CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,721 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 2 of 35
- CVE-2024-48823CRITICALCVSS 9.8EG 9.82024-10-14
Local file inclusion in Automatic Systems Maintenance SlimLane 29565_d74ecce0c1081d50546db573a499941b10799fb7 allows a remote attacker to escalate privileges via the PassageAutoServer.php page.
- CVE-2024-27144CRITICALCVSS 9.8EG 9.82024-06-14
The Toshiba printers provide several ways to upload files using the web interface without authentication. An attacker can overwrite any insecure files. And the Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. …
- CVE-2024-28056CRITICALCVSS 9.8EG 9.82024-04-15
Amazon AWS Amplify CLI before 12.10.1 incorrectly configures the role trust policy of IAM roles associated with Amplify projects. When the Authentication component is removed from an Amplify project, a Condition property is removed but "Ef…
- CVE-2023-46773CRITICALCVSS 9.8EG 9.82023-12-06
Permission management vulnerability in the PMS module. Successful exploitation of this vulnerability may cause privilege escalation.
- CVE-2023-21216CRITICALCVSS 9.8EG 9.82023-12-04
In PMRChangeSparseMemOSMem of physmem_osmem_linux.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User …
- CVE-2023-47462CRITICALCVSS 9.8EG 9.82023-11-29
Insecure Permissions vulnerability in GL.iNet AX1800 v.3.215 and before allows a remote attacker to execute arbitrary code via the file sharing function.
- CVE-2023-48648CRITICALCVSS 9.8EG 9.82023-11-17
Concrete CMS before 8.5.13 and 9.x before 9.2.2 allows unauthorized access because directories can be created with insecure permissions. File creation functions (such as the Mkdir() function) gives universal access (0777) to created folder…
- CVE-2023-43902CRITICALCVSS 9.8EG 9.82023-11-14
Incorrect access control in the Forgot Your Password function of eMudhra emSigner v2.8.7 allows unauthenticated attackers to access accounts of all registered users, including those with administrator privileges via a crafted password rese…
- CVE-2023-27133CRITICALCVSS 9.8EG 9.82023-10-17
TSplus Remote Work 16.0.0.0 has weak permissions for .exe, .js, and .html files under the %PROGRAMFILES(X86)%\TSplus-RemoteWork\Clients\www folder. This may enable privilege escalation if a different local user modifies a file. NOTE: CVE-2…
- CVE-2023-31068CRITICALCVSS 9.8EG 9.82023-09-11
An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on some directories under %PROGRAMFILES(X86)%\TSplus\UserDesktop\themes.
- CVE-2023-31067CRITICALCVSS 9.8EG 9.82023-09-11
An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on some directories under %PROGRAMFILES(X86)%\TSplus\Clients\www.
- CVE-2023-33745CRITICALCVSS 9.8EG 9.82023-07-27
TeleAdapt RoomCast TA-2400 1.0 through 3.1 is vulnerable to Improper Privilege Management: from the shell available after an adb connection, simply entering the su command provides root access (without requiring a password).
- CVE-2023-31116CRITICALCVSS 9.8EG 9.82023-06-07
An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. An incorrect default permission can cause unintended querying of RCS capability via a crafted application.
- CVE-2023-33282CRITICALCVSS 9.8EG 9.82023-06-07
Marval MSM through 14.19.0.12476 and 15.0 has a System account with default credentials. A remote attacker is able to login and create a valid session. This makes it possible to make backend calls to endpoints in the application.
- CVE-2023-2530CRITICALCVSS 9.8EG 9.82023-06-07
A privilege escalation allowing remote code execution was discovered in the orchestration service.
- CVE-2023-29732CRITICALCVSS 9.8EG 9.82023-05-30
SoLive 1.6.14 thru 1.6.20 for Android exists exposed component, the component provides the method to modify the SharedPreference file. The attacker can use the method to modify the data in any SharedPreference file, these data will be load…
- CVE-2023-23059CRITICALCVSS 9.8EG 9.82023-05-04
An issue was discovered in GeoVision GV-Edge Recording Manager 2.2.3.0 for windows, which contains improper permissions within the default installation and allows attackers to execute arbitrary code and gain escalated privileges.
- CVE-2023-26918CRITICALCVSS 9.8EG 9.82023-04-14
Diasoft File Replication Pro 7.5.0 allows attackers to escalate privileges by replacing a legitimate file with a Trojan horse that will be executed as LocalSystem. This occurs because %ProgramFiles%\FileReplicationPro allows Everyone:(F) a…
- CVE-2021-34182CRITICALCVSS 9.8EG 9.82023-02-17
An issue in ttyd v.1.6.3 allows attacker to execute arbitrary code via default configuration permissions.
- CVE-2023-23566CRITICALCVSS 9.8EG 9.82023-01-13
A 2-Step Verification problem in Axigen 10.3.3.52 allows an attacker to access a mailbox by bypassing 2-Step Verification when they try to add an account to any third-party webmail service (or add an account to Outlook or Gmail, etc.) with…
- CVE-2021-3437CRITICALCVSS 9.8EG 9.82022-12-12
Potential security vulnerabilities have been identified in an OMEN Gaming Hub SDK package which may allow escalation of privilege and/or denial of service. HP is releasing software updates to mitigate the potential vulnerabilities.
- CVE-2022-27773CRITICALCVSS 9.8EG 9.82022-12-05
A privilege escalation vulnerability is identified in Ivanti EPM (LANDesk Management Suite) that allows a user to execute commands with elevated privileges.
- CVE-2022-44929CRITICALCVSS 9.8EG 9.82022-12-02
An access control issue in D-Link DVG-G5402SP GE_1.03 allows unauthenticated attackers to escalate privileges via arbitrarily editing VoIP SIB profiles.
- CVE-2022-34824CRITICALCVSS 9.8EG 9.82022-11-08
Weak File and Folder Permissions vulnerability in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earlier, CLUSTERPRO X 5.0 SingleServerSafe for Windows and earlier, EXPRESSCLUSTER X 5.0 SingleServerSafe for …
- CVE-2022-40109CRITICALCVSS 9.8EG 9.82022-09-06
TOTOLINK A3002R TOTOLINK-A3002R-He-V1.1.1-B20200824.0128 is vulnerable to Insecure Permissions via binary /bin/boa.
- CVE-2022-36640CRITICALCVSS 9.8EG 9.82022-09-02
influxData influxDB before v1.8.10 contains no authentication mechanism or controls, allowing unauthenticated attackers to execute arbitrary commands. NOTE: the CVE ID assignment is disputed because the vendor's documentation states "If In…
- CVE-2022-25899CRITICALCVSS 9.8EG 9.82022-08-18
Authentication bypass for the Open AMT Cloud Toolkit software maintained by Intel(R) before versions 2.0.2 and 2.2.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
- CVE-2022-37003CRITICALCVSS 9.8EG 9.82022-08-10
The AOD module has a vulnerability in permission assignment. Successful exploitation of this vulnerability may cause permission escalation and unauthorized access to files.
- CVE-2022-32207CRITICALCVSS 9.8EG 9.82022-07-07
When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accident…
- CVE-2022-33175CRITICALCVSS 9.8EG 9.82022-06-13
Power Distribution Units running on Powertek firmware (multiple brands) before 3.30.30 have an insecure permissions setting on the user.token field that is accessible to everyone through the /cgi/get_param.cgi HTTP API. This leads to discl…
- CVE-2022-28932CRITICALCVSS 9.8EG 9.82022-05-23
D-Link DSL-G2452DG HW:T1\\tFW:ME_2.00 was discovered to contain insecure permissions.
- CVE-2022-27919CRITICALCVSS 9.8EG 9.82022-03-25
Gradle Enterprise before 2022.1 allows remote code execution if the installation process did not specify an initial configuration file. The configuration allows certain anonymous access to administration and an API.
- CVE-2021-20001CRITICALCVSS 9.8EG 9.82022-02-11
It was discovered, that debian-edu-config, a set of configuration files used for the Debian Edu blend, before 2.12.16 configured insecure permissions for the user web shares (~/public_html), which could result in privilege escalation.
- CVE-2021-39658CRITICALCVSS 9.8EG 9.82022-02-11
ismsEx service is a vendor service in unisoc equipment。ismsEx service is an extension of sms system service,but it does not check the permissions of the caller,resulting in permission leaks。Third-party apps can use this service to …
- CVE-2021-46093CRITICALCVSS 9.8EG 9.82022-02-01
eliteCMS v1.0 is vulnerable to Insecure Permissions via manage_uploads.php.
- CVE-2021-45003CRITICALCVSS 9.8EG 9.82022-01-10
Laundry Booking Management System 1.0 (Latest) and previous versions are affected by a remote code execution (RCE) vulnerability in profile.php through the "image" parameter that can execute a webshell payload.
- CVE-2021-44833CRITICALCVSS 9.8EG 9.82021-12-12
The CLI 1.0.0 for Amazon AWS OpenSearch has weak permissions for the configuration file.
- CVE-2021-36990CRITICALCVSS 9.8EG 9.82021-10-28
There is a vulnerability of tampering with the kernel in Huawei Smartphone.Successful exploitation of this vulnerability may escalate permissions.
- CVE-2021-36989CRITICALCVSS 9.8EG 9.82021-10-28
There is a Kernel crash vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may escalate permissions.
- CVE-2021-36365CRITICALCVSS 9.8EG 9.82021-09-28
Nagios XI before 5.8.5 has Incorrect Permission Assignment for repairmysql.sh.
- CVE-2021-36363CRITICALCVSS 9.8EG 9.82021-09-28
Nagios XI before 5.8.5 has Incorrect Permission Assignment for migrate.php.
- CVE-2021-39274CRITICALCVSS 9.8EG 9.82021-08-19
In XeroSecurity Sn1per 9.0 (free version), insecure directory permissions (0777) are set during installation, allowing an unprivileged user to modify the main application and the application configuration file. This results in arbitrary co…
- CVE-2021-37167CRITICALCVSS 9.8EG 9.82021-08-02
An insecure permissions issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. A user logged in using the default credentials can gain root acc…
- CVE-2020-28910CRITICALCVSS 9.8EG 9.82021-05-24
Creation of a Temporary Directory with Insecure Permissions in Nagios XI 5.7.5 and earlier allows for Privilege Escalation via creation of symlinks, which are mishandled in getprofile.sh.
- CVE-2021-27193CRITICALCVSS 9.8EG 9.82021-03-25
Incorrect default permissions vulnerability in the API of Netop Vision Pro up to and including 9.7.1 allows a remote unauthenticated attacker to read and write files on the remote machine with system privileges resulting in a privilege esc…
- CVE-2019-20468CRITICALCVSS 9.8EG 9.82021-02-01
An issue was discovered in SeTracker2 for TK-Star Q90 Junior GPS horloge 3.1042.9.8656 devices. It has unnecessary permissions such as READ_EXTERNAL_STORAGE, WRITE_EXTERNAL_STORAGE, and READ_CONTACTS.
- CVE-2020-13452CRITICALCVSS 9.8EG 9.82021-01-07
In Gotenberg through 6.2.1, insecure permissions for tini (writable by user gotenberg) potentially allow an attacker to overwrite the file, which can lead to denial of service or code execution.
- CVE-2020-10279CRITICALCVSS 9.8EG 9.82020-06-24
MiR robot controllers (central computation unit) makes use of Ubuntu 16.04.2 an operating system, Thought for desktop uses, this operating system presents insecure defaults for robots. These insecurities include a way for users to escalate…
- CVE-2017-18915CRITICALCVSS 9.8EG 9.82020-06-19
An issue was discovered in Mattermost Server before 3.8.2, 3.7.5, and 3.6.7. After a restart of a server, an attacker might suddenly gain API Endpoint access.
- CVE-2020-11716CRITICALCVSS 9.8EG 9.82020-05-20
Panasonic P110, Eluga Z1 Pro, Eluga X1, and Eluga X1 Pro devices through 2020-04-10 have Insecure Permissions. NOTE: the vendor states that all affected products are at "End-of-software-support."
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →