CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,684 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 23 of 34
- CVE-2023-47250HIGHCVSS 8.8EG 8.82023-11-22
In mprivacy-tools before 2.0.406g in m-privacy TightGate-Pro Server, broken Access Control on X11 server sockets allows authenticated attackers (with access to a VNC session) to access the X11 desktops of other users by specifying their DI…
- CVE-2023-47335MEDIUMCVSS 6.5EG 6.52023-11-16
Insecure permissions in the setNFZEnable function of Autel Robotics EVO Nano drone v1.6.5 allows attackers to breach the geo-fence and fly into no-fly zones.
- CVE-2023-47462CRITICALCVSS 9.8EG 9.82023-11-29
Insecure Permissions vulnerability in GL.iNet AX1800 v.3.215 and before allows a remote attacker to execute arbitrary code via the file sharing function.
- CVE-2023-48648CRITICALCVSS 9.8EG 9.82023-11-17
Concrete CMS before 8.5.13 and 9.x before 9.2.2 allows unauthorized access because directories can be created with insecure permissions. File creation functions (such as the Mkdir() function) gives universal access (0777) to created folder…
- CVE-2023-48678MEDIUMCVSS 5.5EG 5.52024-02-27
Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 37391.
- CVE-2023-49338HIGHCVSS 7.5EG 7.52024-02-28
Couchbase Server 7.1.x and 7.2.x before 7.2.4 does not require authentication for the /admin/stats and /admin/vitals endpoints on TCP port 8093 of localhost.
- CVE-2023-49721MEDIUMCVSS 6.7EG 6.72024-02-14
An insecure default to allow UEFI Shell in EDK2 was left enabled in LXD. This allows an OS-resident attacker to bypass Secure Boot.
- CVE-2023-50236HIGHCVSS 7.8EG 7.82024-02-13
A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The affected product is vulnerable due to weak file and folder permissions in the installation path. An attacker with local access could exploit this vulnerabili…
- CVE-2023-5042HIGHCVSS 7.5EG 7.52023-09-20
Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40713, Acronis True Image OEM (Windows) before build 42575.
- CVE-2023-50612HIGHCVSS 7.8EG 7.82024-01-06
Insecure Permissions vulnerability in fit2cloud Cloud Explorer Lite version 1.4.1, allow local attackers to escalate privileges and obtain sensitive information via the cloud accounts parameter.
- CVE-2023-50975HIGHCVSS 8.4EG 8.42024-02-21
The TD Bank TD Advanced Dashboard client through 3.0.3 for macOS allows arbitrary code execution because of the lack of electron::fuses::IsRunAsNodeEnabled (i.e., ELECTRON_RUN_AS_NODE can be used in production). This makes it easier for a …
- CVE-2023-52362HIGHCVSS 7.5EG 7.52024-02-18
Permission management vulnerability in the lock screen module.Successful exploitation of this vulnerability may affect availability.
- CVE-2023-52379HIGHCVSS 7.5EG 7.52024-02-18
Permission control vulnerability in the calendarProvider module.Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2023-52545HIGHCVSS 7.5EG 7.52024-04-08
Vulnerability of undefined permissions in the Calendar app. Impact: Successful exploitation of this vulnerability will affect availability.
- CVE-2023-52717MEDIUMCVSS 5.3EG 5.32024-04-07
Permission verification vulnerability in the lock screen module. Impact: Successful exploitation of this vulnerability will affect availability.
- CVE-2023-52954MEDIUMCVSS 4.4EG 4.42025-01-08
Vulnerability of improper permission control in the Gallery module Impact: Successful exploitation of this vulnerability may affect availability.
- CVE-2023-54366HIGHCVSS 8.8EG 8.82026-07-18
SurrealDB before 1.0.1 sets default table permissions to FULL instead of NONE, allowing SELECT, CREATE, UPDATE, and DELETE operations on tables without explicit permissions. Attackers with database access or unauthenticated users on public…
- CVE-2023-5536MEDIUMCVSS 6.4EG 6.42023-12-12
A feature in LXD (LP#1829071), affects the default configuration of Ubuntu Server which allows privileged users in the lxd group to escalate their privilege to root without requiring a sudo password.
- CVE-2023-5623HIGHCVSS 7.8EG 7.82023-10-26
NNM failed to properly set ACLs on its installation directory, which could allow a low privileged user to run arbitrary code with SYSTEM privileges where NNM is installed to a non-standard location
- CVE-2023-6273MEDIUMCVSS 5.3EG 5.32023-12-06
Permission management vulnerability in the module for disabling Sound Booster. Successful exploitation of this vulnerability may cause features to perform abnormally.
- CVE-2023-6302HIGHCVSS 7.2EG 7.22023-11-27
A vulnerability was found in CSZCMS 1.3.0 and classified as critical. Affected by this issue is some unknown functionality of the file \views\templates of the component File Manager Page. The manipulation leads to permission issues. The at…
- CVE-2023-6457MEDIUMCVSS 6.6EG 6.62024-01-16
Incorrect Default Permissions vulnerability in Hitachi Tuning Manager on Windows (Hitachi Tuning Manager server component) allows local users to read and write specific files.This issue affects Hitachi Tuning Manager: before 8.8.5-04.
- CVE-2023-7235HIGHCVSS 8.4EG 8.42024-02-21
The OpenVPN GUI installer before version 2.6.9 did not set the proper access control restrictions to the installation directory of OpenVPN binaries when using a non-standard installation path, which allows an attacker to replace binaries t…
- CVE-2024-0034HIGHCVSS 7.8EG 7.82024-02-16
In BackgroundLaunchProcessController, there is a possible way to launch arbitrary activity from the background due to BAL Bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interac…
- CVE-2024-0245MEDIUMCVSS 5.5EG 5.52025-03-20
A misconfiguration in the AndroidManifest.xml file in hamza417/inure before build97 allows for task hijacking. This vulnerability permits malicious applications to inherit permissions of the vulnerable app, potentially leading to the expos…
- CVE-2024-0259HIGHCVSS 7.3EG 7.32024-03-28
Fortra's Robot Schedule Enterprise Agent for Windows prior to version 3.04 is susceptible to privilege escalation. A low-privileged user can overwrite the service executable. When the service is restarted, the replaced binary runs with loc…
- CVE-2024-0770MEDIUMCVSS 4.4EG 4.42024-01-21
A vulnerability, which was classified as critical, was found in European Chemicals Agency IUCLID 7.10.3 on Windows. Affected is an unknown function of the file iuclid6.exe of the component Desktop Installer. The manipulation leads to incor…
- CVE-2024-0833HIGHCVSS 7.8EG 7.82024-01-31
In Telerik Test Studio versions prior to v2023.3.1330, a privilege elevation vulnerability has been identified in the applications installer component. In an environment where an existing Telerik Test Studio install is present, a lower…
- CVE-2024-10183MEDIUMCVSS 5.2EG 5.22024-10-22
A vulnerability in Jamf Pro's Jamf Remote Assist tool allows a local, non-privileged user to escalate their privileges to root on MacOS systems.
- CVE-2024-10251HIGHCVSS 7.8EG 7.82024-12-11
Under specific circumstances, insecure permissions in Ivanti Security Controls before version 2024.4.1 allows a local authenticated attacker to achieve local privilege escalation.
- CVE-2024-10469MEDIUMCVSS 6.5EG 6.52024-10-28
VINCE versions before 3.0.9 is vulnerable to exposure of User information to authenticated users.
- CVE-2024-11088MEDIUMCVSS 5.3EG 5.32024-11-21
The Simple Membership plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.5.5 via the WordPress core search feature. This makes it possible for unauthenticated attackers to extract s…
- CVE-2024-11089MEDIUMCVSS 5.3EG 5.32024-11-21
The Anonymous Restricted Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.6.5 via the WordPress core search feature. This makes it possible for unauthenticated attackers t…
- CVE-2024-11468HIGHCVSS 7.8EG 7.82025-02-04
Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a flaw in the installation process. Successful exploitation of this issue may allow attackers with user privileges to escalate their privileg…
- CVE-2024-1155HIGHCVSS 7.8EG 7.82024-02-20
Incorrect permissions in the installation directories for shared SystemLink Elixir based services may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2024-1156HIGHCVSS 7.8EG 7.82024-02-20
Incorrect directory permissions for the shared NI RabbitMQ service may allow a local authenticated user to read RabbitMQ configuration information and potentially enable escalation of privileges.
- CVE-2024-11597HIGHCVSS 7.8EG 7.82024-12-11
Under specific circumstances, insecure permissions in Ivanti Performance Manager before version 2024.3 HF1, 2024.1 HF1, or 2023.3 HF1 allows a local authenticated attacker to achieve local privilege escalation.
- CVE-2024-11598HIGHCVSS 7.8EG 7.82024-12-11
Under specific circumstances, insecure permissions in Ivanti Application Control before version 2024.3 HF1, 2024.1 HF2, or 2023.3 HF3 allows a local authenticated attacker to achieve local privilege escalation.
- CVE-2024-11624HIGHCVSS 7.8EG 7.82025-01-03
there is a possible to add apps to bypass VPN due to Undeclared Permission . This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CVE-2024-11703CRITICALCVSS 5.7EG 9.12024-11-26
On Android, Firefox may have inadvertently allowed viewing saved passwords without the required device PIN authentication. This vulnerability affects Firefox < 133.
- CVE-2024-11872HIGHCVSS 7.8EG 7.82024-12-12
Epic Games Launcher Incorrect Default Permissions Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Epic Games Launcher. An attacker must first obtain th…
- CVE-2024-11969HIGHCVSS 8.8EG 8.82024-11-28
The NetCloud Exchange client for Windows, version 1.110.50, contains an insecure file and folder permissions vulnerability. A normal (non-admin) user could exploit the weakness in file and folder permissions to escalate privileges, execute…
- CVE-2024-12564MEDIUMCVSS 6.9EG 6.92024-12-12
Exposure of Sensitive Information to an Unauthorized Actor vulnerability was discovered in Open Design Alliance CDE inWEB SDK before 2025.3. Installing CDE Server with default settings allows unauthorized users to visit prometheus metrics …
- CVE-2024-12903HIGHCVSS 7.8EG 7.82024-12-23
Incorrect default permissions vulnerability in Evoko Home, affecting version 2.4.2 to 2.7.4. A non-admin user could exploit weak file and folder permissions to escalate privileges, execute arbitrary code and maintain persistence on the com…
- CVE-2024-13188MEDIUMCVSS 5.3EG 5.32025-01-08
A vulnerability was found in MicroWorld eScan Antivirus 7.0.32 on Linux. It has been rated as critical. Affected by this issue is some unknown functionality of the file /opt/MicroWorld/var/ of the component Installation Handler. The manipu…
- CVE-2024-13206HIGHCVSS 7.8EG 7.82025-01-09
A vulnerability classified as critical has been found in REVE Antivirus 1.0.0.0 on Linux. This affects an unknown part of the file /usr/local/reveantivirus/tmp/reveinstall. The manipulation leads to incorrect default permissions. It is pos…
- CVE-2024-13948HIGHCVSS 7.3EG 7.32025-05-22
Windows permissions for ASPECT configuration toolsets are not fully secured allow-ing exposure of configuration informationThis issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*.
- CVE-2024-13972HIGHCVSS 8.8EG 8.82025-07-17
A vulnerability related to registry permissions in the Intercept X for Windows updater prior to Core Agent version 2024.3.2 can lead to a local user gaining SYSTEM level privileges during a product upgrade.
- CVE-2024-1488HIGHCVSS 8.0EG 8.02024-02-15
A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration. If a process can connect over localhost to port 8953, it can alter the c…
- CVE-2024-1605MEDIUMCVSS 6.6EG 6.62024-03-18
BMC Control-M branches 9.0.20 and 9.0.21 upon user login load all Dynamic Link Libraries (DLL) from a directory that grants Write and Read permissions to all users. Leveraging it leads to loading of a potentially malicious libraries, whi…
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →