CWE-276— Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.— MITRE CWE catalog
1,684 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-276page 8 of 34
- CVE-2020-14156HIGHCVSS 8.8EG 8.82020-06-15
user_channel/passwd_mgr.cpp in OpenBMC phosphor-host-ipmid before 2020-04-03 does not ensure that /etc/ipmi-pass has strong file permissions.
- CVE-2020-14521CRITICALCVSS 8.3EG 9.82022-02-11
Multiple Mitsubishi Electric Factory Automation engineering software products have a malicious code execution vulnerability. A malicious attacker could use this vulnerability to obtain information, modify information, and cause a denial-of…
- CVE-2020-15145MEDIUMCVSS 6.7EG 6.72020-08-14
In Composer-Setup for Windows before version 6.0.0, if the developer's computer is shared with other users, a local attacker may be able to exploit the following scenarios. 1. A local regular user may modify the existing `C:\ProgramData\Co…
- CVE-2020-15351HIGHCVSS 7.8EG 7.82020-06-26
IDrive before 6.7.3.19 on Windows installs by default to %PROGRAMFILES(X86)%\IDriveWindows with weak folder permissions granting any user modify permission (i.e., NT AUTHORITY\Authenticated Users:(OI)(CI)(M)) to the contents of the directo…
- CVE-2020-15578MEDIUMCVSS 5.5EG 5.52020-07-07
An issue was discovered on Samsung mobile devices with O(8.x) software. FactoryCamera does not properly restrict runtime permissions. The Samsung ID is SVE-2020-17270 (July 2020).
- CVE-2020-1571HIGHCVSS 7.3EG 7.32020-08-17
An elevation of privilege vulnerability exists in Windows Setup in the way it handles permissions. A locally authenticated attacker could run arbitrary code with elevated system privileges. After successfully exploiting the vulnerability, …
- CVE-2020-15821MEDIUMCVSS 6.5EG 6.52020-08-08
In JetBrains YouTrack before 2020.2.6881, a user without permission is able to create an article draft.
- CVE-2020-15843HIGHCVSS 7.3EG 7.32020-09-24
ActFax Version 7.10 Build 0335 (2020-05-25) is susceptible to a privilege escalation vulnerability due to insecure folder permissions on %PROGRAMFILES%\ActiveFax\Client\, %PROGRAMFILES%\ActiveFax\Install\ and %PROGRAMFILES%\ActiveFax\Termi…
- CVE-2020-15850HIGHCVSS 7.8EG 7.82020-09-24
Insecure permissions in Nakivo Backup & Replication Director version 9.4.0.r43656 on Linux allow local users to access the Nakivo Director web interface and gain root privileges. This occurs because the database containing the users of the…
- CVE-2020-15852HIGHCVSS 7.8EG 7.82020-07-20
An issue was discovered in the Linux kernel 5.5 through 5.7.9, as used in Xen through 4.13.x for x86 PV guests. An attacker may be granted the I/O port permissions of an unrelated task. This occurs because tss_invalidate_io_bitmap mishandl…
- CVE-2020-16144MEDIUMCVSS 5.7EG 5.72021-02-09
When using an object storage like S3 as the file store, when a user creates a public link to a folder where anonymous users can upload files, and another user uploads a virus the files antivirus app would detect the virus but fails to dele…
- CVE-2020-17381HIGHCVSS 7.3EG 7.32020-10-21
An issue was discovered in Ghisler Total Commander 9.51. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the %SYSTEMDRIVE%\totalcmd\TOTALCMD64.EXE binary.
- CVE-2020-1985HIGHCVSS 7.8EG 7.82020-04-08
Incorrect Default Permissions on C:\Programdata\Secdo\Logs folder in Secdo allows local authenticated users to overwrite system files and gain escalated privileges. This issue affects all versions Secdo for Windows.
- CVE-2020-2077HIGHCVSS 7.5EG 7.52020-07-29
SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings. An unauthorized attacker could read sensitive data from the system by querying for known files using the REST…
- CVE-2020-2117MEDIUMCVSS 4.3EG 4.32020-02-12
A missing permission check in Jenkins Pipeline GitHub Notify Step Plugin 1.0.4 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through anot…
- CVE-2020-2118MEDIUMCVSS 4.3EG 4.32020-02-12
A missing permission check in Jenkins Pipeline GitHub Notify Step Plugin 1.0.4 and earlier in form-related methods allowed users with Overall/Read access to enumerate credentials ID of credentials stored in Jenkins.
- CVE-2020-21342HIGHCVSS 7.5EG 7.52021-05-13
Insecure permissions issue in zzcms 201910 via the reset any user password in /one/getpassword.php.
- CVE-2020-21514HIGHCVSS 8.8EG 8.82023-04-04
An issue was discovered in Fluent-ui v.1.2.2 allows attackers to gain escalated privileges and execute arbitrary code due to a default password.
- CVE-2020-2183MEDIUMCVSS 6.5EG 6.52020-05-06
Jenkins Copy Artifact Plugin 1.43.1 and earlier performs improper permission checks, allowing attackers to copy artifacts from jobs they have no permission to access.
- CVE-2020-2191MEDIUMCVSS 4.3EG 4.32020-06-03
Jenkins Self-Organizing Swarm Plug-in Modules Plugin 3.20 and earlier does not check permissions on API endpoints that allow adding and removing agent labels.
- CVE-2020-2197MEDIUMCVSS 4.3EG 4.32020-06-03
Jenkins Project Inheritance Plugin 19.08.02 and earlier does not require users to have Job/ExtendedRead permission to access Inheritance Project job configurations in XML format.
- CVE-2020-22475MEDIUMCVSS 6.8EG 6.82021-02-22
"Tasks" application version before 9.7.3 is affected by insecure permissions. The VoiceCommandActivity application component allows arbitrary applications on a device to add tasks with no restrictions.
- CVE-2020-23971HIGHCVSS 7.5EG 7.52020-09-01
gmapfp.org Joomla Component GMapFP J3.30pro is affected by Insecure Permissions. An attacker can access the upload function without authenticating to the application and also can upload files due the issues of unrestricted file uploads whi…
- CVE-2020-24402MEDIUMCVSS 4.9EG 4.92020-11-09
Magento version 2.4.0 and 2.3.5p1 (and earlier) are affected by an incorrect permissions vulnerability in the Integrations component. This vulnerability could be abused by authenticated users with permissions to the Resource Access API to …
- CVE-2020-24456HIGHCVSS 7.8EG 7.82020-11-12
Incorrect default permissions in the Intel(R) Board ID Tool version v.1.01 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2020-24460MEDIUMCVSS 5.5EG 5.52020-11-12
Incorrect default permissions in the Intel(R) DSA before version 20.8.30.6 may allow an authenticated user to potentially enable denial of service via local access.
- CVE-2020-24583HIGHCVSS 7.5EG 7.52020-09-01
An issue was discovered in Django 2.2 before 2.2.16, 3.0 before 3.0.10, and 3.1 before 3.1.1 (when Python 3.7+ is used). FILE_UPLOAD_DIRECTORY_PERMISSIONS mode was not applied to intermediate-level directories created in the process of upl…
- CVE-2020-24584HIGHCVSS 7.5EG 7.52020-09-01
An issue was discovered in Django 2.2 before 2.2.16, 3.0 before 3.0.10, and 3.1 before 3.1.1 (when Python 3.7+ is used). The intermediate-level directories of the filesystem cache had the system's standard umask rather than 0o077.
- CVE-2020-24717HIGHCVSS 7.8EG 7.82020-08-27
OpenZFS before 2.0.0-rc1, when used on FreeBSD, misinterprets group permissions as user permissions, as demonstrated by mode 0770 being equivalent to mode 0777.
- CVE-2020-25208MEDIUMCVSS 5.3EG 5.32021-02-03
In JetBrains YouTrack before 2020.4.4701, an attacker could enumerate users via the REST API without appropriate permissions.
- CVE-2020-25245HIGHCVSS 7.8EG 7.82021-02-09
A vulnerability has been identified in DIGSI 4 (All versions < V4.94 SP1 HF 1). Several folders in the %PATH% are writeable by normal users. As these folders are included in the search for dlls, an attacker could place dlls there with code…
- CVE-2020-25593MEDIUMCVSS 6.7EG 6.72021-07-15
Acronis True Image through 2021 on macOS allows local privilege escalation from admin to root due to insecure folder permissions.
- CVE-2020-26031MEDIUMCVSS 4.3EG 4.32020-12-28
An issue was discovered in Zammad before 3.4.1. The global-search feature leaks Knowledge Base drafts to Knowledge Base readers (who are authenticated but have insufficient permissions).
- CVE-2020-26088MEDIUMCVSS 5.5EG 5.52020-09-24
A missing CAP_NET_RAW check in NFC socket creation in net/nfc/rawsock.c in the Linux kernel before 5.8.2 could be used by local attackers to create raw sockets, bypassing security mechanisms, aka CID-26896f01467a.
- CVE-2020-26180MEDIUMCVSS 6.3EG 6.32021-07-28
Dell EMC Isilon OneFS supported versions 8.1 and later and Dell EMC PowerScale OneFS supported version 9.0.0 contain an access issue with the remotesupport user account. A remote malicious user with low privileges may gain access to data s…
- CVE-2020-26679MEDIUMCVSS 4.3EG 4.32021-05-26
vFairs 3.3 is affected by Insecure Permissions. Any user logged in to a vFairs virtual conference or event can modify any other users profile information or profile picture. After receiving any user's unique identification number and their…
- CVE-2020-26807LOWCVSS 3.3EG 3.32020-11-10
SAP ERP Client for E-Bilanz, version - 1.0, installation sets Incorrect default filesystem permissions are set in its installation folder which allows anyone to modify the files in the folder.
- CVE-2020-26809MEDIUMCVSS 5.3EG 5.32020-11-10
SAP Commerce Cloud, versions- 1808,1811,1905,2005, allows an attacker to bypass existing authentication and permission checks via the '/medias' endpoint hence gaining access to Secure Media folders. This folder could contain sensitive file…
- CVE-2020-26941MEDIUMCVSS 5.5EG 5.52021-01-26
A local (authenticated) low-privileged user can exploit a behavior in an ESET installer to achieve arbitrary file overwrite (deletion) of any file via a symlink, due to insecure permissions. The possibility of exploiting this vulnerability…
- CVE-2020-27039MEDIUMCVSS 5.5EG 5.52020-12-15
In postNotification of ServiceRecord.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for expl…
- CVE-2020-27053MEDIUMCVSS 4.4EG 4.42020-12-15
In broadcastWifiCredentialChanged of ClientModeImpl.java, there is a possible location permission bypass due to a missing permission check. This could lead to local information disclosure of the WiFi network name with System execution priv…
- CVE-2020-27056LOWCVSS 3.3EG 3.32020-12-15
In SELinux policies of mls, there is a missing permission check. This could lead to local information disclosure of package metadata with no additional execution privileges needed. User interaction is not needed for exploitation.Product: A…
- CVE-2020-27057LOWCVSS 3.3EG 3.32020-12-15
In getGpuStatsGlobalInfo and getGpuStatsAppInfo of GpuService.cpp, there is a possible permission bypass due to a missing permission check. This could lead to local information disclosure of gpu statistics with User execution privileges ne…
- CVE-2020-27228HIGHCVSS 7.8EG 7.82021-04-13
An incorrect default permissions vulnerability exists in the installation functionality of OpenClinic GA 5.173.3. Overwriting the binary can result in privilege escalation. An attacker can replace a file to exploit this vulnerability.
- CVE-2020-27358MEDIUMCVSS 4.3EG 4.32020-11-02
An issue was discovered in REDCap 8.11.6 through 9.x before 10. The messenger's CSV feature (that allows users to export their conversation threads as CSV) allows non-privileged users to export one another's conversation threads by changin…
- CVE-2020-27384HIGHCVSS 7.8EG 7.82021-06-09
The Gw2-64.exe in Guild Wars 2 launcher version 106916 suffers from an elevation of privileges vulnerability which can be used by an "Authenticated User" to modify the existing executable file with a binary of his choice. The vulnerability…
- CVE-2020-27568HIGHCVSS 7.5EG 7.52021-04-21
Insecure File Permissions exist in Aviatrix Controller 5.3.1516. Several world writable files and directories were found in the controller resource. Note: All Aviatrix appliances are fully encrypted. This is an extra layer of security.
- CVE-2020-27569HIGHCVSS 7.5EG 7.52021-04-21
Arbitrary File Write exists in Aviatrix VPN Client 2.8.2 and earlier. The VPN service writes logs to a location that is world writable and can be leveraged to gain write access to any file on the system.
- CVE-2020-27665HIGHCVSS 7.5EG 7.52020-10-22
In Strapi before 3.2.5, there is no admin::hasPermissions restriction for CTB (aka content-type-builder) routes.
- CVE-2020-28041MEDIUMCVSS 6.5EG 6.52020-11-02
The SIP ALG implementation on NETGEAR Nighthawk R7000 1.0.9.64_10.2.64 devices allows remote attackers to communicate with arbitrary TCP and UDP services on a victim's intranet machine, if the victim visits an attacker-controlled web site …
Map vulnerabilities like CWE-276 to your infrastructure
EchelonGraph correlates every CVE — across CWE-276 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →