CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,684 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 16 of 34
- CVE-2022-20441HIGHCVSS 7.8EG 7.82022-11-08
In navigateUpTo of Task.java, there is a possible way to launch an unexported intent handler due to a logic error in the code. This could lead to local escalation of privilege if the targeted app has an intent trampoline, with no additiona…
- CVE-2022-20448MEDIUMCVSS 5.5EG 5.52022-11-08
In buzzBeepBlinkLocked of NotificationManagerService.java, there is a possible way to share data across users due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. Use…
- CVE-2022-20452HIGHCVSS 7.8EG 7.82022-11-08
In initializeFromParcelLocked of BaseBundle.java, there is a possible method arbitrary code execution due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interacti…
- CVE-2022-20456HIGHCVSS 7.8EG 7.82023-01-26
In AutomaticZenRule of AutomaticZenRule.java, there is a possible failure to persist permissions settings due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User int…
- CVE-2022-20465MEDIUMCVSS 4.6EG 4.62022-11-08
In dismiss and related functions of KeyguardHostViewController.java and related files, there is a possible lockscreen bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution pr…
- CVE-2022-20474HIGHCVSS 7.8EG 7.82022-12-13
In readLazyValue of Parcel.java, there is a possible loading of arbitrary code into the System Settings app due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User int…
- CVE-2022-20475HIGHCVSS 7.8EG 7.82022-12-13
In test of ResetTargetTaskHelper.java, there is a possible hijacking of any app which sets allowTaskReparenting="true" due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges neede…
- CVE-2022-20495HIGHCVSS 7.8EG 7.82022-12-13
In getEnabledAccessibilityServiceList of AccessibilityManager.java, there is a possible way to hide an accessibility service due to a logic error in the code. This could lead to local escalation of privilege with no additional execution pr…
- CVE-2022-20511MEDIUMCVSS 5.5EG 5.52022-12-16
In getNearbyAppStreamingPolicy of DevicePolicyManagerService.java, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for expl…
- CVE-2022-20611HIGHCVSS 7.8EG 7.82022-12-13
In deletePackageVersionedInternal of DeletePackageHelper.java, there is a possible way to bypass carrier restrictions due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges nee…
- CVE-2022-20732HIGHCVSS 7.8EG 7.82022-04-21
A vulnerability in the configuration file protections of Cisco Virtualized Infrastructure Manager (VIM) could allow an authenticated, local attacker to access confidential information and elevate privileges on an affected device. This vuln…
- CVE-2022-21204HIGHCVSS 7.8EG 7.82022-02-09
Improper permissions for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2022-21704MEDIUMCVSS 5.5EG 5.52022-01-19
log4js-node is a port of log4js to node.js. In affected versions default file permissions for log files created by the file, fileSync and dateFile appenders are world-readable (in unix). This could cause problems if log files contain sensi…
- CVE-2022-22296MEDIUMCVSS 5.3EG 5.32022-01-24
Sourcecodester Hospital's Patient Records Management System 1.0 is vulnerable to Insecure Permissions via the id parameter in manage_user endpoint. Simply change the value and data of other users can be displayed.
- CVE-2022-22424MEDIUMCVSS 5.5EG 5.52022-07-20
IBM QRadar SIEM 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information from the TLS key file due to incorrect file permissions. IBM X-Force ID: 223597.
- CVE-2022-22518MEDIUMCVSS 6.5EG 6.52022-04-07
A bug in CmpUserMgr component can lead to only partially applied security policies. This can result in enabled, anonymous access to components part of the applied security policy.
- CVE-2022-2270MEDIUMCVSS 3.5EG 5.32022-07-01
An issue has been discovered in GitLab affecting all versions starting from 12.4 before 14.10.5, all versions starting from 15.0 before 15.0.4, all versions starting from 15.1 before 15.1.1. GitLab was leaking Conan packages names due to i…
- CVE-2022-22948CRITICALCVSS 6.5EG 9.0⚠ KEV2022-03-29
The vCenter Server contains an information disclosure vulnerability due to improper permission of files. A malicious actor with non-administrative access to the vCenter Server may exploit this issue to gain access to sensitive information.
- CVE-2022-23104MEDIUMCVSS 5.6EG 5.62022-02-24
WIN-911 2021 R1 and R2 are vulnerable to a permissions misconfiguration that may allow an attacker to locally write files to the program Operator Workspace directory, which holds DLL files and executables. A low-privilege attacker could wr…
- CVE-2022-23453HIGHCVSS 7.8EG 7.82023-02-01
Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of fi…
- CVE-2022-23454HIGHCVSS 7.8EG 7.82023-02-01
Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of fi…
- CVE-2022-2366MEDIUMCVSS 5.6EG 5.62022-07-12
Incorrect default configuration for trusted IP header in Mattermost version 6.7.0 and earlier allows attacker to bypass some of the rate limitations in place or use manipulated IPs for audit logging via manipulating the request headers.
- CVE-2022-23802HIGHCVSS 7.5EG 7.52022-05-06
Joomla Guru extension 5.2.5 is affected by: Insecure Permissions. The impact is: obtain sensitive information (remote). The component is: Access to private information and components, possibility to view other users' information. Informati…
- CVE-2022-23922MEDIUMCVSS 5.6EG 5.62022-02-24
WIN-911 2021 R1 and R2 are vulnerable to a permissions misconfiguration that may allow an attacker to locally write files to the Program Announcer directory and elevate permissions whenever the program is executed.
- CVE-2022-23995MEDIUMCVSS 4.0EG 4.02022-02-11
Unprotected component vulnerability in StBedtimeModeAlarmReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission.
- CVE-2022-23996MEDIUMCVSS 4.0EG 4.02022-02-11
Unprotected component vulnerability in StTheaterModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to enable bedtime mode without a proper permission.
- CVE-2022-24113HIGHCVSS 7.8EG 7.82022-02-04
Local privilege escalation due to excessive permissions assigned to child processes. The following products are affected: Acronis Cyber Protect 15 (Windows) before build 28035, Acronis Agent (Windows) before build 27147, Acronis Cyber Prot…
- CVE-2022-24301MEDIUMCVSS 6.5EG 6.52022-02-02
In Minetest before 5.4.0, players can add or subtract items from a different player's inventory.
- CVE-2022-24337MEDIUMCVSS 6.5EG 6.52022-02-25
In JetBrains TeamCity before 2021.2, health items of pull requests were shown to users who lacked appropriate permissions.
- CVE-2022-24343MEDIUMCVSS 4.3EG 4.32022-02-25
In JetBrains YouTrack before 2021.4.31698, a custom logo could be set by a user who has read-only permissions.
- CVE-2022-24804MEDIUMCVSS 5.3EG 5.32022-04-11
Discourse is an open source platform for community discussion. In stable versions prior to 2.8.3 and beta versions prior 2.9.0.beta4 erroneously expose groups. When a group with restricted visibility has been used to set the permissions of…
- CVE-2022-24890LOWCVSS 2.4EG 2.42022-05-17
Nextcloud Talk is a video and audio conferencing app for Nextcloud. In versions prior to 13.0.5 and 14.0.0, a call moderator can indirectly enable user webcams by granting permissions, if they were enabled before removing the permissions. …
- CVE-2022-2528MEDIUMCVSS 6.5EG 6.52022-09-09
In affected versions of Octopus Deploy it is possible to upload a package to built-in feed with insufficient permissions after re-indexing packages.
- CVE-2022-25327MEDIUMCVSS 5.5EG 5.52022-02-25
The PAM module for fscrypt doesn't adequately validate fscrypt metadata files, allowing users to create malicious metadata files that prevent other users from logging in. A local user can cause a denial of service by creating a fscrypt met…
- CVE-2022-25364HIGHCVSS 8.1EG 8.12022-03-17
In Gradle Enterprise before 2021.4.2, the default built-in build cache configuration allowed anonymous write access. If this was not manually changed, a malicious actor with network access to the build cache could potentially populate it w…
- CVE-2022-25570MEDIUMCVSS 6.5EG 6.52022-03-21
In Click Studios (SA) Pty Ltd Passwordstate 9435, users with access to a passwordlist can gain access to additional password lists without permissions. Specifically, an authenticated user who has write permissions to a password list in one…
- CVE-2022-25776HIGHCVSS 8.3EG 8.32024-09-18
Prior to the patched version, logged in users of Mautic are able to access areas of the application that they should be prevented from accessing. Users could potentially access sensitive data such as names and surnames, company names and …
- CVE-2022-25804MEDIUMCVSS 5.5EG 5.52022-06-09
An issue was discovered in the IGEL Universal Management Suite (UMS) 6.07.100. Insecure permissions for the serverconfig registry key (under JavaSoft\Prefs\de\igel\rm\config in HKEY_LOCAL_MACHINE\SOFTWARE) allow an unprivileged local attac…
- CVE-2022-25814HIGHCVSS 5.5EG 7.82022-03-10
PendingIntent hijacking vulnerability in Wearable Manager Installer prior to SMR Mar-2022 Release 1 allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.
- CVE-2022-25815HIGHCVSS 5.5EG 7.82022-03-10
PendingIntent hijacking vulnerability in Weather application prior to SMR Mar-2022 Release 1 allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.
- CVE-2022-25899CRITICALCVSS 9.8EG 9.82022-08-18
Authentication bypass for the Open AMT Cloud Toolkit software maintained by Intel(R) before versions 2.0.2 and 2.2.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
- CVE-2022-25943HIGHCVSS 7.8EG 7.82022-03-09
The installer of WPS Office for Windows versions prior to v11.2.0.10258 fails to configure properly the ACL for the directory where the service program is installed.
- CVE-2022-25992HIGHCVSS 7.5EG 7.82023-02-16
Insecure inherited permissions in the Intel(R) oneAPI Toolkits oneapi-cli before version 0.2.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2022-26235HIGHCVSS 7.8EG 7.82022-10-06
A vulnerability was discovered in the Remisol Advance v2.0.12.1 and below for the Normand Message Server. On installation, the permissions set by Remisol Advance allow non-privileged users to overwrite and/or manipulate executables and lib…
- CVE-2022-26344HIGHCVSS 7.8EG 7.82022-08-18
Incorrect default permissions in the installation binaries for Intel(R) SEAPI all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2022-26429HIGHCVSS 7.8EG 7.82022-08-01
In cta, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed …
- CVE-2022-26595MEDIUMCVSS 4.3EG 4.32022-04-19
Liferay Portal 7.3.7, 7.4.0, and 7.4.1, and Liferay DXP 7.2 fix pack 13, and 7.3 fix pack 2 does not properly check user permission when accessing a list of sites/groups, which allows remote authenticated users to view sites/groups via the…
- CVE-2022-26839HIGHCVSS 7.8EG 7.82022-03-29
Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) is vulnerable to an incorrect default permission in the DIAEnergie application, which may allow an attacker to plant new files (such as DLLs) or replace existing executable fi…
- CVE-2022-26855MEDIUMCVSS 5.5EG 5.52022-04-08
Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contains an incorrect default permissions vulnerability. A local malicious user could potentially exploit this vulnerability, leading to a denial of service.
- CVE-2022-27205MEDIUMCVSS 4.3EG 4.32022-03-15
A missing permission check in Jenkins Extended Choice Parameter Plugin 346.vd87693c5a_86c and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL.
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →