CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,721 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 16 of 35
- CVE-2021-3462HIGHCVSS 5.5EG 7.82021-04-13
A privilege escalation vulnerability in Lenovo Power Management Driver for Windows 10, prior to version 1.67.17.54, that could allow unauthorized access to the driver's device object.
- CVE-2022-0486HIGHCVSS 4.4EG 7.82022-05-17
Improper file permissions in the CommandPost, Collector, Sensor, and Sandbox components of Fidelis Network and Deception enables an attacker with local, administrative access to the CLI to modify affected files and enable escalation of pri…
- CVE-2022-0997HIGHCVSS 3.9EG 7.82022-05-17
Improper file permissions in the CommandPost, Collector, and Sensor components of Fidelis Network and Deception enables an attacker with local, administrative access to the CLI to modify affected script files, which could result in arbitra…
- CVE-2025-61035HIGHCVSS 7.7EG 7.72025-10-22
The seffaflik thru 0.0.9 is vulnerable to symlink attacks due to incorrect default permissions given to the .kimlik file and .seffaflik file, which is created with mode 0777 and 0775 respectively, exposing secrets to other local users. Add…
- CVE-2025-53947HIGHCVSS 7.7EG 7.72025-09-18
A local attacker with low privileges on the Windows system where the software is installed can exploit this vulnerability to corrupt sensitive data. A data folder is created with very weak privileges, allowing any user logged into the W…
- CVE-2021-37000HIGHCVSS 7.7EG 7.72024-12-28
Some Huawei wearables have a permission management vulnerability.
- CVE-2024-36495HIGHCVSS 7.7EG 7.72024-06-24
The application Faronics WINSelect (Standard + Enterprise) saves its configuration in an encrypted file on the file system which "Everyone" has read and write access to, path to file: C:\ProgramData\WINSelect\WINSelect.wsd The path f…
- CVE-2024-27155HIGHCVSS 7.7EG 7.72024-06-14
The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise any Toshiba printer. The programs can be replaced by malicious programs by any local or remote attacker. As for the affe…
- CVE-2022-48685HIGHCVSS 7.7EG 7.72024-04-27
An issue was discovered in Logpoint 7.1 before 7.1.2. The daily executed cron file clean_secbi_old_logs is writable by all users and is executed as root, leading to privilege escalation.
- CVE-2023-25645HIGHCVSS 7.7EG 7.72023-06-16
There is a permission and access control vulnerability in some ZTE AndroidTV STBs. Due to improper permission settings, non-privileged application can perform functions that are protected with signature/privilege-level permissions. Exploit…
- CVE-2017-18868HIGHCVSS 7.7EG 7.72020-05-21
Digi XBee 2 devices do not have an effective protection mechanism against remote AT commands, because of issues related to the network stack upon which the ZigBee protocol is built.
- CVE-2024-40805HIGHCVSS 7.1EG 7.72024-07-29
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, watchOS 10.6. An app may be able to bypass Privacy preferences.
- CVE-2024-49202HIGHCVSS 7.6EG 7.62024-12-18
Keyfactor Command before 12.5.0 has Incorrect Access Control: access tokens are over permissioned, aka 64099. The fixed versions are 11.5.1.1, 11.5.2.1, 11.5.3.1, 11.5.4.5, 11.5.6.1, 11.6.0, 12.2.0.1, 12.3.0.1, 12.4.0.1, 12.5.0, and 24.4.0.
- CVE-2025-68825HIGHCVSS 7.5EG 7.52026-08-24
HCL Hive is affected by incorrect default permissions which could allow an attacker unauthorized lateral movement, container breakout, and interception of sensitive internal communications.
- CVE-2025-32749HIGHCVSS 7.5EG 7.52026-05-26
Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information …
- CVE-2026-8487HIGHCVSS 7.5EG 7.52026-05-20
Incorrect default permissions vulnerability in Progress Software MOVEit Automation allows Retrieve Embedded Sensitive Data. This issue affects MOVEit Automation: before 2025.0.11, from 2025.1.0 before 2025.1.7.
- CVE-2026-41712HIGHCVSS 7.5EG 7.52026-05-12
Spring AI's chat memory component contained a problematic default that, when not explicitly overridden, could result in unintended data exposure between users.
- CVE-2025-15615HIGHCVSS 7.5EG 7.52026-03-27
Wazuh Manager authd service in wazuh-manager packages through version 4.7.3 contains an improper restriction of client-initiated SSL/TLS renegotiation vulnerability that allows remote attackers to cause a denial of service by sending exces…
- CVE-2025-59030HIGHCVSS 7.5EG 7.52025-12-09
An attacker can trigger the removal of cached records by sending a NOTIFY query over TCP.
- CVE-2025-13025HIGHCVSS 7.5EG 7.52025-11-11
Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and Thunderbird 145.
- CVE-2025-54530HIGHCVSS 7.5EG 7.52025-07-28
In JetBrains TeamCity before 2025.07 privilege escalation was possible due to incorrect directory permissions
- CVE-2025-30706HIGHCVSS 7.5EG 7.52025-04-15
Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 9.0.0-9.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multip…
- CVE-2024-44786HIGHCVSS 7.5EG 7.52024-11-22
Incorrect access control in Meabilis CMS 1.0 allows attackers to access other users' address books via unspecified vectors.
- CVE-2024-45690HIGHCVSS 7.5EG 7.52024-11-20
A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.
- CVE-2024-28058HIGHCVSS 7.5EG 7.52024-11-18
In RSA NetWitness (NW) Platform before 12.5.1, even when an administrator revokes the access of a specific user with an active session, an internal threat actor could impersonate the revoked user and gain unauthorized access to sensitive d…
- CVE-2024-36063HIGHCVSS 7.5EG 7.52024-11-07
The Goodwy com.goodwy.dialer (aka Right Dialer) application through 5.1.0 for Android enables any application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.goodwy.dialer.activit…
- CVE-2024-44228HIGHCVSS 7.5EG 7.52024-10-28
This issue was addressed with improved permissions checking. This issue is fixed in Xcode 16. An app may be able to inherit Xcode permissions and access user data.
- CVE-2024-44100HIGHCVSS 7.5EG 7.52024-10-25
Android before 2024-10-05 on Google Pixel devices allows information disclosure in the modem component, A-299774545.
- CVE-2024-43114HIGHCVSS 7.5EG 7.52024-08-06
In JetBrains TeamCity before 2024.07.1 possible privilege escalation due to incorrect directory permissions
- CVE-2023-38370HIGHCVSS 7.5EG 7.52024-06-27
IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1, under certain configurations, could allow a user on the network to install malicious packages. IBM X-Force ID: 261197.
- CVE-2024-37038HIGHCVSS 7.5EG 7.52024-06-12
CWE-276: Incorrect Default Permissions vulnerability exists that could allow an authenticated user with access to the device’s web interface to perform unauthorized file and firmware uploads when crafting custom web requests.
- CVE-2024-34455HIGHCVSS 7.5EG 7.52024-05-03
Buildroot before 0b2967e lacks the sticky bit for the /dev/shm directory. A fix was released in 2024.02.2.
- CVE-2023-23976HIGHCVSS 7.5EG 7.52024-04-24
Incorrect Default Permissions vulnerability in Metagauss RegistrationMagic allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects RegistrationMagic: from n/a through 5.1.9.2.
- CVE-2023-52545HIGHCVSS 7.5EG 7.52024-04-08
Vulnerability of undefined permissions in the Calendar app. Impact: Successful exploitation of this vulnerability will affect availability.
- CVE-2024-22889HIGHCVSS 7.5EG 7.52024-03-06
Due to incorrect access control in Plone version v6.0.9, remote attackers can view and list all files hosted on the website via sending a crafted request.
- CVE-2023-49338HIGHCVSS 7.5EG 7.52024-02-28
Couchbase Server 7.1.x and 7.2.x before 7.2.4 does not require authentication for the /admin/stats and /admin/vitals endpoints on TCP port 8093 of localhost.
- CVE-2023-52379HIGHCVSS 7.5EG 7.52024-02-18
Permission control vulnerability in the calendarProvider module.Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2023-52362HIGHCVSS 7.5EG 7.52024-02-18
Permission management vulnerability in the lock screen module.Successful exploitation of this vulnerability may affect availability.
- CVE-2024-22409HIGHCVSS 7.5EG 7.52024-01-16
DataHub is an open-source metadata platform. In affected versions a low privileged user could remove a user, edit group members, or edit another user's profile information. The default privileges gave too many broad permissions to low priv…
- CVE-2023-37572HIGHCVSS 7.5EG 7.52023-12-05
Softing OPC Suite version 5.25 and before has Incorrect Access Control, allows attackers to obtain sensitive information via weak permissions in OSF_discovery service. The service executable could be changed or the service could be deleted.
- CVE-2023-43984HIGHCVSS 7.5EG 7.52023-11-07
Insecure permissions in Smart Soft advancedexport before v4.4.7 allow unauthenticated attackers to arbitrarily download user information from the ps_customer table.
- CVE-2023-42261HIGHCVSS 7.5EG 7.52023-09-21
Mobile Security Framework (MobSF) <=v3.7.8 Beta is vulnerable to Insecure Permissions. NOTE: the vendor's position is that authentication is intentionally not implemented because the product is not intended for an untrusted network environ…
- CVE-2023-5042HIGHCVSS 7.5EG 7.52023-09-20
Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40713, Acronis True Image OEM (Windows) before build 42575.
- CVE-2023-29731HIGHCVSS 7.5EG 7.52023-05-30
SoLive 1.6.14 thru 1.6.20 for Android has an exposed component that provides a method to modify the SharedPreference file. An attacker can leverage this method to inject a large amount of data into any SharedPreference file, which will be …
- CVE-2023-1693HIGHCVSS 7.5EG 7.52023-05-20
The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may affect confidentiality.
- CVE-2022-45459HIGHCVSS 7.5EG 7.52023-05-18
Sensitive information disclosure due to insecure registry permissions. The following products are affected: Acronis Agent (Windows) before build 30025, Acronis Cyber Protect 15 (Windows) before build 30984.
- CVE-2023-1809HIGHCVSS 7.5EG 7.52023-05-02
The Download Manager WordPress plugin before 6.3.0 leaks master key information without the need for a password, allowing attackers to download arbitrary password-protected package files.
- CVE-2022-48360HIGHCVSS 7.5EG 7.52023-03-27
The facial recognition module has a vulnerability in file permission control. Successful exploitation of this vulnerability may affect confidentiality.
- CVE-2022-45552HIGHCVSS 7.5EG 7.52023-03-03
An Insecure Permissions vulnerability in Shenzhen Zhiboton Electronics ZBT WE1626 Router v 21.06.18 allows attackers to obtain sensitive information via SPI bus interface connected to pinout of the NAND flash memory.
- CVE-2022-45454HIGHCVSS 7.5EG 7.52023-02-13
Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Agent (Windows) before build 30161, Acronis Cyber Protect 15 (Windows) before build 30984.
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →