VYPR

CWE-276

Incorrect Default Permissions

BaseDraftLikelihood: Medium

Description

During installation, installed file permissions are set to allow anyone to modify those files.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1 · CAPEC-127 · CAPEC-81

CVEs mapped to this weakness (1,561)

page 9 of 79
  • CVE-2022-48199HigJan 26, 2023
    risk 0.57cvss 8.8epss 0.01

    SoftPerfect NetWorx 7.1.1 on Windows allows an attacker to execute a malicious binary with potentially higher privileges via a low-privileged user account that abuses the Notifications function. The Notifications function allows for arbitrary binary execution and can be modified…

  • CVE-2022-29909HigDec 22, 2022
    risk 0.57cvss 8.8epss 0.01

    Documents in deeply-nested cross-origin browsing contexts could have obtained permissions granted to the top-level origin, bypassing the existing prompt and wrongfully inheriting the top-level permissions. This vulnerability affects Thunderbird < 91.9, Firefox ESR < 91.9, and…

  • CVE-2022-46382HigDec 6, 2022
    risk 0.57cvss 8.8epss 0.01

    RackN Digital Rebar through 4.6.14, 4.7 through 4.7.22, 4.8 through 4.8.5, 4.9 through 4.9.12, and 4.10 through 4.10.8 has Insecure Permissions. After signing into Digital Rebar, users are issued authentication tokens tied to their account to perform actions within Digital…

  • CVE-2022-45562HigDec 2, 2022
    risk 0.57cvss 8.8epss 0.01

    Insecure permissions in Telos Alliance Omnia MPX Node v1.0.0 to v1.4.9 allow attackers to manipulate and access system settings with backdoor account low privilege, this can lead to change hardware settings and execute arbitrary commands in vulnerable system functions that is…

  • CVE-2022-36803HigOct 14, 2022
    risk 0.57cvss 8.8epss 0.01

    The MasterUserEdit API in Atlassian Jira Align Server before version 10.109.2 allows An authenticated attacker with the People role permission to use the MasterUserEdit API to modify any users role to Super Admin. This vulnerability was reported by Jacob Shafer from Bishop Fox.

  • CVE-2022-33996HigJul 7, 2022
    risk 0.57cvss 8.8epss 0.01

    Incorrect permission management in Devolutions Server before 2022.2 allows a new user with a preexisting username to inherit the permissions of that previous user.

  • CVE-2021-41635HigJun 24, 2022
    risk 0.57cvss 8.8epss 0.02

    When installed as Windows service MELAG FTP Server 2.2.0.4 is run as SYSTEM user, which grants remote attackers to abuse misconfigurations or vulnerabilities with administrative access over the entire host system.

  • CVE-2022-1833HigJun 21, 2022
    risk 0.57cvss 8.8epss 0.01

    A flaw was found in AMQ Broker Operator 7.9.4 installed via UI using OperatorHub where a low-privilege user that has access to the namespace where the AMQ Operator is deployed has access to clusterwide edit rights by checking the secrets. The service account used for building…

  • CVE-2022-32562HigJun 13, 2022
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in Couchbase Server before 7.0.4. Operations may succeed on a collection using stale RBAC permission.

  • CVE-2022-29376HigMay 23, 2022
    risk 0.57cvss 8.8epss 0.01

    Xampp for Windows v8.1.4 and below was discovered to contain insecure permissions for its install directory, allowing attackers to execute arbitrary code via overwriting binaries located in the directory.

  • CVE-2022-28999HigMay 23, 2022
    risk 0.57cvss 8.8epss 0.01

    Insecure permissions in the install directories and binaries of Dev-CPP v4.9.9.2 allows attackers to execute arbitrary code via overwriting the binary devcpp.exe.

  • CVE-2021-40904HigMar 25, 2022
    risk 0.57cvss 8.8epss 0.04

    The web management console of CheckMK Raw Edition (versions 1.5.0 to 1.6.0) allows a misconfiguration of the web-app Dokuwiki (installed by default), which allows embedded php code. As a result, remote code execution is achieved. Successful exploitation requires access to the…

  • CVE-2021-40416HigJan 28, 2022
    risk 0.57cvss 8.8epss 0.01

    An incorrect default permission vulnerability exists in the cgiserver.cgi cgi_check_ability functionality of reolink RLC-410W v3.0.0.136_20121102. All the Get APIs that are not included in cgi_check_ability are already executable by any logged-in users. An attacker can send an…

  • CVE-2021-40396HigJan 28, 2022
    risk 0.57cvss 8.8epss 0.00

    A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iService 1.1.7. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

  • CVE-2021-40389HigJan 28, 2022
    risk 0.57cvss 8.8epss 0.00

    A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iEdge Server 1.0.2. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

  • CVE-2021-40388HigJan 28, 2022
    risk 0.57cvss 8.8epss 0.00

    A privilege escalation vulnerability exists in Advantech SQ Manager Server 1.0.6. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

  • CVE-2021-45335HigDec 27, 2021
    risk 0.57cvss 8.8epss 0.00

    Sandbox component in Avast Antivirus prior to 20.4 has an insecure permission which could be abused by local user to control the outcome of scans, and therefore evade detection or delete arbitrary system files.

  • CVE-2021-42098HigOct 18, 2021
    risk 0.57cvss 8.8epss 0.02

    An incomplete permission check on entries in Devolutions Remote Desktop Manager before 2021.2.16 allows attackers to bypass permissions via batch custom PowerShell.

  • CVE-2021-29005HigOct 11, 2021
    risk 0.57cvss 8.8epss 0.02

    Insecure permission of chmod command on rConfig server 3.9.6 exists. After installing rConfig apache user may execute chmod as root without password which may let an attacker with low privilege to gain root access on server.

  • CVE-2021-38557HigAug 24, 2021
    risk 0.57cvss 8.8epss 0.02

    raspap-webgui in RaspAP 2.6.6 allows attackers to execute commands as root because of the insecure sudoers permissions. The www-data account can execute /etc/raspap/hostapd/enablelog.sh as root with no password; however, the www-data account can also overwrite…