While it is executing, the product sets the permissions of an object in a way that violates the intended permissions that have been specified by the user.
MITRE ATT&CK techniques associated with this weakness class (mapped via MITRE CAPEC). A vulnerability of this type could let an adversary carry out: