CWE-275
114 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-275page 1 of 3
- CVE-2012-5628MEDIUMCVSS 4.4EG 4.42018-05-04
gofer before 0.68 uses world-writable permissions for /var/lib/gofer/journal/watchdog, which allows local users to cause a denial of service by removing journal entries.
- CVE-2013-3703HIGHCVSS 8.8EG 8.82018-06-08
The controller of the Open Build Service API prior to version 2.4.4 is missing a write permission check, allowing an authenticated attacker to add or remove user roles from packages and/or project meta data.
- CVE-2013-4040MEDIUMCVSS 5.5EG 5.52018-05-01
IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.1.2.x before 7.2.1.5 and 7.2.x before 7.2.2.0 on Unix use weak permissions (755) for unspecified configuration and log files, which allows local users to obtain sensitive inform…
- CVE-2013-4201MEDIUMCVSS 4.3EG 4.32018-05-01
Katello allows remote authenticated users to call the "system remove_deletion" CLI command via vectors related to "remove system" permissions.
- CVE-2014-1422MEDIUMCVSS 5.0EG 5.02020-07-22
In Ubuntu's trust-store, if a user revokes location access from an application, the location is still available to the application because the application will honour incorrect, cached permissions. This is because the cache was not ordered…
- CVE-2014-1631HIGHCVSS 7.5EG 7.52018-01-31
Eventum before 2.3.5 allows remote attackers to reinstall the application via direct request to /setup/index.php.
- CVE-2014-1632HIGHCVSS 8.1EG 8.12018-01-31
htdocs/setup/index.php in Eventum before 2.3.5 allows remote attackers to inject and execute arbitrary PHP code via the hostname parameter.
- CVE-2014-6047MEDIUMCVSS 5.3EG 5.32018-08-28
phpMyFAQ before 2.8.13 allows remote authenticated users with certain permissions to read arbitrary attachments by leveraging incorrect "download an attachment" permission checks.
- CVE-2015-5153HIGHCVSS 8.8EG 8.82017-08-18
Pulp does not remove permissions for named objects upon deletion, which allows authenticated users to gain the privileges of a deleted object via creating an object with the same name.
- CVE-2015-7781HIGHCVSS 7.5EG 7.52017-06-27
ManageEngine Firewall Analyzer before 8.0 does not restrict access permissions.
- CVE-2015-7842HIGHCVSS 7.1EG 7.12017-10-10
Huawei FusionServer rack servers RH2288 V3 with software before V100R003C00SPC603, RH2288H V3 with software before V100R003C00SPC503, XH628 V3 with software before V100R003C00SPC602, RH1288 V3 with software before V100R003C00SPC602, RH2288…
- CVE-2015-7889MEDIUMCVSS 5.5EG 5.52017-12-28
The SecEmailComposer/EmailComposer application in the Samsung S6 Edge before the October 2015 MR uses weak permissions for the com.samsung.android.email.intent.action.QUICK_REPLY_BACKGROUND service action, which might allow remote attacker…
- CVE-2015-8223MEDIUMCVSS 5.5EG 5.52017-04-13
Huawei P7 before P7-L00C17B851, P7-L05C00B851, and P7-L09C92B85, and P8 ALE-UL00 before ALE-UL00B211 allows local users to cause a denial of service (OS crash) by leveraging camera permissions and via crafted input to the camera driver.
- CVE-2015-8300HIGHCVSS 7.8EG 7.82017-08-28
Polycom BToE Connector before 3.0.0 uses weak permissions (Everyone: Full Control) for "Program Files (x86)\polycom\polycom btoe connector\plcmbtoesrv.exe," which allows local users to gain privileges via a Trojan horse file.
- CVE-2016-0394LOWCVSS 3.3EG 3.32017-02-01
IBM Integration Bus and WebSphere Message broker sets incorrect permissions for an object that could allow a local attacker to manipulate certain files.
- CVE-2016-10796LOWCVSS 3.3EG 3.32019-08-06
cPanel before 58.0.4 initially uses weak permissions for Apache HTTP Server log files (SEC-130).
- CVE-2016-10818MEDIUMCVSS 6.5EG 6.52019-08-01
cPanel before 57.9999.54 incorrectly sets log-file permissions in dnsadmin-startup and spamd-startup (SEC-124).
- CVE-2016-10846HIGHCVSS 8.1EG 8.12019-08-01
cPanel before 11.54.0.4 allows arbitrary file-chown and file-chmod operations during Roundcube database conversions (SEC-79).
- CVE-2016-2406MEDIUMCVSS 4.3EG 4.32017-03-20
The permission control module in Huawei Document Security Management (aka DSM) before V100R002C05SPC670 allows remote authenticated users to obtain sensitive information from encrypted documents by leveraging incorrect control of permissio…
- CVE-2016-2877LOWCVSS 3.3EG 3.32016-11-30
IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 uses weak permissions for unspecified directories under the web root, which allows local users to modify data by writing to a file.
- CVE-2016-3022MEDIUMCVSS 6.5EG 6.52017-02-01
IBM Security Access Manager for Web could allow an authenticated user to gain access to highly sensitive information due to incorrect file permissions.
- CVE-2016-4288HIGHCVSS 8.4EG 8.42017-01-06
A local privilege escalation vulnerability exists in BlueStacks App Player. The BlueStacks App Player installer creates a registry key with weak permissions that allows users to execute arbitrary programs with SYSTEM privileges.
- CVE-2016-4873MEDIUMCVSS 4.3EG 4.32017-04-17
Cybozu Office 9.0.0 to 10.4.0 allows remote authenticated attackers to execute unintended operations via the Project function.
- CVE-2016-4924HIGHCVSS 5.5EG 8.42017-10-13
An incorrect permissions vulnerability in Juniper Networks Junos OS on vMX may allow local unprivileged users on a host system read access to vMX or vPFE images and obtain sensitive information contained in them such as private cryptograph…
- CVE-2016-5299HIGHCVSS 7.5EG 7.52018-06-11
A previously installed malicious Android application with same signature-level permissions as Firefox can intercept AuthTokens meant for Firefox only. Note: This issue only affects Firefox for Android. Other versions and operating systems …
- CVE-2016-6648MEDIUMCVSS 4.4EG 4.42017-02-03
EMC RecoverPoint versions before 4.4.1.1 and EMC RecoverPoint for Virtual Machines versions before 5.0 are affected by sensitive information disclosure vulnerability as a result of incorrect permissions set on a sensitive system file. A ma…
- CVE-2016-6715MEDIUMCVSS 5.5EG 5.52016-11-25
An elevation of privilege vulnerability in the Framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could allow a local malicious application to record audio w…
- CVE-2016-6719MEDIUMCVSS 5.5EG 5.52016-11-25
An elevation of privilege vulnerability in the Bluetooth component in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to pair wit…
- CVE-2016-7066HIGHCVSS 7.8EG 7.82018-09-11
It was found that the improper default permissions on /tmp/auth directory in JBoss Enterprise Application Platform before 7.1.0 can allow any local user to connect to CLI and allow the user to execute any arbitrary operations.
- CVE-2016-7382HIGHCVSS 7.8EG 7.82016-11-08
For the NVIDIA Quadro, NVS, GeForce, and Tesla products, NVIDIA GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys for Windows or nvidia.ko for Linux) handler where a missing permissions check may allow user…
- CVE-2016-7553LOWCVSS 3.3EG 3.32017-02-27
The buf.pl script before 2.20 in Irssi before 0.8.20 uses weak permissions for the scrollbuffer dump file created between upgrades, which might allow local users to obtain sensitive information from private chat conversations by reading th…
- CVE-2016-7988HIGHCVSS 7.5EG 7.52016-10-31
On Samsung Galaxy S4 through S7 devices, absence of permissions on the BroadcastReceiver responsible for handling the com.[Samsung].android.intent.action.SET_WIFI intent leads to unsolicited configuration messages being handled by wifi-ser…
- CVE-2016-8214MEDIUMCVSS 6.7EG 6.72017-01-25
EMC Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) versions 7.3.0 and 7.3.1 contain a vulnerability that may allow malicious administrators to compromise Avamar servers.
- CVE-2016-8520HIGHCVSS 8.8EG 8.82018-02-15
HPE Helion Eucalyptus v4.3.0 and earlier does not correctly check IAM user's permissions for accessing versioned objects and ACLs. In some cases, authenticated users with S3 permissions could also access versioned data.
- CVE-2016-8605MEDIUMCVSS 5.3EG 5.32017-01-12
The mkdir procedure of GNU Guile temporarily changed the process' umask to zero. During that time window, in a multithreaded application, other threads could end up creating files with insecure permissions. For example, mkdir without the o…
- CVE-2016-8732HIGHCVSS 7.8EG 7.82018-04-24
Multiple security flaws exists in InvProtectDrv.sys which is a part of Invincea Dell Protected Workspace 5.1.1-22303. Weak restrictions on the driver communication channel and additional insufficient checks allow any application to turn of…
- CVE-2016-8856HIGHCVSS 7.8EG 7.82016-10-31
Foxit Reader for Mac 2.1.0.0804 and earlier and Foxit Reader for Linux 2.1.0.0805 and earlier suffered from a vulnerability where weak file permissions could be exploited by attackers to execute arbitrary code. After the installation, Foxi…
- CVE-2016-9061HIGHCVSS 7.5EG 7.52018-06-11
A previously installed malicious Android application which defines a specific signature-level permissions used by Firefox can access API keys meant for Firefox only. Note: This issue only affects Firefox for Android. Other versions and ope…
- CVE-2016-9461MEDIUMCVSS 4.3EG 4.32017-03-28
Nextcloud Server before 9.0.52 & ownCloud Server before 9.0.4 are not properly verifying edit check permissions on WebDAV copy actions. The WebDAV endpoint was not properly checking the permission on a WebDAV COPY action. This allowed an a…
- CVE-2016-9462MEDIUMCVSS 4.3EG 4.32017-03-28
Nextcloud Server before 9.0.52 & ownCloud Server before 9.0.4 are not properly verifying restore privileges when restoring a file. The restore capability of Nextcloud/ownCloud was not verifying whether a user has only read-only access to a…
- CVE-2016-9869MEDIUMCVSS 5.5EG 5.52017-01-06
An issue was discovered in EMC ScaleIO versions before 2.0.1.1. Incorrect permissions on the SCINI driver may allow a low-privileged local attacker to modify the configuration and render the ScaleIO Data Client (SDC) server unavailable.
- CVE-2017-0883MEDIUMCVSS 6.4EG 6.42017-04-05
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a permission increase on re-sharing via OCS API issue. A permission related issue within the OCS sharing API allowed an authenticated adversary to reshare shared files with an increasi…
- CVE-2017-0884MEDIUMCVSS 4.3EG 4.32017-04-05
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a creation of folders in read-only folders despite lacking permissions issue. Due to a logical error in the file caching layer an authenticated adversary is able to create empty folder…
- CVE-2017-11463HIGHCVSS 8.8EG 8.82017-12-11
In Ivanti Service Desk (formerly LANDESK Management Suite) versions between 2016.3 and 2017.3, an Unrestricted Direct Object Reference leads to referencing/updating objects belonging to other users. In other words, a normal user can send r…
- CVE-2017-1396HIGHCVSS 4.2EG 8.12018-08-06
IBM Security Identity Governance Virtual Appliance 5.2 through 5.2.3.2 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. IBM X-Force ID: 127342.
- CVE-2017-1418MEDIUMCVSS 4.0EG 5.52018-11-26
IBM Integration Bus 9.0.0.0, 9.0.0.11, 10.0.0.0, and 10.0.0.14 (including IBM WebSphere Message Broker 8.0.0.0 and 8.0.0.9) has insecure permissions on certain files. A local attacker could exploit this vulnerability to modify or delete th…
- CVE-2017-16887CRITICALCVSS 9.8EG 9.82018-01-12
The portal on FiberHome Mobile WIFI Device Model LM53Q1 VH519R05C01S38 uses SOAP based web services in order to interact with the portal. Unauthorized Access to Web Services can result in disclosure of the WLAN key/password.
- CVE-2017-17060CRITICALCVSS 9.8EG 9.82019-05-23
OX Software GmbH OX App Suite 7.8.4 and earlier is affected by: Insecure Permissions.
- CVE-2017-17876HIGHCVSS 7.5EG 7.52017-12-27
Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a user=download request with a pathname in the path parameter.
- CVE-2017-18390HIGHCVSS 7.8EG 7.82019-08-02
cPanel before 68.0.15 allows code execution in the context of the root account because of weak permissions on incremental backups (SEC-322).
Map vulnerabilities like CWE-275 to your infrastructure
EchelonGraph correlates every CVE — across CWE-275 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →