VYPR

CWE-276

Incorrect Default Permissions

BaseDraftLikelihood: Medium

Description

During installation, installed file permissions are set to allow anyone to modify those files.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1 · CAPEC-127 · CAPEC-81

CVEs mapped to this weakness (1,561)

page 76 of 79
  • CVE-2026-39398Apr 9, 2026
    risk 0.00cvss epss

    Rejected reason: The affected product and advisory are not public.

  • CVE-2026-23634NonJan 16, 2026
    risk 0.00cvss 0.0epss 0.00

    Pepr is a type safe K8s middleware. Prior to 1.0.5 , Pepr defaults to a cluster-admin RBAC configuration and does not explicitly force or enforce least-privilege guidance for module authors. The default behavior exists to make the “getting started” experience smooth: new…

  • CVE-2025-64724HigDec 18, 2025
    risk 0.00cvss 7.3epss 0.00

    Arduino IDE is an integrated development environment. Prior to version 2.3.7, Arduino IDE for macOS is installed with world-writable file permissions on sensitive application components, allowing any local user to replace legitimate files with malicious code. When another user…

  • CVE-2025-64723MedDec 18, 2025
    risk 0.00cvss 4.4epss 0.00

    Arduino IDE is an integrated development environment. Prior to version 2.3.7, Arduino IDE for macOS was configured with overly permissive security entitlements that could bypass macOS Hardened Runtime protections. This configuration allows attackers to inject malicious dynamic…

  • CVE-2025-54866MedNov 21, 2025
    risk 0.00cvss 5.5epss 0.00

    Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.3.0 to before 4.13.0, a missing ACL on "C:\Program Files (x86)\ossec-agent\authd.pass" exposes the password to all "Authenticated Users" on the local machine. This issue…

  • CVE-2025-5199HigJul 12, 2025
    risk 0.00cvss 7.3epss 0.00

    In Canonical Multipass up to and including version 1.15.1 on macOS, incorrect default permissions allow a local attacker to escalate privileges by modifying files executed with administrative privileges by a Launch Daemon during system startup.

  • CVE-2025-49842LowJun 17, 2025
    risk 0.00cvss epss 0.00

    conda-forge-webservices is the web app deployed to run conda-forge admin commands and linting. Prior to version 2025.3.24, the conda_forge_webservice Docker container executes commands without specifying a user. By default, Docker containers run as the root user, which increases…

  • CVE-2025-48950HigJun 3, 2025
    risk 0.00cvss 8.8epss 0.00

    MaxKB is an open-source AI assistant for enterprise. Prior to version 1.10.8-lts, Sandbox only restricts the execution permissions of binary files in common directories, such as `/bin,/usr/bin`, etc. Therefore, attackers can exploit some files with execution permissions in non…

  • CVE-2025-48070LowMay 21, 2025
    risk 0.00cvss 3.5epss 0.00

    Plane is open-source project management software. Versions prior to 0.23 have insecure permissions in UserSerializer that allows users to change fields that are meant to be read-only, such as email. This can lead to account takeover when chained with another vulnerability such…

  • CVE-2025-24400MedJan 22, 2025
    risk 0.00cvss 4.3epss 0.00

    Jenkins Eiffel Broadcaster Plugin 2.8.0 through 2.10.2 (both inclusive) uses the credential ID as the cache key during signing operations, allowing attackers able to create a credential with the same ID as a legitimate one in a different credentials store to sign an event…

  • CVE-2024-52551HigNov 13, 2024
    risk 0.00cvss 8.0epss 0.01

    Jenkins Pipeline: Declarative Plugin 2.2214.vb_b_34b_2ea_9b_83 and earlier does not check whether the main (Jenkinsfile) script used to restart a build from a specific stage is approved, allowing attackers with Item/Build permission to restart a previous build whose…

  • CVE-2024-43430MedNov 11, 2024
    risk 0.00cvss 5.3epss 0.00

    A flaw was found in moodle. External API access to Quiz can override contained insufficient access control.

  • CVE-2024-31442HigApr 8, 2024
    risk 0.00cvss 8.8epss 0.01

    Redon Hub is a Roblox Product Delivery Bot, also known as a Hub. In all hubs before version 1.0.2, all commands are capable of being ran by all users, including admin commands. This allows users to receive products for free and delete/create/update products/tags/etc. The only…

  • CVE-2024-22409HigJan 16, 2024
    risk 0.00cvss 7.5epss 0.01

    DataHub is an open-source metadata platform. In affected versions a low privileged user could remove a user, edit group members, or edit another user's profile information. The default privileges gave too many broad permissions to low privileged users. These have been…

  • CVE-2024-23301MedJan 12, 2024
    risk 0.00cvss 5.5epss 0.00

    Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. This allows local attackers to gain access to system secrets otherwise only readable by root.

  • CVE-2021-4297MedJan 1, 2023
    risk 0.00cvss 5.5epss 0.01

    A vulnerability has been found in trampgeek jobe up to 1.6.4 and classified as problematic. This vulnerability affects the function runs_post of the file application/controllers/Restapi.php. The manipulation of the argument sourcefilename leads to an unknown weakness. Upgrading…

  • CVE-2022-0336HigAug 29, 2022
    risk 0.00cvss 8.8epss 0.01

    The Samba AD DC includes checks when adding service principals names (SPNs) to an account to ensure that SPNs do not alias with those already in the database. Some of these checks are able to be bypassed if an account modification re-adds an SPN that was previously present on…

  • CVE-2021-3701MedAug 23, 2022
    risk 0.00cvss 6.6epss 0.00

    A flaw was found in ansible-runner where the default temporary files configuration in ansible-2.0.0 are written to world R/W locations. This flaw allows an attacker to pre-create the directory, resulting in reading private information or forcing ansible-runner to write files as…

  • CVE-2022-24890LowMay 17, 2022
    risk 0.00cvss 2.4epss 0.01

    Nextcloud Talk is a video and audio conferencing app for Nextcloud. In versions prior to 13.0.5 and 14.0.0, a call moderator can indirectly enable user webcams by granting permissions, if they were enabled before removing the permissions. A patch is available in versions 13.0.5…

  • CVE-2022-24804MedApr 11, 2022
    risk 0.00cvss 5.3epss 0.01

    Discourse is an open source platform for community discussion. In stable versions prior to 2.8.3 and beta versions prior 2.9.0.beta4 erroneously expose groups. When a group with restricted visibility has been used to set the permissions of a category, the name of the group is…