Vulnerabilities > Incorrect Default Permissions

DATE CVE VULNERABILITY TITLE RISK
2022-03-25 CVE-2021-44751 Incorrect Default Permissions vulnerability in F-Secure Safe 17.9/18.4.0
A vulnerability affecting F-Secure SAFE browser was discovered.
network
low complexity
f-secure CWE-276
5.3
2022-03-21 CVE-2022-25570 Incorrect Default Permissions vulnerability in Clickstudios Passwordstate 9.4
In Click Studios (SA) Pty Ltd Passwordstate 9435, users with access to a passwordlist can gain access to additional password lists without permissions.
network
low complexity
clickstudios CWE-276
6.5
2022-03-18 CVE-2021-22571 Incorrect Default Permissions vulnerability in Google Sa360 Webquery to Bigquery Exporter
A local attacker could read files from some other users' SA360 reports stored in the /tmp folder during staging process before the files are loaded in BigQuery.
local
low complexity
google CWE-276
5.5
2022-03-17 CVE-2022-25364 Incorrect Default Permissions vulnerability in Gradle Enterprise
In Gradle Enterprise before 2021.4.2, the default built-in build cache configuration allowed anonymous write access.
network
high complexity
gradle CWE-276
8.1
2022-03-16 CVE-2021-39694 Incorrect Default Permissions vulnerability in Google Android 12.0
In parse of RoleParser.java, there is a possible way for default apps to get permissions explicitly denied by the user due to a permissions bypass.
local
low complexity
google CWE-276
7.8
2022-03-10 CVE-2021-44215 Incorrect Default Permissions vulnerability in Northern.Tech Cfengine
Northern.tech CFEngine Enterprise 3.15.4 before 3.15.5 has Insecure Permissions that may allow unauthorized local users to have an unspecified impact.
local
low complexity
northern-tech CWE-276
5.5
2022-03-10 CVE-2021-44216 Incorrect Default Permissions vulnerability in Northern.Tech Cfengine
Northern.tech CFEngine Enterprise before 3.15.5 and 3.18.x before 3.18.1 has Insecure Permissions that may allow unauthorized local users to access the Apache and Mission Portal log files.
local
low complexity
northern-tech CWE-276
5.5
2022-03-10 CVE-2021-40049 Incorrect Default Permissions vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a permission control vulnerability in the PMS module.
network
low complexity
huawei CWE-276
7.5
2022-03-10 CVE-2021-40053 Incorrect Default Permissions vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a permission control vulnerability in the Nearby module.Successful exploitation of this vulnerability will affect availability and integrity.
network
low complexity
huawei CWE-276
critical
9.1
2022-03-10 CVE-2021-40059 Incorrect Default Permissions vulnerability in Huawei Emui and Magic UI
There is a permission control vulnerability in the Wi-Fi module.
low complexity
huawei CWE-276
6.5