CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,684 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 31 of 34
- CVE-2025-30518MEDIUMCVSS 6.7EG 6.72025-11-11
Incorrect default permissions for some Intel(R) PresentMon before version 2.3.1 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexi…
- CVE-2025-30701HIGHCVSS 7.3EG 7.32025-04-15
Vulnerability in the RAS Security component of Oracle Database Server. Supported versions that are affected are 19.3-19.26, 21.3-21.17 and 23.4-23.7. Easily exploitable vulnerability allows low privileged attacker having User Account pri…
- CVE-2025-30706HIGHCVSS 7.5EG 7.52025-04-15
Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 9.0.0-9.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multip…
- CVE-2025-31261MEDIUMCVSS 5.5EG 5.52025-05-29
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to access protected user data.
- CVE-2025-31655MEDIUMCVSS 6.7EG 6.72026-02-10
Incorrect default permissions for some Intel(R) Battery Life Diagnostic Tool within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity …
- CVE-2025-31940MEDIUMCVSS 6.7EG 6.72025-11-11
Incorrect default permissions for some Intel(R) Thread Director Visualizer software before version 1.1.1 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user comb…
- CVE-2025-32091HIGHCVSS 8.2EG 8.22025-11-11
Incorrect default permissions in some firmware for the Intel(R) Arc(TM) B-series GPUs within Ring 1: Device Drivers may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attac…
- CVE-2025-32453MEDIUMCVSS 6.7EG 6.72026-02-10
Incorrect default permissions for some Intel(R) Graphics Driver software within Ring 2: Privileged Process may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity att…
- CVE-2025-32749HIGHCVSS 7.5EG 7.52026-05-26
Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information …
- CVE-2025-32803MEDIUMCVSS 4.0EG 4.02025-05-28
In some cases, Kea log files or lease files may be world-readable. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.
- CVE-2025-32981HIGHCVSS 7.1EG 7.12025-04-25
NETSCOUT nGeniusONE before 6.4.0 b2350 allows local users to leverage Insecure Permissions for the nGeniusCLI File.
- CVE-2025-34191HIGHCVSS 8.4EG 8.42025-09-19
Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.843 and Application prior to 20.0.1923 (macOS/Linux client deployments) contain an arbitrary file write vulnerability via the response file handling. When t…
- CVE-2025-34332HIGHCVSS 7.8EG 7.82025-11-19
AudioCodes Fax Server and Auto-Attendant IVR appliances versions up to and including 2.6.23 include a web administration component that controls back-end Windows services using helper batch scripts located under C:\\F2MAdmin\\F2E\\AudioCo…
- CVE-2025-34333HIGHCVSS 7.8EG 7.82025-11-19
AudioCodes Fax Server and Auto-Attendant IVR appliances versions up to and including 2.6.23 configure the web document root at C:\\F2MAdmin\\F2E with overly permissive file system permissions. Authenticated local users have modify rights …
- CVE-2025-35062MEDIUMCVSS 5.3EG 5.32025-10-09
Newforma Info Exchange (NIX) before version 2023.1 by default allows anonymous authentication which allows an unauthenticated attacker to exploit additional vulnerabilities that require authentication.
- CVE-2025-3528HIGHCVSS 8.2EG 8.22025-05-09
A flaw was found in the Mirror Registry. The quay-app container shipped as part of the Mirror Registry for OpenShift has write access to the `/etc/passwd`. This flaw allows a malicious actor with access to the container to modify the passw…
- CVE-2025-3617HIGHCVSS 7.8EG 7.82025-04-15
A privilege escalation vulnerability exists in the Rockwell Automation ThinManager. When the software starts up, files are deleted in the temporary folder causing the Access Control Entry of the directory to inherit permissions from the pa…
- CVE-2025-36511MEDIUMCVSS 6.7EG 6.72026-02-10
Incorrect default permissions for some Intel(R) Memory and Storage Tool before version 2.5.2 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated user combined with a high c…
- CVE-2025-36522MEDIUMCVSS 6.7EG 6.72026-02-10
Incorrect default permissions for some Intel(R) Chipset Software before version 10.1.20266.8668 or later. within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated user combined …
- CVE-2025-36632HIGHCVSS 7.8EG 7.82025-06-16
In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could execute code with SYSTEM privilege.
- CVE-2025-36857LOWCVSS 3.3EG 3.32025-09-25
Rapid7 Appspider Pro versions below 7.5.021, suffer from a broken access control vulnerability in the application's configuration file loading mechanism, whereby an attacker can place files in directories belonging to other users or proje…
- CVE-2025-39201MEDIUMCVSS 6.1EG 6.12025-06-24
A vulnerability exists in MicroSCADA X SYS600 product. If exploited this could allow a local unauthenticated attacker to tamper a system file, making denial of Notify service.
- CVE-2025-40585CRITICALCVSS 9.9EG 9.92025-06-10
A vulnerability has been identified in Energy Services (All versions with G5DFR). Affected solutions using G5DFR contain default credentials. This could allow an attacker to gain control of G5DFR component and tamper with outputs from the …
- CVE-2025-4081MEDIUMCVSS 4.8EG 4.82025-05-29
Use of entitlement "com.apple.security.cs.disable-library-validation" and lack of launch and library load constraints allows to substitute a legitimate dylib with malicious one. A local attacker with unprivileged access can execute the app…
- CVE-2025-41658MEDIUMCVSS 5.5EG 5.52025-08-04
CODESYS Runtime Toolkit-based products may expose sensitive files to local low-privileged operating system users due to default file permissions.
- CVE-2025-41665MEDIUMCVSS 6.5EG 6.52025-07-08
An low privileged remote attacker can enforce the watchdog of the affected devices to reboot the PLC due to incorrect default permissions of a config file.
- CVE-2025-42598HIGHCVSS 7.8EG 7.82025-04-28
Multiple SEIKO EPSON printer drivers for Windows OS are configured with an improper access permission settings when installed or used in a language other than English. If a user is directed to place a crafted DLL file in a location of an a…
- CVE-2025-4280MEDIUMCVSS 4.8EG 4.82025-05-22
MacOS version of Poedit bundles a Python interpreter that inherits the Transparency, Consent, and Control (TCC) permissions granted by the user to the main application bundle. An attacker with local user access can invoke this interpreter…
- CVE-2025-43350HIGHCVSS 2.4EG 7.52025-11-04
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.1 and iPadOS 26.1. An attacker may be able to view restricted content from the lock screen.
- CVE-2025-43442HIGHCVSS 3.3EG 7.52025-11-04
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1. An app may be able to identify what other apps a user has installed.
- CVE-2025-43444MEDIUMCVSS 5.3EG 5.32025-11-04
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, watchOS 26.1. An app may be able to fingerprint the …
- CVE-2025-43507MEDIUMCVSS 6.5EG 6.52025-11-04
A privacy issue was addressed by moving sensitive data. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, visionOS 26.1, watchOS 26.1. An app may be able to fingerprint the user.
- CVE-2025-43519MEDIUMCVSS 5.5EG 5.52025-12-12
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.3, macOS Sonoma 14.8.3, macOS Tahoe 26.2. An app may be able to access sensitive user data.
- CVE-2025-43595HIGHCVSS 7.8EG 7.82025-05-01
An insecure file system permissions vulnerability in MSP360 Backup 4.3.1.115 allows a low privileged user to execute commands with root privileges in the 'Online Backup' folder. Upgrade to MSP360 Backup 4.4 (released on 2025-04-22).
- CVE-2025-43596HIGHCVSS 7.8EG 7.82025-05-22
An insecure file system permissions vulnerability in MSP360 Backup 8.0 allows a low privileged user to execute commands with SYSTEM level privileges using a specially crafted file with an arbitrary file backup target. Upgrade to MSP360 Bac…
- CVE-2025-43725HIGHCVSS 7.8EG 7.82025-09-10
Dell PowerProtect Data Manager, Generic Application Agent, version(s) 19.19 and 19.20, contain(s) an Incorrect Default Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, lea…
- CVE-2025-43887HIGHCVSS 7.0EG 7.02025-09-10
Dell PowerProtect Data Manager, version(s) 19.19 and 19.20, Hyper-V contain(s) an Incorrect Default Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation o…
- CVE-2025-4412MEDIUMCVSS 4.8EG 4.82025-05-27
On macOS systems, by utilizing a Launch Agent and loading the viscosity_openvpn process from the application bundle, it is possible to load a dynamic library with Viscosity's TCC (Transparency, Consent, and Control) identity. The acquired …
- CVE-2025-44643HIGHCVSS 8.6EG 8.62025-08-04
Certain Draytek products are affected by Insecure Configuration. This affects AP903 v1.4.18 and AP912C v1.4.9 and AP918R v1.4.9. The setting of the password property in the ripd.conf configuration file sets a hardcoded weak password, posin…
- CVE-2025-45467HIGHCVSS 7.1EG 7.12025-07-25
Unitree Go1 <= Go1_2022_05_11 is vulnerable to Insecure Permissions as the firmware update functionality (via Wi-Fi/Ethernet) implements an insecure verification mechanism that solely relies on MD5 checksums for firmware integrity validati…
- CVE-2025-46014HIGHCVSS 8.8EG 8.82025-06-30
Several services in Honor Device Co., Ltd Honor PC Manager v16.0.0.118 was discovered to connect services to the named pipe iMateBookAssistant with default or overly permissive security attributes, leading to a privilege escalation.
- CVE-2025-46185MEDIUMCVSS 6.2EG 6.22025-10-24
An Insecure Permission vulnerability in pgcodekeeper 10.12.0 allows a local attacker to obtain sensitive information via the plaintext storage of passwords and usernames.
- CVE-2025-46355HIGHCVSS 7.3EG 7.32025-06-03
Incorrect default permissions issue in PC Time Tracer prior to 5.2. If exploited, arbitrary code may be executed with SYSTEM privilege on Windows system where the product is running by a local authenticated attacker.
- CVE-2025-46586MEDIUMCVSS 5.1EG 5.12025-05-06
Permission control vulnerability in the contacts module Impact: Successful exploitation of this vulnerability may affect availability.
- CVE-2025-46587MEDIUMCVSS 6.2EG 6.22025-05-06
Permission control vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2025-4660CRITICALCVSS 9.8EG 9.82025-05-13
A remote code execution vulnerability exists in the Windows agent component of SecureConnector due to improper access controls on a named pipe. The pipe is accessible to the Everyone group and does not restrict remote connections, allowin…
- CVE-2025-46803MEDIUMCVSS 5.0EG 5.02025-05-26
The default mode of pseudo terminals (PTYs) allocated by Screen was changed from 0620 to 0622, thereby allowing anyone to write to any Screen PTYs in the system.
- CVE-2025-48070LOWCVSS 3.5EG 3.52025-05-21
Plane is open-source project management software. Versions prior to 0.23 have insecure permissions in UserSerializer that allows users to change fields that are meant to be read-only, such as email. This can lead to account takeover when c…
- CVE-2025-48512HIGHCVSS 7.0EG 7.02026-05-15
Incorrect default permissions in the installation directory for the AMD general-purpose input/output controller (GPIO) could allow an attacker to achieve privilege escalation resulting in arbitrary code execution.
- CVE-2025-48516MEDIUMCVSS 6.9EG 6.92026-05-15
Insecure default configuration state of DDR5 memory module by AGESA Bootloader Firmware could allow an attacker with local user privilege to abuse the unprotected PMIC interface to create a permanent denial of service condition or affect t…
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →