Vulnerabilities > Incorrect Default Permissions

DATE CVE VULNERABILITY TITLE RISK
2021-11-17 CVE-2021-33071 Incorrect Default Permissions vulnerability in Intel Oneapi Rendering Toolkit 2021.1
Incorrect default permissions in the installer for the Intel(R) oneAPI Rendering Toolkit before version 2021.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-33088 Incorrect Default Permissions vulnerability in Intel NUC M15 Laptop KIT Integrated Sensor HUB Driver Pack
Incorrect default permissions in the installer for the Intel(R) NUC M15 Laptop Kit Integrated Sensor Hub driver pack before version 5.4.1.4449 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-33090 Incorrect Default Permissions vulnerability in Intel NUC Hdmi Firmware Update Tool
Incorrect default permissionsin the software installer for the Intel(R) NUC HDMI Firmware Update Tool for NUC10i3FN, NUC10i5FN, NUC10i7FN before version 1.78.2.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-33092 Incorrect Default Permissions vulnerability in Intel NUC M15 Laptop KIT HID Event Filter Driver Pack
Incorrect default permissions in the installer for the Intel(R) NUC M15 Laptop Kit HID Event Filter driver pack before version 2.2.1.383 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-09 CVE-2021-43199 Incorrect Default Permissions vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2021.1.2, permission checks in the Create Patch functionality are insufficient.
network
low complexity
jetbrains CWE-276
5.3
2021-11-03 CVE-2021-38420 Incorrect Default Permissions vulnerability in Deltaww Dialink 1.2.4.0
Delta Electronics DIALink versions 1.2.4.0 and prior default permissions give extensive permissions to low-privileged user accounts, which may allow an attacker to modify the installation directory and upload malicious files.
local
low complexity
deltaww CWE-276
7.8
2021-10-28 CVE-2021-3579 Incorrect Default Permissions vulnerability in Bitdefender Endpoint Security Tools and Total Security
Incorrect Default Permissions vulnerability in the bdservicehost.exe and Vulnerability.Scan.exe components as used in Bitdefender Endpoint Security Tools for Windows, Total Security allows a local attacker to elevate privileges to NT AUTHORITY\SYSTEM This issue affects: Bitdefender Endpoint Security Tools for Windows versions prior to 7.2.1.65.
local
low complexity
bitdefender CWE-276
7.8
2021-10-28 CVE-2021-22475 Incorrect Default Permissions vulnerability in Huawei Emui and Magic UI
There is an Improper permission management vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
network
low complexity
huawei CWE-276
5.3
2021-10-28 CVE-2021-36989 Incorrect Default Permissions vulnerability in Huawei Emui and Magic UI
There is a Kernel crash vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may escalate permissions.
network
low complexity
huawei CWE-276
critical
9.8
2021-10-28 CVE-2021-36990 Incorrect Default Permissions vulnerability in Huawei Emui and Magic UI
There is a vulnerability of tampering with the kernel in Huawei Smartphone.Successful exploitation of this vulnerability may escalate permissions.
network
low complexity
huawei CWE-276
critical
9.8