CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,684 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 26 of 34
- CVE-2024-36339HIGHCVSS 7.3EG 7.32025-05-13
A DLL hijacking vulnerability in the AMD Optimizing CPU Libraries could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
- CVE-2024-36495HIGHCVSS 7.7EG 7.72024-06-24
The application Faronics WINSelect (Standard + Enterprise) saves its configuration in an encrypted file on the file system which "Everyone" has read and write access to, path to file: C:\ProgramData\WINSelect\WINSelect.wsd The path f…
- CVE-2024-36541HIGHCVSS 8.8EG 8.82024-07-24
Insecure permissions in logging-operator v4.6.0 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.
- CVE-2024-37038HIGHCVSS 7.5EG 7.52024-06-12
CWE-276: Incorrect Default Permissions vulnerability exists that could allow an authenticated user with access to the device’s web interface to perform unauthorized file and firmware uploads when crafting custom web requests.
- CVE-2024-3779MEDIUMCVSS 6.1EG 6.12024-07-16
Denial of service vulnerability present shortly after product installation or upgrade, potentially allowed an attacker to render ESET’s security product inoperable, provided non-default preconditions were met.
- CVE-2024-38222MEDIUMCVSS 6.5EG 6.52024-09-12
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
- CVE-2024-38459HIGHCVSS 7.8EG 7.82024-06-16
langchain_experimental (aka LangChain Experimental) before 0.0.61 for LangChain provides Python REPL access without an opt-in step. NOTE; this issue exists because of an incomplete fix for CVE-2024-27444.
- CVE-2024-38499HIGHCVSS 8.8EG 8.82024-12-17
CA Client Automation (ITCM) allows non-admin/non-root users to encrypt a string using CAF CLI and SD_ACMD CLI. This would allow the non admin user to access the critical encryption keys which further causes the exploitation of stored crede…
- CVE-2024-3904HIGHCVSS 8.8EG 8.82024-07-04
Incorrect Default Permissions vulnerability in Smart Device Communication Gateway preinstalled on MELIPC Series MI5122-VW firmware versions "05" to "07" allows a local attacker to execute arbitrary code by saving a malicious file to a spec…
- CVE-2024-39347MEDIUMCVSS 5.9EG 5.92024-06-28
Incorrect default permissions vulnerability in firewall functionality in Synology Router Manager (SRM) before 1.2.5-8227-11 and 1.3.1-9346-8 allows man-in-the-middle attackers to access highly sensitive intranet resources via unspecified v…
- CVE-2024-39544MEDIUMCVSS 5.0EG 5.02024-10-11
An Incorrect Default Permissions vulnerability in the command line interface (CLI) of Juniper Networks Junos OS Evolved allows a low privileged local attacker to view NETCONF traceoptions files, representing an exposure of sensitive infor…
- CVE-2024-39924HIGHCVSS 8.8EG 8.82024-09-13
An issue was discovered in Vaultwarden (formerly Bitwarden_RS) 1.30.3. A vulnerability has been identified in the authentication and authorization process of the endpoint responsible for altering the metadata of an emergency access. It per…
- CVE-2024-4030HIGHCVSS 7.1EG 7.12024-05-07
On Windows a directory returned by tempfile.mkdtemp() would not always have permissions set to restrict reading and writing to the temporary directory by other users, instead usually inheriting the correct permissions from the default loca…
- CVE-2024-40514MEDIUMCVSS 4.6EG 4.62025-01-16
Insecure Permissions vulnerability in themesebrand Chatvia v.5.3.2 allows a remote attacker to escalate privileges via the User profile name and image upload functions.
- CVE-2024-40654HIGHCVSS 7.8EG 7.82024-09-11
In multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
- CVE-2024-40655HIGHCVSS 7.8EG 7.82024-09-11
In bindAndGetCallIdentification of CallScreeningServiceHelper.java, there is a possible way to maintain a while-in-use permission in the background due to a permissions bypass. This could lead to local escalation of privilege with no addit…
- CVE-2024-40660HIGHCVSS 7.8EG 7.82024-11-13
In setTransactionState of SurfaceFlinger.cpp, there is a possible way to change protected display attributes due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed.…
- CVE-2024-40661HIGHCVSS 7.8EG 7.82024-11-13
In mayAdminGrantPermission of AdminRestrictedPermissionsUtils.java, there is a possible way to access the microphone due to a missing permission check. This could lead to local escalation of privilege with no additional execution privilege…
- CVE-2024-40792LOWCVSS 3.3EG 3.32024-10-28
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. A malicious app may be able to change network settings.
- CVE-2024-40805HIGHCVSS 7.1EG 7.72024-07-29
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, watchOS 10.6. An app may be able to bypass Privacy preferences.
- CVE-2024-42028HIGHCVSS 8.8EG 8.82024-10-28
A Local privilege escalation vulnerability found in a Self-Hosted UniFi Network Server with UniFi Network Application (Version 8.4.62 and earlier) allows a malicious actor with a local operational system user to execute high privilege acti…
- CVE-2024-42053HIGHCVSS 7.8EG 7.82024-07-28
The MSI installer for Splashtop Streamer for Windows before 3.6.0.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM by placing a version.dll file in the fold…
- CVE-2024-42062HIGHCVSS 7.2EG 8.82024-08-07
CloudStack account-users by default use username and password based authentication for API and UI access. Account-users can generate and register randomised API and secret keys and use them for the purpose of API-based automation and inte…
- CVE-2024-42188LOWCVSS 3.7EG 3.72024-11-14
HCL Connections is vulnerable to a broken access control vulnerability that may allow an unauthorized user to update data in certain scenarios.
- CVE-2024-4226LOWCVSS 3.5EG 3.52024-04-30
It was identified that in certain versions of Octopus Server, that a user created with no permissions could view all users, user roles and permissions. This functionality was removed in versions of Octopus Server after the fixed versions l…
- CVE-2024-4229HIGHCVSS 7.8EG 7.82024-12-19
Incorrect Default Permissions vulnerability in Edgecross Basic Software for Windows versions 1.00 and later and Edgecross Basic Software for Developers versions 1.00 and later allows a malicious local attacker to execute an arbitrary malic…
- CVE-2024-42419MEDIUMCVSS 6.7EG 6.72025-02-12
Incorrect default permissions for some Intel(R) GPA and Intel(R) GPA Framework software installers may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2024-42681HIGHCVSS 8.8EG 8.82024-08-15
Insecure Permissions vulnerability in xxl-job v.2.4.1 allows a remote attacker to execute arbitrary code via the Sub-Task ID component.
- CVE-2024-43081HIGHCVSS 7.8EG 7.82024-11-13
In installExistingPackageAsUser of InstallPackageHelper.java, there is a possible carrier restriction bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed.…
- CVE-2024-43085HIGHCVSS 7.8EG 7.82024-11-13
In handleMessage of UsbDeviceManager.java, there is a possible method to access device contents over USB without unlocking the device due to a logic error in the code. This could lead to local escalation of privilege with no additional exe…
- CVE-2024-43086MEDIUMCVSS 5.5EG 5.52024-11-13
In validateAccountsInternal of AccountManagerService.java, there is a possible way to leak account credentials to a third party app due to a confused deputy. This could lead to local information disclosure with no additional execution priv…
- CVE-2024-43089HIGHCVSS 7.8EG 7.82024-11-13
In updateInternal of MediaProvider.java , there is a possible access of another app's files due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interactio…
- CVE-2024-43114HIGHCVSS 7.5EG 7.52024-08-06
In JetBrains TeamCity before 2024.07.1 possible privilege escalation due to incorrect directory permissions
- CVE-2024-43166CRITICALCVSS 9.8EG 9.82025-09-03
Incorrect Default Permissions vulnerability in Apache DolphinScheduler. This issue affects Apache DolphinScheduler: before 3.2.2. Users are recommended to upgrade to version 3.3.1, which fixes the issue.
- CVE-2024-43176MEDIUMCVSS 5.4EG 5.42025-01-09
IBM OpenPages 9.0 could allow an authenticated user to obtain sensitive information such as configurations that should only be available to privileged users.
- CVE-2024-43430MEDIUMCVSS 5.3EG 5.32024-11-11
A flaw was found in moodle. External API access to Quiz can override contained insufficient access control.
- CVE-2024-43765HIGHCVSS 7.8EG 7.82025-01-21
In multiple locations, there is a possible way to obtain access to a folder due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploita…
- CVE-2024-43769HIGHCVSS 7.8EG 7.82025-01-03
In isPackageDeviceAdmin of PackageManagerService.java, there is a possible edge case which could prevent the uninstallation of CloudDpc due to a logic error in the code. This could lead to local escalation of privilege with no additional e…
- CVE-2024-43791HIGHCVSS 7.8EG 7.82024-08-23
RequestStore provides per-request global storage for Rack. The files published as part of request_store 1.3.2 have 0666 permissions, meaning that they are world-writable, which allows local users to execute arbitrary code. This version was…
- CVE-2024-44100HIGHCVSS 7.5EG 7.52024-10-25
Android before 2024-10-05 on Google Pixel devices allows information disclosure in the modem component, A-299774545.
- CVE-2024-44135MEDIUMCVSS 5.5EG 5.52024-09-17
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. An app may be able to access protected files within an App Sandbox container.
- CVE-2024-44151MEDIUMCVSS 5.5EG 5.52024-09-17
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An app may be able to modify protected parts of the file system.
- CVE-2024-44224HIGHCVSS 7.8EG 7.82024-12-12
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ventura 13.7.2. A malicious app may be able to gain root privileges.
- CVE-2024-44228HIGHCVSS 7.5EG 7.52024-10-28
This issue was addressed with improved permissions checking. This issue is fixed in Xcode 16. An app may be able to inherit Xcode permissions and access user data.
- CVE-2024-44760CRITICALCVSS 7.5EG 9.12024-08-28
Incorrect access control in the component /servlet/SnoopServlet of Shenzhou News Union Enterprise Management System v5.0 through v18.8 allows attackers to access sensitive information regarding the server.
- CVE-2024-44786HIGHCVSS 7.5EG 7.52024-11-22
Incorrect access control in Meabilis CMS 1.0 allows attackers to access other users' address books via unspecified vectors.
- CVE-2024-45067HIGHCVSS 8.2EG 8.22025-05-14
Incorrect default permissions in some Intel(R) Gaudi(R) software installers before version 1.18 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2024-45494CRITICALCVSS 9.8EG 9.82024-12-10
An issue was discovered in MSA FieldServer Gateway 5.0.0 through 6.5.2 (Fixed in 7.0.0). The FieldServer Gateway has an internally used shared administrative user account on all devices. The authentication for this user is implemented thro…
- CVE-2024-45690HIGHCVSS 7.5EG 7.52024-11-20
A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.
- CVE-2024-45819MEDIUMCVSS 5.5EG 5.52024-12-19
PVH guests have their ACPI tables constructed by the toolstack. The construction involves building the tables in local memory, which are then copied into guest memory. While actually used parts of the local memory are filled in correctly…
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →