CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,721 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 5 of 35
- CVE-2022-33996HIGHCVSS 8.8EG 8.82022-07-07
Incorrect permission management in Devolutions Server before 2022.2 allows a new user with a preexisting username to inherit the permissions of that previous user.
- CVE-2021-41635HIGHCVSS 8.8EG 8.82022-06-24
When installed as Windows service MELAG FTP Server 2.2.0.4 is run as SYSTEM user, which grants remote attackers to abuse misconfigurations or vulnerabilities with administrative access over the entire host system.
- CVE-2022-1833HIGHCVSS 8.8EG 8.82022-06-21
A flaw was found in AMQ Broker Operator 7.9.4 installed via UI using OperatorHub where a low-privilege user that has access to the namespace where the AMQ Operator is deployed has access to clusterwide edit rights by checking the secrets. …
- CVE-2022-32562HIGHCVSS 8.8EG 8.82022-06-13
An issue was discovered in Couchbase Server before 7.0.4. Operations may succeed on a collection using stale RBAC permission.
- CVE-2022-29376HIGHCVSS 8.8EG 8.82022-05-23
Xampp for Windows v8.1.4 and below was discovered to contain insecure permissions for its install directory, allowing attackers to execute arbitrary code via overwriting binaries located in the directory.
- CVE-2022-28999HIGHCVSS 8.8EG 8.82022-05-23
Insecure permissions in the install directories and binaries of Dev-CPP v4.9.9.2 allows attackers to execute arbitrary code via overwriting the binary devcpp.exe.
- CVE-2022-29178HIGHCVSS 8.8EG 8.82022-05-20
Cilium is open source software for providing and securing network connectivity and loadbalancing between application workloads. Cilium prior to versions 1.9.16, 1.10.11, and 1.11.15 contains an incorrect default permissions vulnerability. …
- CVE-2021-40904HIGHCVSS 8.8EG 8.82022-03-25
The web management console of CheckMK Raw Edition (versions 1.5.0 to 1.6.0) allows a misconfiguration of the web-app Dokuwiki (installed by default), which allows embedded php code. As a result, remote code execution is achieved. Successfu…
- CVE-2021-40416HIGHCVSS 8.8EG 8.82022-01-28
An incorrect default permission vulnerability exists in the cgiserver.cgi cgi_check_ability functionality of reolink RLC-410W v3.0.0.136_20121102. All the Get APIs that are not included in cgi_check_ability are already executable by any lo…
- CVE-2021-40396HIGHCVSS 8.8EG 8.82022-01-28
A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iService 1.1.7. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious…
- CVE-2021-40389HIGHCVSS 8.8EG 8.82022-01-28
A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iEdge Server 1.0.2. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malic…
- CVE-2021-40388HIGHCVSS 8.8EG 8.82022-01-28
A privilege escalation vulnerability exists in Advantech SQ Manager Server 1.0.6. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger thi…
- CVE-2021-45335HIGHCVSS 8.8EG 8.82021-12-27
Sandbox component in Avast Antivirus prior to 20.4 has an insecure permission which could be abused by local user to control the outcome of scans, and therefore evade detection or delete arbitrary system files.
- CVE-2021-42098HIGHCVSS 8.8EG 8.82021-10-18
An incomplete permission check on entries in Devolutions Remote Desktop Manager before 2021.2.16 allows attackers to bypass permissions via batch custom PowerShell.
- CVE-2021-29005HIGHCVSS 8.8EG 8.82021-10-11
Insecure permission of chmod command on rConfig server 3.9.6 exists. After installing rConfig apache user may execute chmod as root without password which may let an attacker with low privilege to gain root access on server.
- CVE-2021-38557HIGHCVSS 8.8EG 8.82021-08-24
raspap-webgui in RaspAP 2.6.6 allows attackers to execute commands as root because of the insecure sudoers permissions. The www-data account can execute /etc/raspap/hostapd/enablelog.sh as root with no password; however, the www-data accou…
- CVE-2021-39273HIGHCVSS 8.8EG 8.82021-08-19
In XeroSecurity Sn1per 9.0 (free version), insecure permissions (0777) are set upon application execution, allowing an unprivileged user to modify the application, modules, and configuration files. This leads to arbitrary code execution wi…
- CVE-2020-5353HIGHCVSS 8.8EG 8.82021-07-29
The Dell Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0 default configuration for Network File System (NFS) allows access to an 'admin' home directory. An attacker may leverage a spoofed Unique Identifi…
- CVE-2020-28906HIGHCVSS 8.8EG 8.82021-05-24
Incorrect File Permissions in Nagios XI 5.7.5 and earlier and Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation to root. Low-privileged users are able to modify files that are included (aka sourced) by scripts executed by roo…
- CVE-2021-28271HIGHCVSS 8.8EG 8.82021-04-27
Soyal Technologies SOYAL 701Server 9.0.1 suffers from an elevation of privileges vulnerability which can be used by an authenticated user to change the executable file with a binary choice. The vulnerability is due to improper permissions …
- CVE-2020-13555HIGHCVSS 8.8EG 8.82021-02-17
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In COM Server Application Privilege Escalation, an attacker can either replace binary or loaded m…
- CVE-2020-13553HIGHCVSS 8.8EG 8.82021-02-17
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In webvrpcs Run Key Privilege Escalation in installation folder of WebAccess, an attacker can eit…
- CVE-2020-13552HIGHCVSS 8.8EG 8.82021-02-17
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In privilege escalation via multiple service executables in installation folder of WebAccess, an …
- CVE-2020-13551HIGHCVSS 8.8EG 8.82021-02-17
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In privilege escalation via PostgreSQL executable, an attacker can either replace binary or loade…
- CVE-2021-3394HIGHCVSS 8.8EG 8.82021-02-09
Millennium Millewin (also known as "Cartella clinica") 13.39.028, 13.39.28.3342, and 13.39.146.1 has insecure folder permissions allowing a malicious user for a local privilege escalation.
- CVE-2020-13541HIGHCVSS 8.8EG 8.82021-01-05
An exploitable local privilege elevation vulnerability exists in the file system permissions of the Mobile-911 Server V2.5 install directory. Depending on the vector chosen, an attacker can overwrite the service executable and execute arbi…
- CVE-2020-11955HIGHCVSS 8.8EG 8.82020-07-14
An issue was discovered on Rittal PDU-3C002DEC through 5.15.70 and CMCIII-PU-9333E0FB through 3.15.70 devices. There are insecure permissions.
- CVE-2020-14156HIGHCVSS 8.8EG 8.82020-06-15
user_channel/passwd_mgr.cpp in OpenBMC phosphor-host-ipmid before 2020-04-03 does not ensure that /etc/ipmi-pass has strong file permissions.
- CVE-2020-12075HIGHCVSS 8.8EG 8.82020-04-23
The data-tables-generator-by-supsystic plugin before 1.9.92 for WordPress lacks capability checks for AJAX actions.
- CVE-2020-6439HIGHCVSS 8.8EG 8.82020-04-13
Insufficient policy enforcement in navigations in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to bypass security UI via a crafted HTML page.
- CVE-2020-7004HIGHCVSS 8.8EG 8.82020-04-03
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow weak or insecure permissions on the VBASE directory resulting in elevation of privileges or malicious effects on the system the next time a privileged user runs the …
- CVE-2020-11444HIGHCVSS 8.8EG 8.82020-04-02
Sonatype Nexus Repository Manager 3.x up to and including 3.21.2 has Incorrect Access Control.
- CVE-2020-5551HIGHCVSS 8.8EG 8.82020-03-30
Toyota 2017 Model Year DCU (Display Control Unit) allows an unauthenticated attacker within Bluetooth range to cause a denial of service attack and/or execute an arbitrary command. The affected DCUs are installed in Lexus (LC, LS, NX, RC, …
- CVE-2019-16061HIGHCVSS 8.8EG 8.82020-03-19
A number of files on the NETSAS Enigma NMS server 65.0.0 and prior are granted weak world-readable and world-writable permissions, allowing any low privileged user with access to the system to read sensitive data (e.g., .htpasswd) and crea…
- CVE-2014-2723HIGHCVSS 8.8EG 8.82020-03-19
In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain privileged access to affected systems using SSH. The vulnerability is caused by a configura…
- CVE-2014-2722HIGHCVSS 8.8EG 8.82020-03-19
In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain privileged access to affected systems using SSH. The vulnerability is caused by a configura…
- CVE-2014-2721HIGHCVSS 8.8EG 8.82020-03-19
In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain privileged access to affected systems using SSH. The vulnerability is caused by a configura…
- CVE-2020-9408HIGHCVSS 8.8EG 8.82020-03-11
The Spotfire library component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace and TIBCO Spotfire Server contains a vulnerability that theoretically allows an attacker with write permissions to the Spotfire L…
- CVE-2019-19475HIGHCVSS 8.8EG 8.82020-01-10
An issue was discovered in ManageEngine Applications Manager 14 with Build 14360. Integrated PostgreSQL which is built-in in Applications Manager is prone to attack due to lack of file permission security. The malicious users who are in ��…
- CVE-2012-4434HIGHCVSS 8.8EG 8.82020-01-09
fwknop before 2.0.3 allow remote authenticated users to cause a denial of service (server crash) or possibly execute arbitrary code.
- CVE-2019-19202HIGHCVSS 8.8EG 8.82019-11-21
In Vtiger 7.x before 7.2.0, the My Preferences saving functionality allows a user without administrative privileges to change his own role by adding roleid=H2 to a POST request.
- CVE-2015-9477HIGHCVSS 8.8EG 8.82019-10-10
The Vernissage theme 1.2.8 for WordPress has insufficient restrictions on option updates.
- CVE-2015-9476HIGHCVSS 8.8EG 8.82019-10-10
The Teardrop theme 1.8.1 for WordPress has insufficient restrictions on option updates.
- CVE-2015-9475HIGHCVSS 8.8EG 8.82019-10-10
The Pont theme 1.5 for WordPress has insufficient restrictions on option updates.
- CVE-2015-9474HIGHCVSS 8.8EG 8.82019-10-10
The Simpolio theme 1.3.2 for WordPress has insufficient restrictions on option updates.
- CVE-2019-9679HIGHCVSS 8.8EG 8.82019-09-18
Some of Dahua's Debug functions do not have permission separation. Low-privileged users can use the Debug function after logging in. Affected products include: IPC-HDW1X2X,IPC-HFW1X2X,IPC-HDW2X2X,IPC-HFW2X2X,IPC-HDW4X2X,IPC-HFW4X2X,IPC-HDB…
- CVE-2018-10605HIGHCVSS 8.8EG 8.82018-10-01
Martem TELEM GW6/GWM versions prior to 2.0.87-4018403-k4 may allow unprivileged users to modify/upload a new system configuration or take the full control over the RTU using default credentials to connect to the RTU.
- CVE-2018-10604HIGHCVSS 8.8EG 8.82018-07-24
SEL Compass version 3.0.5.1 and prior allows all users full access to the SEL Compass directory, which may allow modification or overwriting of files within the Compass installation folder, resulting in escalation of privilege and/or malic…
- CVE-2017-16522HIGHCVSS 8.8EG 8.82017-11-03
MitraStar GPT-2541GNAC (HGU) 1.00(VNJ0)b1 and DSL-100HN-T1 ES_113WJY0b16 devices allow remote authenticated users to obtain root access by specifying /bin/sh as the command to execute.
- CVE-2017-12230HIGHCVSS 8.8EG 8.82017-09-29
A vulnerability in the web-based user interface (web UI) of Cisco IOS XE 16.2 could allow an authenticated, remote attacker to elevate their privileges on an affected device. The vulnerability is due to incorrect default permission setting…
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →