Vulnerabilities > Improper Preservation of Permissions

DATE CVE VULNERABILITY TITLE RISK
2021-05-11 CVE-2021-30482 Improper Preservation of Permissions vulnerability in Jetbrains Upsource
In JetBrains UpSource before 2020.1.1883, application passwords were not revoked correctly
network
low complexity
jetbrains CWE-281
7.5
2021-05-06 CVE-2020-18890 Improper Preservation of Permissions vulnerability in Puppycms 5.1
Rmote Code Execution (RCE) vulnerability in puppyCMS v5.1 due to insecure permissions, which could let a remote malicious user getshell via /admin/functions.php.
network
low complexity
puppycms CWE-281
critical
9.8
2021-02-26 CVE-2021-23963 Improper Preservation of Permissions vulnerability in Mozilla Firefox
When sharing geolocation during an active WebRTC share, Firefox could have reset the webRTC sharing state in the user interface, leading to loss of control over the currently granted permission.
network
low complexity
mozilla CWE-281
4.3
2020-12-03 CVE-2020-26246 Improper Preservation of Permissions vulnerability in Pimcore
Pimcore is an open source digital experience platform.
network
low complexity
pimcore CWE-281
6.5
2020-11-13 CVE-2020-5796 Improper Preservation of Permissions vulnerability in Nagios XI 5.7.4
Improper preservation of permissions in Nagios XI 5.7.4 allows a local, low-privileged, authenticated user to weaken the permissions of files, resulting in low-privileged users being able to write to and execute arbitrary PHP code with root privileges.
local
low complexity
nagios CWE-281
7.8
2020-11-12 CVE-2020-12353 Improper Preservation of Permissions vulnerability in Intel Data Center Manager
Improper permissions in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable denial of service via network access.
network
low complexity
intel CWE-281
6.5
2020-11-12 CVE-2020-12345 Improper Preservation of Permissions vulnerability in Intel Data Center Manager
Improper permissions in the installer for the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-281
7.8
2020-11-12 CVE-2020-12335 Improper Preservation of Permissions vulnerability in Intel Processor Identification Utility 6.1.0731
Improper permissions in the installer for the Intel(R) Processor Identification Utility before version 6.4.0603 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-281
7.8
2020-11-12 CVE-2020-12334 Improper Preservation of Permissions vulnerability in Intel Advisor Tools 2020
Improper permissions in the installer for the Intel(R) Advisor tools before version 2020 Update 2 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-281
7.8
2020-11-12 CVE-2020-12332 Improper Preservation of Permissions vulnerability in Intel HID Event Filter Driver
Improper permissions in the installer for the Intel(R) HID Event Filter Driver, all versions, may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-281
7.8