CWE-275
116 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-275page 1 of 3
- CVE-2017-6513CRITICALCVSS 9.9EG 9.92017-03-11
The WHMCS Reseller Module V2 2.0.2 in Softaculous Virtualizor before 2.9.1.0 does not verify the user correctly, which allows remote authenticated users to control other virtual machines managed by Virtualizor by accessing a modified URL.
- CVE-2021-22566CRITICALCVSS 9.8EG 9.82022-01-18
An incorrect setting of UXN bits within mmu_flags_to_s1_pte_attr lead to privileged executable pages being mapped as executable from an unprivileged context. This can be leveraged by an attacker to bypass executability restrictions of kern…
- CVE-2017-17060CRITICALCVSS 9.8EG 9.82019-05-23
OX Software GmbH OX App Suite 7.8.4 and earlier is affected by: Insecure Permissions.
- CVE-2018-15379CRITICALCVSS 9.8EG 9.82018-10-05
A vulnerability in which the HTTP web server for Cisco Prime Infrastructure (PI) has unrestricted directory permissions could allow an unauthenticated, remote attacker to upload an arbitrary file. This file could allow the attacker to exec…
- CVE-2017-16887CRITICALCVSS 9.8EG 9.82018-01-12
The portal on FiberHome Mobile WIFI Device Model LM53Q1 VH519R05C01S38 uses SOAP based web services in order to interact with the portal. Unauthorized Access to Web Services can result in disclosure of the WLAN key/password.
- CVE-2020-14496CRITICALCVSS 8.3EG 9.82022-05-19
Successful exploitation of this vulnerability for multiple Mitsubishi Electric Factory Automation Engineering Software Products of various versions could allow an attacker to escalate privilege and execute malicious programs, which could c…
- CVE-2023-39399CRITICALCVSS 9.1EG 9.12023-08-13
Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization.
- CVE-2023-39398CRITICALCVSS 9.1EG 9.12023-08-13
Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization.
- CVE-2022-0742CRITICALCVSS 9.1EG 9.12022-03-18
Memory leak in icmp6 implementation in Linux Kernel 5.13+ allows a remote attacker to DoS a host by making it go out-of-memory via icmp6 packets of type 130 or 131. We recommend upgrading past commit 2d3916f3189172d5c69d33065c3c21119fe539f…
- CVE-2022-22988CRITICALCVSS 7.7EG 9.12022-01-13
File and directory permissions have been corrected to prevent unintended users from modifying or accessing resources. It would be more difficult for an authenticated attacker to now traverse through the files and directories. This can only…
- CVE-2025-8797HIGHCVSS 8.8EG 8.82025-08-10
A vulnerability was found in LitmusChaos Litmus up to 3.19.0 and classified as critical. This issue affects some unknown processing of the component LocalStorage Handler. The manipulation leads to permission issues. The attack may be initi…
- CVE-2025-6765HIGHCVSS 8.8EG 8.82025-06-27
A vulnerability, which was classified as critical, has been found in Intelbras InControl 2.21.60.9. This issue affects some unknown processing of the file /v1/operador/ of the component HTTP PUT Request Handler. The manipulation leads to p…
- CVE-2023-5263HIGHCVSS 8.8EG 8.82023-09-29
A vulnerability was found in ZZZCMS 2.1.7 and classified as critical. Affected by this issue is the function restore of the file /admin/save.php of the component Database Backup File Handler. The manipulation leads to permission issues. Th…
- CVE-2019-2177HIGHCVSS 8.8EG 8.82019-09-05
In isPreferred of HidProfile.java in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible device type confusion due to a permissions bypass. This could lead to remote code execution with no additional execution privileges needed. User…
- CVE-2013-3703HIGHCVSS 8.8EG 8.82018-06-08
The controller of the Open Build Service API prior to version 2.4.4 is missing a write permission check, allowing an authenticated attacker to add or remove user roles from packages and/or project meta data.
- CVE-2016-8520HIGHCVSS 8.8EG 8.82018-02-15
HPE Helion Eucalyptus v4.3.0 and earlier does not correctly check IAM user's permissions for accessing versioned objects and ACLs. In some cases, authenticated users with S3 permissions could also access versioned data.
- CVE-2017-11463HIGHCVSS 8.8EG 8.82017-12-11
In Ivanti Service Desk (formerly LANDESK Management Suite) versions between 2016.3 and 2017.3, an Unrestricted Direct Object Reference leads to referencing/updating objects belonging to other users. In other words, a normal user can send r…
- CVE-2015-5153HIGHCVSS 8.8EG 8.82017-08-18
Pulp does not remove permissions for named objects upon deletion, which allows authenticated users to gain the privileges of a deleted object via creating an object with the same name.
- CVE-2016-4288HIGHCVSS 8.4EG 8.42017-01-06
A local privilege escalation vulnerability exists in BlueStacks App Player. The BlueStacks App Player installer creates a registry key with weak permissions that allows users to execute arbitrary programs with SYSTEM privileges.
- CVE-2016-10846HIGHCVSS 8.1EG 8.12019-08-01
cPanel before 11.54.0.4 allows arbitrary file-chown and file-chmod operations during Roundcube database conversions (SEC-79).
- CVE-2017-2590HIGHCVSS 8.1EG 8.12018-07-27
A vulnerability was found in ipa before 4.4. IdM's ca-del, ca-disable, and ca-enable commands did not properly check the user's permissions while modifying CAs in Dogtag. An authenticated, unauthorized attacker could use this flaw to delet…
- CVE-2014-1632HIGHCVSS 8.1EG 8.12018-01-31
htdocs/setup/index.php in Eventum before 2.3.5 allows remote attackers to inject and execute arbitrary PHP code via the hostname parameter.
- CVE-2017-1396HIGHCVSS 4.2EG 8.12018-08-06
IBM Security Identity Governance Virtual Appliance 5.2 through 5.2.3.2 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. IBM X-Force ID: 127342.
- CVE-2026-19191HIGHCVSS 7.8EG 7.82026-08-07
A security vulnerability has been detected in StableBit DrivePool 2.3.13.1687. This vulnerability affects unknown code of the file C:\Program Files\StableBit\DrivePool\DrivePool.Service.exe of the component DrivePoolService. Such manipulat…
- CVE-2026-19190HIGHCVSS 7.8EG 7.82026-08-07
A weakness has been identified in StableBit Scanner 2.6.13.4088. This affects an unknown part of the file C:\Program Files (x86)\StableBit\Scanner\Service\Scanner.Service.exe of the component ScannerService. This manipulation causes permis…
- CVE-2025-10941HIGHCVSS 7.8EG 7.82025-09-25
A vulnerability was determined in Topaz SERVCore Teller 2.14.0-RC2/2.14.1. Affected by this issue is some unknown functionality of the file SERVCoreTeller_2.0.40D.msi of the component Installer. Executing manipulation can lead to permissio…
- CVE-2022-22251HIGHCVSS 7.8EG 7.82022-10-18
On cSRX Series devices software permission issues in the container filesystem and stored files combined with storing passwords in a recoverable format in Juniper Networks Junos OS allows a local, low-privileged attacker to elevate their pe…
- CVE-2022-25153HIGHCVSS 7.8EG 7.82022-06-09
The ITarian Endpoint Manage Communication Client, prior to version 6.43.41148.21120, is compiled using insecure OpenSSL settings. Due to this setting, a malicious actor with low privileges access to a system can escalate his privileges to …
- CVE-2020-8471HIGHCVSS 7.8EG 7.82020-04-29
For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions versions 5.1, 6.0 and 6.1, Compact HMI versions 5.1 and 6.0, Control Builder Safe 1.0, 1.1 and 2.0, Symphony Plus -S+…
- CVE-2020-8474HIGHCVSS 7.8EG 7.82020-04-22
Weak Registry permissions in ABB System 800xA Base allow low privileged users to read and modify registry settings related to control system functionality, allowing an authenticated attacker to cause system functions to stop or malfunction.
- CVE-2019-11146HIGHCVSS 7.8EG 7.82019-08-19
Improper file verification in Intel® Driver & Support Assistant before 19.7.30.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2019-11145HIGHCVSS 7.8EG 7.82019-08-19
Improper file verification in Intel® Driver & Support Assistant before 19.7.30.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2017-18390HIGHCVSS 7.8EG 7.82019-08-02
cPanel before 68.0.15 allows code execution in the context of the root account because of weak permissions on incremental backups (SEC-322).
- CVE-2019-1618HIGHCVSS 7.8EG 7.82019-03-11
A vulnerability in the Tetration Analytics agent for Cisco Nexus 9000 Series Switches in standalone NX-OS mode could allow an authenticated, local attacker to execute arbitrary code as root. The vulnerability is due to an incorrect permiss…
- CVE-2016-7066HIGHCVSS 7.8EG 7.82018-09-11
It was found that the improper default permissions on /tmp/auth directory in JBoss Enterprise Application Platform before 7.1.0 can allow any local user to connect to CLI and allow the user to execute any arbitrary operations.
- CVE-2016-8732HIGHCVSS 7.8EG 7.82018-04-24
Multiple security flaws exists in InvProtectDrv.sys which is a part of Invincea Dell Protected Workspace 5.1.1-22303. Weak restrictions on the driver communication channel and additional insufficient checks allow any application to turn of…
- CVE-2015-8300HIGHCVSS 7.8EG 7.82017-08-28
Polycom BToE Connector before 3.0.0 uses weak permissions (Everyone: Full Control) for "Program Files (x86)\polycom\polycom btoe connector\plcmbtoesrv.exe," which allows local users to gain privileges via a Trojan horse file.
- CVE-2016-7382HIGHCVSS 7.8EG 7.82016-11-08
For the NVIDIA Quadro, NVS, GeForce, and Tesla products, NVIDIA GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys for Windows or nvidia.ko for Linux) handler where a missing permissions check may allow user…
- CVE-2016-8856HIGHCVSS 7.8EG 7.82016-10-31
Foxit Reader for Mac 2.1.0.0804 and earlier and Foxit Reader for Linux 2.1.0.0805 and earlier suffered from a vulnerability where weak file permissions could be exploited by attackers to execute arbitrary code. After the installation, Foxi…
- CVE-2025-58287HIGHCVSS 5.5EG 7.82025-10-11
Use After Free (UAF) vulnerability in the office service. Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2022-0343HIGHCVSS 3.3EG 7.82022-03-29
A local attacker, as a different local user, may be able to send a HTTP request to 127.0.0.1:10000 after the user (typically a developer) manually invoked the ./tools/run-dev-server script. It is recommended to upgrade to any version beyon…
- CVE-2021-1437HIGHCVSS 7.5EG 7.52021-03-24
A vulnerability in the FlexConnect Upgrade feature of Cisco Aironet Series Access Points Software could allow an unauthenticated, remote attacker to obtain confidential information from an affected device. This vulnerability is due to an u…
- CVE-2016-9061HIGHCVSS 7.5EG 7.52018-06-11
A previously installed malicious Android application which defines a specific signature-level permissions used by Firefox can access API keys meant for Firefox only. Note: This issue only affects Firefox for Android. Other versions and ope…
- CVE-2016-5299HIGHCVSS 7.5EG 7.52018-06-11
A previously installed malicious Android application with same signature-level permissions as Firefox can intercept AuthTokens meant for Firefox only. Note: This issue only affects Firefox for Android. Other versions and operating systems …
- CVE-2014-1631HIGHCVSS 7.5EG 7.52018-01-31
Eventum before 2.3.5 allows remote attackers to reinstall the application via direct request to /setup/index.php.
- CVE-2017-17876HIGHCVSS 7.5EG 7.52017-12-27
Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a user=download request with a pathname in the path parameter.
- CVE-2015-7781HIGHCVSS 7.5EG 7.52017-06-27
ManageEngine Firewall Analyzer before 8.0 does not restrict access permissions.
- CVE-2016-7988HIGHCVSS 7.5EG 7.52016-10-31
On Samsung Galaxy S4 through S7 devices, absence of permissions on the BroadcastReceiver responsible for handling the com.[Samsung].android.intent.action.SET_WIFI intent leads to unsolicited configuration messages being handled by wifi-ser…
- CVE-2026-19376HIGHCVSS 7.3EG 7.32026-08-09
A vulnerability has been found in Uasoft Badaso 3.0.0-alpha. This vulnerability affects the function ApiRequest::class of the file src/Routes/api.php of the component File API. The manipulation leads to permission issues. It is possible to…
- CVE-2024-13189HIGHCVSS 7.3EG 7.32025-01-08
A vulnerability classified as critical has been found in ZeroWdd myblog 1.0. This affects an unknown part of the file src/main/java/com/wdd/myblog/config/MyBlogMvcConfig.java. The manipulation leads to permission issues. It is possible to …
Map vulnerabilities like CWE-275 to your infrastructure
EchelonGraph correlates every CVE — across CWE-275 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →