CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,721 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 19 of 35
- CVE-2024-0259HIGHCVSS 7.3EG 7.32024-03-28
Fortra's Robot Schedule Enterprise Agent for Windows prior to version 3.04 is susceptible to privilege escalation. A low-privileged user can overwrite the service executable. When the service is restarted, the replaced binary runs with loc…
- CVE-2023-38960HIGHCVSS 7.3EG 7.32024-02-13
Insecure Permissions issue in Raiden Professional Server RaidenFTPD v.2.4 build 4005 allows a local attacker to gain privileges and execute arbitrary code via crafted executable running from the installation directory.
- CVE-2023-3116HIGHCVSS 7.3EG 7.32023-11-20
in OpenHarmony v3.2.2 and prior versions allow a local attacker get confidential information or rewrite sensitive file through incorrect default permissions.
- CVE-2023-29057HIGHCVSS 7.3EG 7.32023-04-28
A valid XCC user's local account permissions overrides their active directory permissions under specific configurations. This could lead to a privilege escalation. To be vulnerable, LDAP must be configured for authentication/authorization …
- CVE-2022-3884HIGHCVSS 7.3EG 7.32023-02-28
Incorrect Default Permissions vulnerability in Hitachi Ops Center Analyzer on Windows (Hitachi Ops Center Analyzer RAID Agent component) allows local users to read and write specific files.This issue affects Hitachi Ops Center Analyzer: fr…
- CVE-2022-34043HIGHCVSS 7.3EG 7.32022-06-29
Incorrect permissions for the folder C:\ProgramData\NoMachine\var\uninstall of Nomachine v7.9.2 allows attackers to perform a DLL hijacking attack and execute arbitrary code.
- CVE-2022-20137HIGHCVSS 7.3EG 7.32022-06-15
In onCreateContextMenu of NetworkProviderSettings.java, there is a possible way for non-owner users to change WiFi settings due to a missing permission check. This could lead to local escalation of privilege with User execution privileges …
- CVE-2021-0441HIGHCVSS 7.3EG 7.32021-07-14
In onCreate of PermissionActivity.java, there is a possible permission bypass due to Confusing UI. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation…
- CVE-2021-0105HIGHCVSS 7.3EG 7.32021-06-09
Insecure inherited permissions in some Intel(R) ProSet/Wireless WiFi drivers may allow an authenticated user to potentially enable information disclosure and denial of service via adjacent access.
- CVE-2021-31519HIGHCVSS 7.3EG 7.32021-05-12
An incorrect permission vulnerability in the product installer folders for Trend Micro HouseCall for Home Networks version 5.3.1179 and below could allow an attacker to escalate privileges by placing arbitrary code on a specified folder an…
- CVE-2021-28649HIGHCVSS 7.3EG 7.32021-05-12
An incorrect permission vulnerability in the product installer for Trend Micro HouseCall for Home Networks version 5.3.1179 and below could allow an attacker to escalate privileges by placing arbitrary code on a specified folder and have t…
- CVE-2021-0246HIGHCVSS 7.3EG 7.32021-04-22
On SRX1500, SRX4100, SRX4200, SRX4600, SRX5000 Series with SPC2/SPC3, devices using tenant services on Juniper Networks Junos OS, due to incorrect default permissions assigned to tenant system administrators a tenant system administrator m…
- CVE-2021-0235HIGHCVSS 7.3EG 7.32021-04-22
On SRX1500, SRX4100, SRX4200, SRX4600, SRX5000 Series with SPC2/SPC3, vSRX Series devices using tenant services on Juniper Networks Junos OS, due to incorrect permission scheme assigned to tenant system administrators, a tenant system admi…
- CVE-2020-12510HIGHCVSS 7.3EG 7.32020-11-19
The default installation path of the TwinCAT XAR 3.1 software in all versions is underneath C:\TwinCAT. If the directory does not exist it and further subdirectories are created with permissions which allow every local user to modify the c…
- CVE-2020-17381HIGHCVSS 7.3EG 7.32020-10-21
An issue was discovered in Ghisler Total Commander 9.51. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the %SYSTEMDRIVE%\totalcmd\TOTALCMD64.EXE binary.
- CVE-2020-15843HIGHCVSS 7.3EG 7.32020-09-24
ActFax Version 7.10 Build 0335 (2020-05-25) is susceptible to a privilege escalation vulnerability due to insecure folder permissions on %PROGRAMFILES%\ActiveFax\Client\, %PROGRAMFILES%\ActiveFax\Install\ and %PROGRAMFILES%\ActiveFax\Termi…
- CVE-2020-10049HIGHCVSS 7.3EG 7.32020-09-09
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). The start-stop scripts for the services of the affected application could allow a local attacker to include arbitrary commands that are executed…
- CVE-2020-1571HIGHCVSS 7.3EG 7.32020-08-17
An elevation of privilege vulnerability exists in Windows Setup in the way it handles permissions. A locally authenticated attacker could run arbitrary code with elevated system privileges. After successfully exploiting the vulnerability, …
- CVE-2020-0133HIGHCVSS 7.3EG 7.32020-06-11
In MockLocationAppPreferenceController.java, it is possible to mock the GPS location of the device due to a permissions bypass. This could lead to local escalation of privilege with User execution privileges needed. User interaction is nee…
- CVE-2020-9392HIGHCVSS 7.3EG 7.32020-03-23
An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. Because there is no permission check on the ImportJSONTable, createFromTpl, and getJSONExportTable endpoints, unauthenticated users can retrieve p…
- CVE-2019-2200HIGHCVSS 7.3EG 7.32020-02-13
In updatePermissions of PermissionManagerService.java, it may be possible for a malicious app to obtain a custom permission from another app due to a permission bypass. This could lead to local escalation of privilege with User execution p…
- CVE-2019-19490HIGHCVSS 7.3EG 7.32019-12-02
LiteManager 4.5.0 has weak permissions (Everyone: Full Control) in the "LiteManagerFree - Server" folder, as demonstrated by ROMFUSClient.exe.
- CVE-2024-52926HIGHCVSS 6.5EG 7.32024-11-18
Delinea Privilege Manager before 12.0.2 mishandles the security of the Windows agent.
- CVE-2026-21074HIGHCVSS 7.2EG 7.22026-08-10
Incorrect default permissions in Bixby prior to version 4.0.86.0 allows local attackers to execute arbitrary commands with Bixby privilege.
- CVE-2024-21820HIGHCVSS 7.2EG 7.22024-11-13
Incorrect default permissions in some Intel(R) Xeon(R) processor memory controller configurations when using Intel(R) SGX may allow a privileged user to potentially enable escalation of privilege via local access.
- CVE-2023-6302HIGHCVSS 7.2EG 7.22023-11-27
A vulnerability was found in CSZCMS 1.3.0 and classified as critical. Affected by this issue is some unknown functionality of the file \views\templates of the component File Manager Page. The manipulation leads to permission issues. The at…
- CVE-2023-27091HIGHCVSS 7.2EG 7.22023-04-04
An unauthorized access issue found in XiaoBingby TeaCMS 2.3.3 allows attackers to escalate privileges via the id and keywords parameter(s).
- CVE-2022-33196HIGHCVSS 7.2EG 7.22023-02-16
Incorrect default permissions in some memory controller configurations for some Intel(R) Xeon(R) Processors when using Intel(R) Software Guard Extensions which may allow a privileged user to potentially enable escalation of privilege via l…
- CVE-2021-37289HIGHCVSS 7.2EG 7.22022-08-22
Insecure Permissions in administration interface in Planex MZK-DP150N 1.42 and 1.43 allows attackers to execute system command as root via etc_ro/web/syscmd.asp.
- CVE-2021-21736HIGHCVSS 7.2EG 7.22021-06-10
A smart camera product of ZTE is impacted by a permission and access control vulnerability. Due to the defect of user permission management by the cloud-end app, users whose sharing permissions have been revoked can still control the camer…
- CVE-2021-22311HIGHCVSS 7.2EG 7.22021-03-22
There is an improper permission assignment vulnerability in Huawei ManageOne product. Due to improper security hardening, the process can run with a higher privilege. Successful exploit could allow certain users to do certain operations wi…
- CVE-2020-8219HIGHCVSS 7.2EG 7.22020-07-30
An insufficient permission check vulnerability exists in Pulse Connect Secure <9.1R8 that allows an attacker to change the password of a full administrator.
- CVE-2018-17860HIGHCVSS 7.2EG 7.22019-11-26
Cloudera CDH has Insecure Permissions because ALL cannot be revoked.This affects 5.x through 5.15.1 and 6.x through 6.0.1.
- CVE-2019-16186HIGHCVSS 7.2EG 7.22019-09-09
In Limesurvey before 3.17.14, admin users can access the plugin manager without proper permissions.
- CVE-2019-16185HIGHCVSS 7.2EG 7.22019-09-09
In Limesurvey before 3.17.14, admin users can view, update, or delete reserved menu entries without proper permissions.
- CVE-2026-100718HIGHCVSS 7.1EG 7.12026-09-26
Froxlor through 2.3.10 does not enforce the mail.allow_external_domains policy in the EmailSender.add API command. When an administrator has enabled the allowed-sender feature but disabled external allowed-sender domains (mail.enable_allow…
- CVE-2026-2915HIGHCVSS 7.1EG 7.12026-03-03
HP System Event Utility might allow denial of service with elevated arbitrary file writes. This potential vulnerability was remediated with HP System Event Utility version 3.2.16.
- CVE-2025-67230HIGHCVSS 7.1EG 7.12026-01-23
Improper permissions in the handler for the Custom URL Scheme in ToDesktop Builder v0.33.0 allows attackers with renderer-context access to invoke external protocol handlers without sufficient validation.
- CVE-2025-10918HIGHCVSS 7.1EG 7.12025-11-11
Insecure default permissions in the agent of Ivanti Endpoint Manager before version 2024 SU4 allows a local authenticated attacker to write arbitrary files anywhere on disk
- CVE-2025-45467HIGHCVSS 7.1EG 7.12025-07-25
Unitree Go1 <= Go1_2022_05_11 is vulnerable to Insecure Permissions as the firmware update functionality (via Wi-Fi/Ethernet) implements an insecure verification mechanism that solely relies on MD5 checksums for firmware integrity validati…
- CVE-2025-32981HIGHCVSS 7.1EG 7.12025-04-25
NETSCOUT nGeniusONE before 6.4.0 b2350 allows local users to leverage Insecure Permissions for the nGeniusCLI File.
- CVE-2025-24176HIGHCVSS 7.1EG 7.12025-01-27
A permissions issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.3, macOS Ventura 13.7.3. A local attacker may be able to elevate their privileges.
- CVE-2024-9191HIGHCVSS 7.1EG 7.12024-11-01
The Okta Device Access features, provided by the Okta Verify agent for Windows, provides access to the OktaDeviceAccessPipe, which enables attackers in a compromised device to retrieve passwords associated with Desktop MFA passwordless log…
- CVE-2023-45896HIGHCVSS 7.1EG 7.12024-08-28
ntfs3 in the Linux kernel through 6.8.0 allows a physically proximate attacker to read kernel memory by mounting a filesystem (e.g., if a Linux distribution is configured to allow unprivileged mounts of removable media) and then leveraging…
- CVE-2024-4030HIGHCVSS 7.1EG 7.12024-05-07
On Windows a directory returned by tempfile.mkdtemp() would not always have permissions set to restrict reading and writing to the temporary directory by other users, instead usually inheriting the correct permissions from the default loca…
- CVE-2023-38291HIGHCVSS 7.1EG 7.12024-04-22
An issue was discovered in a third-party component related to ro.boot.wifimacaddr, shipped on devices from multiple device manufacturers. Various software builds for the following TCL devices (30Z and 10L) and Motorola devices (Moto G Pure…
- CVE-2023-32698HIGHCVSS 7.1EG 7.12023-05-30
nFPM is an alternative to fpm. The file permissions on the checked-in files were not maintained. Hence, when nfpm packaged the files (without extra config for enforcing it’s own permissions) files could go out with bad permissions (chmo…
- CVE-2023-28724HIGHCVSS 7.1EG 7.12023-05-03
NGINX Management Suite default file permissions are set such that an authenticated attacker may be able to modify sensitive files on NGINX Instance Manager and NGINX API Connectivity Manager. Note: Software versions which have reached…
- CVE-2023-27647HIGHCVSS 7.1EG 7.12023-04-14
An issue found in DUALSPACE Lock Master v.2.2.4 allows a local attacker to cause a denial of service or gain sensitive information via the com.ludashi.superlock.util.pref.SharedPrefProviderEntryMethod: insert of the android.net.Uri.insert …
- CVE-2023-0181HIGHCVSS 7.1EG 7.12023-04-01
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in a kernel mode layer handler, where memory permissions are not correctly checked, which may lead to denial of service and data tampering.
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →