CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,721 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 4 of 35
- CVE-2026-49157HIGHCVSS 8.8EG 8.82026-06-01
Incorrect Default Permissions vulnerability in Apache ActiveMQ. This issue affects Apache ActiveMQ: before 5.19.7, from 6.0.0 before 6.2.6. The default Jolokia authorization settings granted non-admin (low-privilege) web-login accounts�…
- CVE-2026-6819HIGHCVSS 8.8EG 8.82026-04-21
HKUDS OpenHarness prior to PR #156 remediation exposes plugin lifecycle commands including /plugin install, /plugin enable, /plugin disable, and /reload-plugins to remote senders by default. Attackers who gain access through the channel la…
- CVE-2026-21765HIGHCVSS 8.8EG 8.82026-04-02
HCL BigFix Platform is affected by insecure permissions on private cryptographic keys. The private cryptographic keys located on a Windows host machine might be subject to overly permissive file system permissions.
- CVE-2025-10314HIGHCVSS 8.8EG 8.82026-02-05
Incorrect Default Permissions vulnerability in Mitsubishi Electric Corporation FREQSHIP-mini for Windows versions 8.0.0 to 8.0.2 allows a local attacker to execute arbitrary code with system privileges by replacing service executable files…
- CVE-2026-24780HIGHCVSS 8.8EG 8.82026-01-29
AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents that automate complex workflows. Prior to autogpt-platform-beta-v0.6.44, AutoGPT Platform's block execution endpoints (both mai…
- CVE-2021-47852HIGHCVSS 8.8EG 8.82026-01-21
Rockstar Games Launcher 1.0.37.349 contains a privilege escalation vulnerability that allows authenticated users to modify the service executable with weak permissions. Attackers can replace the RockstarService.exe with a malicious binary …
- CVE-2025-62577HIGHCVSS 8.8EG 8.82025-10-20
ETERNUS SF provided by Fsas Technologies Inc. contains an incorrect default permissions vulnerability. A low-privileged user with access to the management server may obtain database credentials, potentially allowing execution of OS command…
- CVE-2025-11535HIGHCVSS 8.8EG 8.82025-10-08
MongoDB Connector for BI installation via MSI on Windows leaves ACLs unset on custom install directories allows Privilege Escalation.This issue affects MongoDB Connector for BI: from 2.0.0 through 2.14.24.
- CVE-2025-57625HIGHCVSS 8.8EG 8.82025-09-16
CYRISMA Sensor before 444 for Windows has an Insecure Folder and File Permissions vulnerability. A low-privileged user can abuse these issues to escalate privileges and execute arbitrary code in the context of NT AUTHORITY\SYSTEM by replac…
- CVE-2024-13972HIGHCVSS 8.8EG 8.82025-07-17
A vulnerability related to registry permissions in the Intercept X for Windows updater prior to Core Agent version 2024.3.2 can lead to a local user gaining SYSTEM level privileges during a product upgrade.
- CVE-2025-46014HIGHCVSS 8.8EG 8.82025-06-30
Several services in Honor Device Co., Ltd Honor PC Manager v16.0.0.118 was discovered to connect services to the named pipe iMateBookAssistant with default or overly permissive security attributes, leading to a privilege escalation.
- CVE-2025-48950HIGHCVSS 8.8EG 8.82025-06-03
MaxKB is an open-source AI assistant for enterprise. Prior to version 1.10.8-lts, Sandbox only restricts the execution permissions of binary files in common directories, such as `/bin,/usr/bin`, etc. Therefore, attackers can exploit some f…
- CVE-2025-24399HIGHCVSS 8.8EG 8.82025-01-22
Jenkins OpenId Connect Authentication Plugin 4.452.v2849b_d3945fa_ and earlier, except 4.438.440.v3f5f201de5dc, treats usernames as case-insensitive, allowing attackers on Jenkins instances configured with a case-sensitive OpenID Connect p…
- CVE-2024-38499HIGHCVSS 8.8EG 8.82024-12-17
CA Client Automation (ITCM) allows non-admin/non-root users to encrypt a string using CAF CLI and SD_ACMD CLI. This would allow the non admin user to access the critical encryption keys which further causes the exploitation of stored crede…
- CVE-2024-46624HIGHCVSS 8.8EG 8.82024-12-03
An issue in InfoDom Performa 365 v4.0.1 allows authenticated attackers to elevate their privileges to Administrator via a crafted payload sent to /api/users.
- CVE-2024-11969HIGHCVSS 8.8EG 8.82024-11-28
The NetCloud Exchange client for Windows, version 1.110.50, contains an insecure file and folder permissions vulnerability. A normal (non-admin) user could exploit the weakness in file and folder permissions to escalate privileges, execute…
- CVE-2024-48292HIGHCVSS 8.8EG 8.82024-11-18
An issue in the wssrvc.exe service of QuickHeal Antivirus Pro Version v24.0 and Quick Heal Total Security v24.0 allows authenticated attackers to escalate privileges.
- CVE-2024-52946HIGHCVSS 8.8EG 8.82024-11-18
An issue was discovered in LemonLDAP::NG before 2.20.1. An Improper Check during session refresh allows an authenticated user to raise their authentication level if the admin configured an "Adaptative authentication rule" with an increment…
- CVE-2020-11921HIGHCVSS 8.8EG 8.82024-11-07
An issue was discovered in Lush 2 through 2020-02-25. Due to the lack of Bluetooth traffic encryption, it is possible to hijack an ongoing Bluetooth connection between the Lush 2 and a mobile phone. This allows an attacker to gain full con…
- CVE-2019-20458HIGHCVSS 8.8EG 8.82024-11-07
An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices. By default, the device comes (and functions) without a password. The user is at no point prompted to set up a password on the device (leaving a number of devices …
- CVE-2024-42028HIGHCVSS 8.8EG 8.82024-10-28
A Local privilege escalation vulnerability found in a Self-Hosted UniFi Network Server with UniFi Network Application (Version 8.4.62 and earlier) allows a malicious actor with a local operational system user to execute high privilege acti…
- CVE-2024-47014HIGHCVSS 8.8EG 8.82024-10-25
Android before 2024-10-05 on Google Pixel devices allows privilege escalation in the ABL component, A-330537292.
- CVE-2024-48822HIGHCVSS 8.8EG 8.82024-10-14
Privilege escalation in Automatic Systems Maintenance SlimLane 29565_d74ecce0c1081d50546db573a499941b10799fb7 allows a remote attacker to escalate privileges via the FtpConfig.php page.
- CVE-2024-39924HIGHCVSS 8.8EG 8.82024-09-13
An issue was discovered in Vaultwarden (formerly Bitwarden_RS) 1.30.3. A vulnerability has been identified in the authentication and authorization process of the endpoint responsible for altering the metadata of an emergency access. It per…
- CVE-2024-8533HIGHCVSS 8.8EG 8.82024-09-12
A privilege escalation vulnerability exists in the Rockwell Automation affected products. The vulnerability occurs due to improper default file permissions allowing users to exfiltrate credentials and escalate privileges.
- CVE-2024-42681HIGHCVSS 8.8EG 8.82024-08-15
Insecure Permissions vulnerability in xxl-job v.2.4.1 allows a remote attacker to execute arbitrary code via the Sub-Task ID component.
- CVE-2024-6974HIGHCVSS 8.8EG 8.82024-07-31
Cato Networks Windows SDP Client Local Privilege Escalation via self-upgradeThis issue affects SDP Client: before 5.10.34.
- CVE-2024-36541HIGHCVSS 8.8EG 8.82024-07-24
Insecure permissions in logging-operator v4.6.0 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.
- CVE-2024-6148HIGHCVSS 8.8EG 8.82024-07-10
Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5
- CVE-2024-3904HIGHCVSS 8.8EG 8.82024-07-04
Incorrect Default Permissions vulnerability in Smart Device Communication Gateway preinstalled on MELIPC Series MI5122-VW firmware versions "05" to "07" allows a local attacker to execute arbitrary code by saving a malicious file to a spec…
- CVE-2024-34221HIGHCVSS 8.8EG 8.82024-05-14
Sourcecodester Human Resource Management System 1.0 is vulnerable to Insecure Permissions resulting in privilege escalation.
- CVE-2024-31442HIGHCVSS 8.8EG 8.82024-04-08
Redon Hub is a Roblox Product Delivery Bot, also known as a Hub. In all hubs before version 1.0.2, all commands are capable of being ran by all users, including admin commands. This allows users to receive products for free and delete/crea…
- CVE-2021-3187HIGHCVSS 8.8EG 8.82023-12-11
An issue was discovered in BeyondTrust Privilege Management for Mac before 5.7. An authenticated, unprivileged user can elevate privileges by running a malicious script (that executes as root from a temporary directory) during install time…
- CVE-2023-47250HIGHCVSS 8.8EG 8.82023-11-22
In mprivacy-tools before 2.0.406g in m-privacy TightGate-Pro Server, broken Access Control on X11 server sockets allows authenticated attackers (with access to a VNC session) to access the X11 desktops of other users by specifying their DI…
- CVE-2023-23583HIGHCVSS 8.8EG 8.82023-11-14
Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local acc…
- CVE-2023-43496HIGHCVSS 8.8EG 8.82023-09-20
Jenkins 2.423 and earlier, LTS 2.414.1 and earlier creates a temporary file in the system temporary directory with the default permissions for newly created files when installing a plugin from a URL, potentially allowing attackers with acc…
- CVE-2023-4664HIGHCVSS 8.8EG 8.82023-09-15
Incorrect Default Permissions vulnerability in Saphira Saphira Connect allows Privilege Escalation. This issue affects Saphira Connect: before 9.
- CVE-2023-31462HIGHCVSS 8.8EG 8.82023-07-20
An issue was discovered in SteelSeries GG 36.0.0. An attacker can change values in an unencrypted database that is writable for all users on the computer, in order to trigger code execution with higher privileges.
- CVE-2023-32221HIGHCVSS 8.8EG 8.82023-06-12
EaseUS Todo Backup version 20220111.390 - An omission during installation may allow a local attacker to perform privilege escalation.
- CVE-2022-30759HIGHCVSS 8.8EG 8.82023-05-02
In Nokia One-NDS (aka Network Directory Server) through 20.9, some Sudo permissions can be exploited by some users to escalate to root privileges and execute arbitrary commands.
- CVE-2023-22951HIGHCVSS 8.8EG 8.82023-04-13
An issue was discovered in TigerGraph Enterprise Free Edition 3.x. It creates an authentication token for internal systems use. This token can be read from the configuration file. Using this token on the REST API provides an attacker with …
- CVE-2020-21514HIGHCVSS 8.8EG 8.82023-04-04
An issue was discovered in Fluent-ui v.1.2.2 allows attackers to gain escalated privileges and execute arbitrary code due to a default password.
- CVE-2023-25355HIGHCVSS 8.8EG 8.82023-04-04
CoreDial sipXcom up to and including 21.04 is vulnerable to Insecure Permissions. A user who has the ability to run commands as the `daemon` user on a sipXcom server can overwrite a service file, and escalate their privileges to `root`.
- CVE-2021-34164HIGHCVSS 8.8EG 8.82023-02-17
Permissions vulnerability in LIZHIFAKA v.2.2.0 allows authenticated attacker to execute arbitrary commands via the set password function in the admin/index/email location.
- CVE-2022-48199HIGHCVSS 8.8EG 8.82023-01-26
SoftPerfect NetWorx 7.1.1 on Windows allows an attacker to execute a malicious binary with potentially higher privileges via a low-privileged user account that abuses the Notifications function. The Notifications function allows for arbitr…
- CVE-2022-29909HIGHCVSS 8.8EG 8.82022-12-22
Documents in deeply-nested cross-origin browsing contexts could have obtained permissions granted to the top-level origin, bypassing the existing prompt and wrongfully inheriting the top-level permissions. This vulnerability affects Thunde…
- CVE-2022-46382HIGHCVSS 8.8EG 8.82022-12-06
RackN Digital Rebar through 4.6.14, 4.7 through 4.7.22, 4.8 through 4.8.5, 4.9 through 4.9.12, and 4.10 through 4.10.8 has Insecure Permissions. After signing into Digital Rebar, users are issued authentication tokens tied to their account…
- CVE-2022-45562HIGHCVSS 8.8EG 8.82022-12-02
Insecure permissions in Telos Alliance Omnia MPX Node v1.0.0 to v1.4.9 allow attackers to manipulate and access system settings with backdoor account low privilege, this can lead to change hardware settings and execute arbitrary commands i…
- CVE-2022-36803HIGHCVSS 8.8EG 8.82022-10-14
The MasterUserEdit API in Atlassian Jira Align Server before version 10.109.2 allows An authenticated attacker with the People role permission to use the MasterUserEdit API to modify any users role to Super Admin. This vulnerability was re…
- CVE-2022-0336HIGHCVSS 8.8EG 8.82022-08-29
The Samba AD DC includes checks when adding service principals names (SPNs) to an account to ensure that SPNs do not alias with those already in the database. Some of these checks are able to be bypassed if an account modification re-adds …
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →