CWE-281— Improper Preservation of Permissions
The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.— MITRE CWE catalog
358 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-281page 7 of 8
- CVE-2024-55507CRITICALCVSS 9.8EG 9.82025-01-03
An issue in CodeAstro Complaint Management System v.1.0 allows a remote attacker to escalate privileges via the delete_e.php component.
- CVE-2024-56178MEDIUMCVSS 6.5EG 6.52025-01-27
An issue was discovered in Couchbase Server 7.6.x through 7.6.3. A user with the security_admin_local role can create a new user in a group that has the admin role.
- CVE-2024-56191HIGHCVSS 8.4EG 8.42025-03-10
In dhd_process_full_gscan_result of dhd_pno.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploita…
- CVE-2024-56192HIGHCVSS 7.8EG 7.82025-03-10
In wl_notify_gscan_event of wl_cfgscan.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not neede…
- CVE-2024-56317HIGHCVSS 7.5EG 7.52024-12-18
In Matter (aka connectedhomeip or Project CHIP) through 1.4.0.0, the WriteAcl function deletes all existing ACL entries first, and then attempts to recreate them based on user input. If input validation fails during decoding, the process s…
- CVE-2024-56973CRITICALCVSS 9.8EG 9.82025-02-14
Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2 allows a remote attacker to execute arbitrary code via the source and filename parameters to the ProcessUploadFromURL.jsp component.
- CVE-2024-57439MEDIUMCVSS 4.9EG 4.92025-01-29
An issue in the reset password interface of ruoyi v4.8.0 allows attackers with Admin privileges to cause a Denial of Service (DoS) by duplicating the login name of the account.
- CVE-2024-57698HIGHCVSS 7.5EG 7.52025-04-29
An issue in modernwms v.1.0 allows an attacker view the MD5 hash of the administrator password and other attributes without authentication, even after initial configuration and password change. This happens due to excessive exposure of inf…
- CVE-2024-9333MEDIUMCVSS 5.3EG 5.32024-10-02
Permissions bypass in M-Files Connector for Copilot before version 24.9.3 allows authenticated user to access limited amount of documents via incorrect access control list calculation
- CVE-2025-0914LOWCVSS 3.8EG 3.82025-02-27
An improper access control issue in the VQL shell feature in Velociraptor Versions < 0.73.4 allowed authenticated users to execute the execve() plugin in deployments where this was explicitly forbidden by configuring the prevent_execve fla…
- CVE-2025-21541MEDIUMCVSS 5.4EG 5.42025-01-21
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Admin Screens and Grants UI). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows low privileged attacker wit…
- CVE-2025-21544MEDIUMCVSS 5.4EG 5.42025-01-21
Vulnerability in the Oracle Communications Order and Service Management product of Oracle Communications Applications (component: Security). Supported versions that are affected are 7.4.0, 7.4.1 and 7.5.0. Easily exploitable vulnerabilit…
- CVE-2025-22620MEDIUMCVSS 5.0EG 5.02025-01-20
gitoxide is an implementation of git written in Rust. Prior to 0.17.0, gix-worktree-state specifies 0777 permissions when checking out executable files, intending that the umask will restrict them appropriately. But one of the strategies i…
- CVE-2025-24087MEDIUMCVSS 5.5EG 5.52025-01-27
The issue was addressed with additional permissions checks. This issue is fixed in macOS Sequoia 15.3. An app may be able to access protected user data.
- CVE-2025-24337HIGHCVSS 8.4EG 8.42025-01-20
WriteFreely through 0.15.1, when MySQL is used, allows local users to discover credentials by reading config.ini.
- CVE-2025-24791MEDIUMCVSS 4.4EG 4.42025-01-29
snowflake-connector-nodejs is a NodeJS driver for Snowflake. Snowflake discovered and remediated a vulnerability in the Snowflake NodeJS Driver. File permissions checks of the temporary credential cache could be bypassed by an attacker wit…
- CVE-2025-25711HIGHCVSS 8.8EG 8.82025-03-12
An issue in dtp.ae tNexus Airport View v.2.8 allows a remote attacker to escalate privileges via the ProfileID value to the [/tnexus/rest/admin/updateUser] API endpoint
- CVE-2025-25871HIGHCVSS 8.0EG 8.02025-03-14
An issue in Open Panel v.0.3.4 allows a remote attacker to escalate privileges via the Fix Permissions function
- CVE-2025-26420MEDIUMCVSS 4.4EG 4.42025-09-04
In multiple functions of GrantPermissionsActivity.java , there is a possible way to trick the user into granting the incorrect permission due to permission overload. This could lead to local escalation of privilege with no additional execu…
- CVE-2025-26691MEDIUMCVSS 5.5EG 5.52025-06-08
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission.
- CVE-2025-26693LOWCVSS 3.3EG 3.32025-06-08
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission.
- CVE-2025-27247MEDIUMCVSS 5.5EG 5.52025-06-08
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission.
- CVE-2025-27563LOWCVSS 3.3EG 3.32025-06-08
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission.
- CVE-2025-27703MEDIUMCVSS 6.0EG 6.02025-05-28
CVE-2025-27703 is a privilege escalation vulnerability in the management console of Absolute Secure Access prior to version 13.54. Attackers with administrative access to a specific subset of privileged features in the console can eleva…
- CVE-2025-30449HIGHCVSS 7.8EG 7.82025-03-31
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to gain root privileges.
- CVE-2025-30456HIGHCVSS 7.8EG 7.82025-03-31
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to gain root…
- CVE-2025-31184HIGHCVSS 7.8EG 7.82025-03-31
This issue was addressed with improved permissions checking. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visionOS 2.4. An app may gain unauthorized access to Local Network.
- CVE-2025-32696UnratedEG 0.02025-04-10
Improper Preservation of Permissions vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/actions/RevertAction.Php, includes/api/ApiFileRevert.Php. This issue affects MediaWiki: bef…
- CVE-2025-32697UnratedEG 0.02025-04-10
Improper Preservation of Permissions vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/editpage/IntroMessageBuilder.Php, includes/Permissions/PermissionManager.Php, includes/Permi…
- CVE-2025-34298HIGHCVSS 8.8EG 8.82025-10-30
Nagios Log Server versions prior to 2024R1.3.2 contain a privilege escalation vulnerability in the account email-change workflow. A user could set their own email to an invalid value and, due to insufficient validation and authorization ch…
- CVE-2025-37735HIGHCVSS 7.0EG 7.02025-11-06
Improper preservation of permissions in Elastic Defend on Windows hosts can lead to arbitrary files on the system being deleted by the Defend service running as SYSTEM. In some cases, this could result in local privilege escalation.
- CVE-2025-43026HIGHCVSS 7.8EG 7.82025-06-05
A potential security vulnerability has been identified in the HP Support Assistant for versions prior to 9.44.18.0. The vulnerability could potentially allow a local attacker to escalate privileges via an arbitrary file write.
- CVE-2025-43697HIGHCVSS 7.5EG 7.52025-06-10
Improper Preservation of Permissions vulnerability in Salesforce OmniStudio (DataMapper) allows exposure of encrypted data. This impacts OmniStudio: before Spring 2025
- CVE-2025-43698CRITICALCVSS 9.1EG 9.12025-06-10
Improper Preservation of Permissions vulnerability in Salesforce OmniStudio (FlexCards) allows bypass of field level security controls for Salesforce objects. This impacts OmniStudio: before Spring 2025
- CVE-2025-43700HIGHCVSS 7.5EG 7.52025-06-10
Improper Preservation of Permissions vulnerability in Salesforce OmniStudio (FlexCards) allows exposure of encrypted data. This impacts OmniStudio: before Spring 2025.
- CVE-2025-43701HIGHCVSS 7.5EG 7.52025-06-10
Improper Preservation of Permissions vulnerability in Salesforce OmniStudio (FlexCards) allows exposure of Custom Settings data. This impacts OmniStudio: before version 254.
- CVE-2025-55130CRITICALCVSS 9.1EG 9.12026-01-20
A flaw in Node.js’s Permissions model allows attackers to bypass `--allow-fs-read` and `--allow-fs-write` restrictions using crafted relative symlink paths. By chaining directories and symlinks, a script granted access only to the curren…
- CVE-2025-69875HIGHCVSS 7.8EG 7.82026-02-03
A vulnerability exists in Quick Heal Total Security 23.0.0 in the quarantine management component where insufficient validation of restore paths and improper permission handling allow a low-privileged local user to restore quarantined file…
- CVE-2025-7346HIGHCVSS 8.7EG 8.72025-07-08
Any unauthenticated attacker can bypass the localhost restrictions posed by the application and utilize this to create arbitrary packages
- CVE-2025-8325MEDIUMCVSS 6.3EG 6.32026-05-11
The software fails to enforce role-based access controls for certain Gateway API invocations. Users with the 'Internal/Everyone' role can invoke these APIs, bypassing intended permission checks. This same vulnerability also affects Interna…
- CVE-2025-9615LOWCVSS 3.3EG 3.32026-01-26
A flaw was found in NetworkManager. The NetworkManager package allows access to files that may belong to other users. NetworkManager allows non-root users to configure the system's network. The daemon runs with root privileges and can acce…
- CVE-2026-23556CRITICALCVSS 9.4EG 9.42026-07-09
When oxenstored is tearing a domain down, the node data is cleaned up but the usage counts are leaked. When the domain ID is eventually reused, the new domain can create fewer nodes before beeing deemed to be over quota.
- CVE-2026-24194HIGHCVSS 7.8EG 7.82026-05-26
NVIDIA Display Driver for Linux contains a vulnerability in a kernel mode layer handler, where a user could cause improper permission handling. A successful exploit of this vulnerability might lead to denial of service, escalation of privi…
- CVE-2026-24834HIGHCVSS 8.8EG 8.82026-02-19
Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. In versions prior to 3.27.0, an issue in Kata with Cloud Hypervisor allows a user of the co…
- CVE-2026-25850MEDIUMCVSS 5.5EG 5.52026-05-19
in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak
- CVE-2026-34600MEDIUMCVSS 5.7EG 5.72026-05-19
Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Versions 3.5.2 and prior contain a logic error in the delta API that allows share recipients to download notes that are no longer sha…
- CVE-2026-34744MEDIUMCVSS 5.3EG 5.32026-05-19
Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.28.1 and prior permit a user to list and download their own attachments from an Issue created by another user even after it becomes private, bypassing read access re…
- CVE-2026-35350MEDIUMCVSS 6.6EG 6.62026-04-22
The cp utility in uutils coreutils fails to properly handle setuid and setgid bits when ownership preservation fails. When copying with the -p (preserve) flag, the utility applies the source mode bits even if the chown operation is unsucce…
- CVE-2026-35351MEDIUMCVSS 4.2EG 4.22026-04-22
The mv utility in uutils coreutils fails to preserve file ownership during moves across different filesystem boundaries. The utility falls back to a copy-and-delete routine that creates the destination file using the caller's UID/GID rathe…
- CVE-2026-35361LOWCVSS 3.4EG 3.42026-04-22
The mknod utility in uutils coreutils fails to handle security labels atomically by creating device nodes before setting the SELinux context. If labeling fails, the utility attempts cleanup using std::fs::remove_dir, which cannot remove de…
Map vulnerabilities like CWE-281 to your infrastructure
EchelonGraph correlates every CVE — across CWE-281 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →