Vulnerabilities > Improper Preservation of Permissions

DATE CVE VULNERABILITY TITLE RISK
2023-05-22 CVE-2023-31923 Improper Preservation of Permissions vulnerability in Supremainc Biostar 2
Suprema BioStar 2 before 2022 Q4, v2.9.1 has Insecure Permissions.
network
low complexity
supremainc CWE-281
8.8
2023-04-26 CVE-2020-36070 Improper Preservation of Permissions vulnerability in Thecontrolgroup Voyager
Insecure Permission vulnerability found in Yoyager v.1.4 and before allows a remote attacker to execute arbitrary code via a crafted .php file to the media component.
network
low complexity
thecontrolgroup CWE-281
critical
9.8
2023-04-16 CVE-2021-33990 Improper Preservation of Permissions vulnerability in Liferay Portal 6.2.5
Liferay Portal 6.2.5 allows Command=FileUpload&Type=File&CurrentFolder=/ requests when frmfolders.html exists.
network
low complexity
liferay CWE-281
critical
9.8
2023-04-03 CVE-2023-0975 Improper Preservation of Permissions vulnerability in Trellix Agent 5.7.7/5.7.8
A vulnerability exists in Trellix Agent for Windows version 5.7.8 and earlier, that allows local users, during install/upgrade workflow, to replace one of the Agent’s executables before it can be executed.
local
low complexity
trellix CWE-281
7.8
2023-03-29 CVE-2023-25809 Improper Preservation of Permissions vulnerability in Linuxfoundation Runc
runc is a CLI tool for spawning and running containers according to the OCI specification.
local
low complexity
linuxfoundation CWE-281
6.3
2023-03-01 CVE-2023-22738 Improper Preservation of Permissions vulnerability in Vantage6
vantage6 is a privacy preserving federated learning infrastructure for secure insight exchange.
network
low complexity
vantage6 CWE-281
6.5
2023-02-09 CVE-2022-48295 Improper Preservation of Permissions vulnerability in Huawei Emui and Harmonyos
The IHwAntiMalPlugin interface lacks permission verification.
network
low complexity
huawei CWE-281
7.5
2023-02-09 CVE-2022-48296 Improper Preservation of Permissions vulnerability in Huawei Emui and Harmonyos
The SystemUI has a vulnerability in permission management.
network
low complexity
huawei CWE-281
5.3
2023-02-09 CVE-2022-48301 Improper Preservation of Permissions vulnerability in Huawei Emui and Harmonyos
The bundle management module lacks permission verification in some APIs.
network
low complexity
huawei CWE-281
7.5
2023-01-26 CVE-2020-18329 Improper Preservation of Permissions vulnerability in Carel Pcoweb Card Bios, Pcoweb Card Boot and Pcoweb Card web
An issue was discovered in Rehau devices that use a pCOWeb card BIOS v6.27, BOOT v5.00, web version v2.2, allows attackers to gain full unauthenticated access to the configuration and service interface.
network
low complexity
carel CWE-281
7.5