Vulnerabilities > Incorrect Default Permissions

DATE CVE VULNERABILITY TITLE RISK
2024-09-12 CVE-2024-8533 Incorrect Default Permissions vulnerability in Rockwellautomation products
A privilege escalation vulnerability exists in the Rockwell Automation affected products.
network
low complexity
rockwellautomation CWE-276
8.8
2024-09-04 CVE-2024-34648 Incorrect Default Permissions vulnerability in Samsung Android 12.0/13.0/14.0
Improper Handling of Insufficient Permissions in KnoxMiscPolicy prior to SMR Sep-2024 Release 1 allows local attackers to access sensitive data.
local
low complexity
samsung CWE-276
5.5
2024-09-04 CVE-2024-34661 Incorrect Default Permissions vulnerability in Samsung Assistant
Improper handling of insufficient permissions in Samsung Assistant prior to version 9.1.00.7 allows remote attackers to access location data.
network
low complexity
samsung CWE-276
4.3
2024-08-29 CVE-2024-34018 Incorrect Default Permissions vulnerability in Acronis Snap Deploy 6
Sensitive information disclosure due to insecure folder permissions.
local
low complexity
acronis CWE-276
5.5
2024-08-23 CVE-2024-43791 Incorrect Default Permissions vulnerability in Steveklabnik Request Store 1.3.2
RequestStore provides per-request global storage for Rack.
local
low complexity
steveklabnik CWE-276
7.8
2024-08-15 CVE-2024-42681 Incorrect Default Permissions vulnerability in Xuxueli Xxl-Job 2.4.1
Insecure Permissions vulnerability in xxl-job v.2.4.1 allows a remote attacker to execute arbitrary code via the Sub-Task ID component.
network
low complexity
xuxueli CWE-276
8.8
2024-08-14 CVE-2024-23495 Incorrect Default Permissions vulnerability in Intel Distribution for GDB and Oneapi Base Toolkit
Incorrect default permissions in some Intel(R) Distribution for GDB software before version 2024.0.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2024-08-14 CVE-2024-26025 Incorrect Default Permissions vulnerability in Intel Advisor and Oneapi Base Toolkit
Incorrect default permissions for some Intel(R) Advisor software before version 2024.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2024-08-14 CVE-2024-27461 Incorrect Default Permissions vulnerability in Intel Memory and Storage Tool GUI
Incorrect default permissions in software installer for Intel(R) MAS (GUI) may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-276
5.5
2024-08-07 CVE-2024-34616 Incorrect Default Permissions vulnerability in Samsung Android 12.0/13.0/14.0
Improper handling of insufficient permission in KnoxDualDARPolicy prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive data.
local
low complexity
samsung CWE-276
5.5