kritik9,8 | — | %1,8 | 12 Tem 2021 |
39İzleyin | CVE-2023-4008İstismar yok | Incorrect Ownership Assignment in GitLabgitlab · gitlab · CWE-708 | Kritik9,8 | — | %0,7 | 3 Ağu 2023 |
32İzleyin | CVE-2026-40196İstismar yok | HomeBox has Unauthorized API Access via Retained defaultGroup ID After Group Access Revocationsysadminsmedia · homebox · CWE-708 | Yüksek8,1 | — | %0,4 | 17 Nis 2026 |
31İzleyin | CVE-2024-52561İstismar yok | A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (build 55740).parallels · parallels desktop · CWE-708 | Yüksek7,8 | — | %0,3 | 3 Haz 2025 |
30İzleyin | CVE-2022-33737İstismar yok | The OpenVPN Access Server installer creates a log file readable for everyone, which from version 2.10.0 and before 2.11.0 may contain a randopenvpn · openvpn access server · CWE-708 | Yüksek7,5 | — | %0,9 | 6 Tem 2022 |
30İzleyin | CVE-2024-9633İstismar yok | Incorrect Ownership Assignment in GitLabgitlab · gitlab · CWE-708 | Yüksek7,5 | — | %0,5 | 14 Kas 2024 |
29İzleyin | CVE-2023-20044İstismar yok | A vulnerability in Cisco CX Cloud Agent of could allow an authenticated, local attacker to elevate their privileges.cisco · cx cloud agent · CWE-708 | Yüksek7,3 | — | %0,1 | 20 Oca 2023 |
26İzleyin | CVE-2024-45426İstismar yok | Zoom Workplace Apps - Incorrect Ownership Assignmentzoom · meeting software development kit · CWE-708 | Orta6,5 | — | %0,3 | 25 Şub 2025 |
26İzleyin | CVE-2024-41773İstismar yok | IBM Global Configuration Management incorrect ownership assignmentibm · global configuration management · CWE-708 | Orta6,5 | — | %0,3 | 20 Ağu 2024 |
26İzleyin | CVE-2025-5069İstismar yok | Incorrect Ownership Assignment in GitLabgitlab · gitlab · CWE-708 | Orta6,5 | — | %0,2 | 26 Eyl 2025 |
26İzleyin | CVE-2023-20043İstismar yok | A vulnerability in Cisco CX Cloud Agent of could allow an authenticated, local attacker to elevate their privileges.cisco · cx cloud agent · CWE-708 | Orta6,7 | — | %0,2 | 20 Oca 2023 |
26İzleyin | CVE-2023-29122İstismar yok | Incorrect file ownership of privileged service's libraries in Enel X JuiceBoxenel x · juicebox pro 3.0 22kw cellular · CWE-708 | Orta6,7 | — | %0,2 | 5 Kas 2024 |
23İzleyin | CVE-2021-26248İstismar yok | Philips MRI 1.5T and 3T Incorrect Ownership Assignmentphilips · mri 3t firmware · CWE-708 | Orta5,9 | — | %0,2 | 19 Kas 2021 |
22İzleyin | CVE-2024-45417İstismar yok | Zoom Apps for macOS - Uncontrolled Resource Consumptionzoom · meeting software development kit · CWE-708 | Orta5,5 | — | %0,2 | 25 Şub 2025 |
22İzleyin | GHSA-wr2m-38xh-rpc9İstismar yok | Lemmy user purging users or communities or banning users can delete images they didn't upload/exclusively usecrates.io · lemmy_server · CWE-708 | Orta5,5 | — | — | 8 Nis 2025 |
21İzleyin | CVE-2026-32691İstismar yok | Timing ownership claim attack on new external back-end secretscanonical · juju · CWE-708 | Orta5,3 | — | %0,3 | 18 Mar 2026 |
21İzleyin | CVE-2025-14262İstismar yok | Jobs can be saved as workflows with wrong permissions on KNIME Business Hubknime · business hub · CWE-708 | Orta5,3 | — | %0,2 | 8 Ara 2025 |
15İzleyin | CVE-2026-6469İstismar yok | PostgreSQL ALTER TABLE ALTER TYPE resets extended statistics ownershippostgresql · postgresql · CWE-708 | Düşük3,8 | — | %0,3 | 13 Ağu 2026 |
7İzleyin | CVE-2025-5467İstismar yok | Ubuntu Apport Insecure File Permissions Vulnerabilitycanonical · apport · CWE-708 | Düşük1,9 | — | %0,2 | 10 Ara 2025 |
- CVE-2021-3272640Planlayın
Webauthn tokens not removed after user has been deleted
KritikCVSS 9,8İstismar yokEPSS %2nextcloud · nextcloud server12 Tem 2021
- CVE-2023-400839İzleyin
Incorrect Ownership Assignment in GitLab
KritikCVSS 9,8İstismar yokEPSS %1gitlab · gitlab3 Ağu 2023
- CVE-2026-4019632İzleyin
HomeBox has Unauthorized API Access via Retained defaultGroup ID After Group Access Revocation
YüksekCVSS 8,1İstismar yokEPSS %0sysadminsmedia · homebox17 Nis 2026
- CVE-2024-5256131İzleyin
A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (build 55740).
YüksekCVSS 7,8İstismar yokEPSS %0parallels · parallels desktop3 Haz 2025
- CVE-2022-3373730İzleyin
The OpenVPN Access Server installer creates a log file readable for everyone, which from version 2.10.0 and before 2.11.0 may contain a rand
YüksekCVSS 7,5İstismar yokEPSS %1openvpn · openvpn access server6 Tem 2022
- CVE-2024-963330İzleyin
Incorrect Ownership Assignment in GitLab
YüksekCVSS 7,5İstismar yokEPSS %0gitlab · gitlab14 Kas 2024
- CVE-2023-2004429İzleyin
A vulnerability in Cisco CX Cloud Agent of could allow an authenticated, local attacker to elevate their privileges.
YüksekCVSS 7,3İstismar yokEPSS %0cisco · cx cloud agent20 Oca 2023
- CVE-2024-4542626İzleyin
Zoom Workplace Apps - Incorrect Ownership Assignment
OrtaCVSS 6,5İstismar yokEPSS %0zoom · meeting software development kit25 Şub 2025
- CVE-2024-4177326İzleyin
IBM Global Configuration Management incorrect ownership assignment
OrtaCVSS 6,5İstismar yokEPSS %0ibm · global configuration management20 Ağu 2024
- CVE-2025-506926İzleyin
Incorrect Ownership Assignment in GitLab
OrtaCVSS 6,5İstismar yokEPSS %0gitlab · gitlab26 Eyl 2025
- CVE-2023-2004326İzleyin
A vulnerability in Cisco CX Cloud Agent of could allow an authenticated, local attacker to elevate their privileges.
OrtaCVSS 6,7İstismar yokEPSS %0cisco · cx cloud agent20 Oca 2023
- CVE-2023-2912226İzleyin
Incorrect file ownership of privileged service's libraries in Enel X JuiceBox
OrtaCVSS 6,7İstismar yokEPSS %0enel x · juicebox pro 3.0 22kw cellular5 Kas 2024
- CVE-2021-2624823İzleyin
Philips MRI 1.5T and 3T Incorrect Ownership Assignment
OrtaCVSS 5,9İstismar yokEPSS %0philips · mri 3t firmware19 Kas 2021
- CVE-2024-4541722İzleyin
Zoom Apps for macOS - Uncontrolled Resource Consumption
OrtaCVSS 5,5İstismar yokEPSS %0zoom · meeting software development kit25 Şub 2025
- GHSA-wr2m-38xh-rpc922İzleyin
Lemmy user purging users or communities or banning users can delete images they didn't upload/exclusively use
OrtaCVSS 5,5İstismar yokcrates.io · lemmy_server8 Nis 2025
- CVE-2026-3269121İzleyin
Timing ownership claim attack on new external back-end secrets
OrtaCVSS 5,3İstismar yokEPSS %0canonical · juju18 Mar 2026
- CVE-2025-1426221İzleyin
Jobs can be saved as workflows with wrong permissions on KNIME Business Hub
OrtaCVSS 5,3İstismar yokEPSS %0knime · business hub8 Ara 2025
- CVE-2026-646915İzleyin
PostgreSQL ALTER TABLE ALTER TYPE resets extended statistics ownership
DüşükCVSS 3,8İstismar yokEPSS %0postgresql · postgresql13 Ağu 2026
- CVE-2025-54677İzleyin
Ubuntu Apport Insecure File Permissions Vulnerability
DüşükCVSS 1,9İstismar yokEPSS %0canonical · apport10 Ara 2025