CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,721 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 10 of 35
- CVE-2024-9858HIGHCVSS 7.8EG 7.82024-10-16
There exists an insecure default user permission in Google Cloud Migrate to containers from version 1.1.0 to 1.2.2 Windows installs. A local "m2cuser" was greated with administrator privileges. This posed a security risk if the "analyze" …
- CVE-2024-9167HIGHCVSS 7.8EG 7.82024-10-08
Under specific circumstances, insecure permissions in Ivanti Velocity License Server before version 5.2 allows a local authenticated attacker to achieve local privilege escalation.
- CVE-2024-40655HIGHCVSS 7.8EG 7.82024-09-11
In bindAndGetCallIdentification of CallScreeningServiceHelper.java, there is a possible way to maintain a while-in-use permission in the background due to a permissions bypass. This could lead to local escalation of privilege with no addit…
- CVE-2024-40654HIGHCVSS 7.8EG 7.82024-09-11
In multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
- CVE-2024-43791HIGHCVSS 7.8EG 7.82024-08-23
RequestStore provides per-request global storage for Rack. The files published as part of request_store 1.3.2 have 0666 permissions, meaning that they are world-writable, which allows local users to execute arbitrary code. This version was…
- CVE-2024-4763HIGHCVSS 7.8EG 7.82024-08-16
An insecure driver vulnerability was reported in Lenovo Display Control Center (LDCC) and Lenovo Accessories and Display Manager (LADM) that could allow a local attacker to escalate privileges to kernel.
- CVE-2024-2175HIGHCVSS 7.8EG 7.82024-08-16
An insecure permissions vulnerability was reported in Lenovo Display Control Center (LDCC) and Lenovo Accessories and Display Manager (LADM) that could allow a local attacker to escalate privileges.
- CVE-2024-42053HIGHCVSS 7.8EG 7.82024-07-28
The MSI installer for Splashtop Streamer for Windows before 3.6.0.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM by placing a version.dll file in the fold…
- CVE-2024-32861HIGHCVSS 7.8EG 7.82024-07-16
Under certain circumstances the impacted Software House C•CURE 9000 installer will utilize unnecessarily wide permissions.
- CVE-2024-4679HIGHCVSS 7.8EG 7.82024-07-02
Incorrect Default Permissions vulnerability in Hitachi JP1/Extensible SNMP Agent for Windows, Hitachi JP1/Extensible SNMP Agent on Windows, Hitachi Job Management Partner1/Extensible SNMP Agent on Windows allows File Manipulation.This issu…
- CVE-2024-38459HIGHCVSS 7.8EG 7.82024-06-16
langchain_experimental (aka LangChain Experimental) before 0.0.61 for LangChain provides Python REPL access without an opt-in step. NOTE; this issue exists because of an incomplete fix for CVE-2024-27444.
- CVE-2023-43629HIGHCVSS 7.8EG 7.82024-05-16
Incorrect default permissions in some Intel(R) GPA software installers before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2024-34474HIGHCVSS 7.8EG 7.82024-05-05
Clario through 2024-04-11 for Desktop has weak permissions for %PROGRAMDATA%\Clario and tries to load DLLs from there as SYSTEM.
- CVE-2023-38295HIGHCVSS 7.8EG 7.82024-04-22
Certain software builds for the TCL 30Z and TCL 10 Android devices contain a vulnerable, pre-installed app that relies on a missing permission that provides no protection at runtime. The missing permission is required as an access permissi…
- CVE-2024-21116HIGHCVSS 7.8EG 7.82024-04-16
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infr…
- CVE-2024-26574HIGHCVSS 7.8EG 7.82024-04-08
Insecure Permissions vulnerability in Wondershare Filmora v.13.0.51 allows a local attacker to execute arbitrary code via a crafted script to the WSNativePushService.exe
- CVE-2024-30977HIGHCVSS 7.8EG 7.82024-04-05
An issue in Secnet Security Network Intelligent AC Management System v.1.02.040 allows a local attacker to escalate privileges via the password component.
- CVE-2024-27674HIGHCVSS 7.8EG 7.82024-04-03
Macro Expert through 4.9.4 allows BUILTIN\Users:(OI)(CI)(M) access to the "%PROGRAMFILES(X86)%\GrassSoft\Macro Expert" folder and thus an unprivileged user can escalate to SYSTEM by replacing the MacroService.exe binary.
- CVE-2024-1156HIGHCVSS 7.8EG 7.82024-02-20
Incorrect directory permissions for the shared NI RabbitMQ service may allow a local authenticated user to read RabbitMQ configuration information and potentially enable escalation of privileges.
- CVE-2024-1155HIGHCVSS 7.8EG 7.82024-02-20
Incorrect permissions in the installation directories for shared SystemLink Elixir based services may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2024-0034HIGHCVSS 7.8EG 7.82024-02-16
In BackgroundLaunchProcessController, there is a possible way to launch arbitrary activity from the background due to BAL Bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interac…
- CVE-2023-50236HIGHCVSS 7.8EG 7.82024-02-13
A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The affected product is vulnerable due to weak file and folder permissions in the installation path. An attacker with local access could exploit this vulnerabili…
- CVE-2024-0833HIGHCVSS 7.8EG 7.82024-01-31
In Telerik Test Studio versions prior to v2023.3.1330, a privilege elevation vulnerability has been identified in the applications installer component. In an environment where an existing Telerik Test Studio install is present, a lower…
- CVE-2023-50612HIGHCVSS 7.8EG 7.82024-01-06
Insecure Permissions vulnerability in fit2cloud Cloud Explorer Lite version 1.4.1, allow local attackers to escalate privileges and obtain sensitive information via the cloud accounts parameter.
- CVE-2023-41718HIGHCVSS 7.8EG 7.82023-11-15
When a particular process flow is initiated, an attacker may be able to gain unauthorized elevated privileges on the affected system when having control over a specific file.
- CVE-2023-4706HIGHCVSS 7.8EG 7.82023-11-08
A privilege escalation vulnerability was reported in Lenovo preloaded devices deployed using Microsoft AutoPilot under a standard user account due to incorrect default privileges.
- CVE-2023-41726HIGHCVSS 7.8EG 7.82023-11-03
Ivanti Avalanche Incorrect Default Permissions allows Local Privilege Escalation Vulnerability
- CVE-2023-5623HIGHCVSS 7.8EG 7.82023-10-26
NNM failed to properly set ACLs on its installation directory, which could allow a low privileged user to run arbitrary code with SYSTEM privileges where NNM is installed to a non-standard location
- CVE-2023-3112HIGHCVSS 7.8EG 7.82023-10-25
A vulnerability was reported in Elliptic Labs Virtual Lock Sensor for ThinkPad T14 Gen 3 that could allow an attacker with local access to execute code with elevated privileges.
- CVE-2023-35183HIGHCVSS 7.8EG 7.82023-10-19
The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows authenticated users to abuse local resources to Privilege Escalation.
- CVE-2023-35181HIGHCVSS 7.8EG 7.82023-10-19
The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows users to abuse incorrect folder permission resulting in Privilege Escalation.
- CVE-2023-44157HIGHCVSS 7.8EG 7.82023-09-27
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect 15 (Windows) before build 35979.
- CVE-2023-31468HIGHCVSS 7.8EG 7.82023-09-11
An issue was discovered in Inosoft VisiWin 7 through 2022-2.1 (Runtime RT7.3 RC3 20221209.5). The "%PROGRAMFILES(X86)%\INOSOFT GmbH" folder has weak permissions for Everyone, allowing an attacker to insert a Trojan horse file that runs as …
- CVE-2022-43702HIGHCVSS 7.8EG 7.82023-07-27
When the directory containing the installer does not have sufficiently restrictive file permissions, an attacker can modify (or replace) the installer to execute malicious code.
- CVE-2022-43701HIGHCVSS 7.8EG 7.82023-07-27
When the installation directory does not have sufficiently restrictive file permissions, an attacker can modify files in the installation directory to cause execution of malicious code.
- CVE-2023-38410HIGHCVSS 7.8EG 7.82023-07-27
The issue was addressed with improved checks. This issue is fixed in iOS 16.6 and iPadOS 16.6, macOS Ventura 13.5. A user may be able to elevate privileges.
- CVE-2023-26077HIGHCVSS 7.8EG 7.82023-07-24
Atera Agent through 1.8.3.6 on Windows Creates a Temporary File in a Directory with Insecure Permissions.
- CVE-2023-32183HIGHCVSS 7.8EG 7.82023-07-07
Incorrect Default Permissions vulnerability in the openSUSE Tumbleweed hawk2 package allows users with access to the hacluster to escalate to root This issue affects openSUSE Tumbleweed.
- CVE-2023-21187HIGHCVSS 7.8EG 7.82023-06-28
In onCreate of UsbAccessoryUriActivity.java, there is a possible way to escape the Setup Wizard due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interac…
- CVE-2023-21175HIGHCVSS 7.8EG 7.82023-06-28
In onCreate of DataUsageSummary.java, there is a possible method for a guest user to enable or disable mobile data due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed…
- CVE-2023-20178HIGHCVSS 7.8EG 7.82023-06-28
A vulnerability in the client update process of Cisco AnyConnect Secure Mobility Client Software for Windows and Cisco Secure Client Software for Windows could allow a low-privileged, authenticated, local attacker to elevate privileges to …
- CVE-2023-32405HIGHCVSS 7.8EG 7.82023-06-23
A logic issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An app may be able to gain root privileges.
- CVE-2023-32351HIGHCVSS 7.8EG 7.82023-06-23
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.9 for Windows. An app may be able to gain elevated privileges.
- CVE-2023-30905HIGHCVSS 7.8EG 7.82023-06-16
The MC990 X and UV300 RMC component has and inadequate default configuration that could be exploited to obtain enhanced privilege.
- CVE-2023-21139HIGHCVSS 7.8EG 7.82023-06-15
In bindPlayer of MediaControlPanel.java, there is a possible launch arbitrary activity in SysUI due to Unsafe Intent. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not …
- CVE-2023-21138HIGHCVSS 7.8EG 7.82023-06-15
In onNullBinding of CallRedirectionProcessor.java, there is a possible long lived connection due to improper input validation. This could lead to local escalation of privilege and background activity launches with User execution privileges…
- CVE-2023-21129HIGHCVSS 7.8EG 7.82023-06-15
In getFullScreenIntentDecision of NotificationInterruptStateProviderImpl.java, there is a possible activity launch while the app is in the background due to a BAL bypass. This could lead to local escalation of privilege with no additional …
- CVE-2023-21128HIGHCVSS 7.8EG 7.82023-06-15
In various functions of AppStandbyController.java, there is a possible way to break manageability scenarios due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. …
- CVE-2023-21126HIGHCVSS 7.8EG 7.82023-06-15
In bindOutputSwitcherAndBroadcastButton of MediaControlPanel.java, there is a possible launch arbitrary activity under SysUI due to Unsafe Intent. This could lead to local escalation of privilege with no additional execution privileges nee…
- CVE-2023-21121HIGHCVSS 7.8EG 7.82023-06-15
In onResume of AppManagementFragment.java, there is a possible way to prevent users from forgetting a previously connected VPN due to improper input validation. This could lead to local escalation of privilege with no additional execution …
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →