Vulnerabilities > Improper Preservation of Permissions

DATE CVE VULNERABILITY TITLE RISK
2022-01-03 CVE-2021-30279 Improper Preservation of Permissions vulnerability in Qualcomm products
Possible access control violation while setting current permission for VMIDs due to improper permission masking in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
local
low complexity
qualcomm CWE-281
7.8
2021-12-15 CVE-2021-0704 Improper Preservation of Permissions vulnerability in Google Android 10.0/11.0/9.0
In createNoCredentialsPermissionNotification and related functions of AccountManagerService.java, there is a possible way to retrieve accounts from the device without permissions due to a permissions bypass.
local
low complexity
google CWE-281
5.5
2021-12-15 CVE-2021-0927 Improper Preservation of Permissions vulnerability in Google Android
In requestChannelBrowsable of TvInputManagerService.java, there is a possible permission bypass due to a logic error in the code.
local
low complexity
google CWE-281
7.8
2021-12-15 CVE-2021-0953 Improper Preservation of Permissions vulnerability in Google Android
In setOnClickActivityIntent of SearchWidgetProvider.java, there is a possible way to access contacts and history bookmarks without permission due to an unsafe PendingIntent.
local
low complexity
google CWE-281
7.8
2021-12-08 CVE-2021-37044 Improper Preservation of Permissions vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a Permission control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.
network
low complexity
huawei CWE-281
7.5
2021-12-07 CVE-2021-37086 Improper Preservation of Permissions vulnerability in Huawei Harmonyos
There is a Improper Preservation of Permissions vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to attackers which can isolate and read synchronization files of other applications across the UID sandbox.
network
low complexity
huawei CWE-281
8.6
2021-12-07 CVE-2021-37056 Improper Preservation of Permissions vulnerability in Huawei Emui and Magic UI
There is an Improper permission control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to obtain certain device information.
network
low complexity
huawei CWE-281
5.3
2021-11-23 CVE-2021-37006 Improper Preservation of Permissions vulnerability in Huawei Harmonyos 2.0
There is a Improper Preservation of Permissions vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the confidentiality of users is affected.
network
low complexity
huawei CWE-281
7.5
2021-11-05 CVE-2021-39897 Improper Preservation of Permissions vulnerability in Gitlab
Improper access control in GitLab CE/EE version 10.5 and above allowed subgroup members with inherited access to a project from a parent group to still have access even after the subgroup is transferred
network
low complexity
gitlab CWE-281
5.3
2021-10-19 CVE-2021-30827 Improper Preservation of Permissions vulnerability in Apple mac OS X and Macos
A permissions issue existed.
local
low complexity
apple CWE-281
7.8