VYPR

CWE-276

Incorrect Default Permissions

BaseDraftLikelihood: Medium

Description

During installation, installed file permissions are set to allow anyone to modify those files.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1 · CAPEC-127 · CAPEC-81

CVEs mapped to this weakness (1,561)

page 3 of 79
  • CVE-2018-9467CriNov 20, 2024
    risk 0.64cvss 9.8epss 0.00

    In the getHost() function of UriTest.java, there is the possibility of incorrect web origin determination. This could lead to incorrect security decisions with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-51051CriNov 18, 2024
    risk 0.64cvss 9.8epss 0.00

    AVSCMS v8.2.0 was discovered to contain weak default credentials for the Administrator account.

  • CVE-2023-27195CriNov 8, 2024
    risk 0.64cvss 9.8epss 0.01

    Trimble TM4Web 22.2.0 allows unauthenticated attackers to access /inc/tm_ajax.msw?func=UserfromUUID&uuid= to retrieve the last registration access code and use this access code to register a valid account. via a PUT /inc/tm_ajax.msw request. If the access code was used to create…

  • CVE-2022-30355CriOct 25, 2024
    risk 0.64cvss 9.8epss 0.00

    OvalEdge 5.2.8.0 and earlier is affected by an Account Takeover vulnerability via a POST request to /profile/updateProfile via the userId and email parameters. Authentication is required.

  • CVE-2024-48823CriOct 14, 2024
    risk 0.64cvss 9.8epss 0.01

    Local file inclusion in Automatic Systems Maintenance SlimLane 29565_d74ecce0c1081d50546db573a499941b10799fb7 allows a remote attacker to escalate privileges via the PassageAutoServer.php page.

  • CVE-2024-46695CriSep 13, 2024
    risk 0.64cvss 9.8epss 0.01

    In the Linux kernel, the following vulnerability has been resolved: selinux,smack: don't bypass permissions check in inode_setsecctx hook Marek Gresko reports that the root user on an NFS client is able to change the security labels on files on an NFS filesystem that is…

  • CVE-2024-27144CriJun 14, 2024
    risk 0.64cvss 9.8epss 0.01

    The Toshiba printers provide several ways to upload files using the web interface without authentication. An attacker can overwrite any insecure files. And the Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise any…

  • CVE-2023-46773CriDec 6, 2023
    risk 0.64cvss 9.8epss 0.01

    Permission management vulnerability in the PMS module. Successful exploitation of this vulnerability may cause privilege escalation.

  • CVE-2023-21216CriDec 4, 2023
    risk 0.64cvss 9.8epss 0.00

    In PMRChangeSparseMemOSMem of physmem_osmem_linux.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2023-47462CriNov 29, 2023
    risk 0.64cvss 9.8epss 0.01

    Insecure Permissions vulnerability in GL.iNet AX1800 v.3.215 and before allows a remote attacker to execute arbitrary code via the file sharing function.

  • CVE-2023-43902CriNov 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Incorrect access control in the Forgot Your Password function of EMSigner v2.8.7 allows unauthenticated attackers to access accounts of all registered users, including those with administrator privileges via a crafted password reset token.

  • CVE-2023-27133CriOct 17, 2023
    risk 0.64cvss 9.8epss 0.01

    TSplus Remote Work 16.0.0.0 has weak permissions for .exe, .js, and .html files under the %PROGRAMFILES(X86)%\TSplus-RemoteWork\Clients\www folder. This may enable privilege escalation if a different local user modifies a file. NOTE: CVE-2023-31067 and CVE-2023-31068 are only…

  • CVE-2023-33745CriJul 27, 2023
    risk 0.64cvss 9.8epss 0.01

    TeleAdapt RoomCast TA-2400 1.0 through 3.1 is vulnerable to Improper Privilege Management: from the shell available after an adb connection, simply entering the su command provides root access (without requiring a password).

  • CVE-2023-31116CriJun 7, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. An incorrect default permission can cause unintended querying of RCS capability via a crafted application.

  • CVE-2023-33282CriJun 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Marval MSM through 14.19.0.12476 and 15.0 has a System account with default credentials. A remote attacker is able to login and create a valid session. This makes it possible to make backend calls to endpoints in the application.

  • CVE-2023-29732CriMay 30, 2023
    risk 0.64cvss 9.8epss 0.01

    SoLive 1.6.14 thru 1.6.20 for Android exists exposed component, the component provides the method to modify the SharedPreference file. The attacker can use the method to modify the data in any SharedPreference file, these data will be loaded into the memory when the application…

  • CVE-2023-29919CriMay 23, 2023
    risk 0.64cvss 9.1epss 0.60

    SolarView Compact <= 6.0 is vulnerable to Insecure Permissions. Any file on the server can be read or modified because texteditor.php is not restricted.

  • CVE-2023-23059CriMay 4, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in GeoVision GV-Edge Recording Manager 2.2.3.0 for windows, which contains improper permissions within the default installation and allows attackers to execute arbitrary code and gain escalated privileges.

  • CVE-2023-22651CriMay 4, 2023
    risk 0.64cvss 9.9epss 0.01

    Improper Privilege Management vulnerability in SUSE Rancher allows Privilege Escalation. A failure in the update logic of Rancher's admission Webhook may lead to the misconfiguration of the Webhook. This component enforces validation rules and security checks before resources…

  • CVE-2021-34182CriFeb 17, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue in ttyd v.1.6.3 allows attacker to execute arbitrary code via default configuration permissions.