Vulnerabilities > Incorrect Default Permissions

DATE CVE VULNERABILITY TITLE RISK
2021-12-15 CVE-2021-43325 Incorrect Default Permissions vulnerability in Automox 33
Automox Agent 33 on Windows incorrectly sets permissions on a temporary directory.
local
low complexity
automox CWE-276
7.8
2021-12-15 CVE-2021-43326 Incorrect Default Permissions vulnerability in Automox 31
Automox Agent before 32 on Windows incorrectly sets permissions on a temporary directory.
local
low complexity
automox CWE-276
7.8
2021-12-12 CVE-2021-44833 Incorrect Default Permissions vulnerability in Amazon AWS Opensearch 1.0.0
The CLI 1.0.0 for Amazon AWS OpenSearch has weak permissions for the configuration file.
network
low complexity
amazon CWE-276
critical
9.8
2021-12-01 CVE-2021-42711 Incorrect Default Permissions vulnerability in Barracuda Network Access Client
Barracuda Network Access Client before 5.2.2 creates a Temporary File in a Directory with Insecure Permissions.
local
low complexity
barracuda CWE-276
7.8
2021-11-24 CVE-2021-31822 Incorrect Default Permissions vulnerability in Octopus Tentacle
When Octopus Tentacle is installed on a Linux operating system, the systemd service file permissions are misconfigured.
local
low complexity
octopus CWE-276
7.8
2021-11-24 CVE-2021-44140 Incorrect Default Permissions vulnerability in Apache Jspwiki
Remote attackers may delete arbitrary files in a system hosting a JSPWiki instance, versions up to 2.11.0.M8, by using a carefuly crafted http request on logout, given that those files are reachable to the user running the JSPWiki instance.
network
low complexity
apache CWE-276
critical
9.1
2021-11-23 CVE-2021-37030 Incorrect Default Permissions vulnerability in Huawei Emui and Magic UI
There is an Improper permission vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.
network
low complexity
huawei CWE-276
7.5
2021-11-17 CVE-2020-8741 Incorrect Default Permissions vulnerability in Intel Thunderbolt Non-Dch Driver
Improper permissions in the installer for the Intel(R) Thunderbolt(TM) non-DCH driver, all versions, for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-0065 Incorrect Default Permissions vulnerability in Intel products
Incorrect default permissions in the Intel(R) PROSet/Wireless WiFi software installer for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-33062 Incorrect Default Permissions vulnerability in Intel Vtune Profiler
Incorrect default permissions in the software installer for the Intel(R) VTune(TM) Profiler before version 2021.3.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8