Vulnerabilities > Incorrect Default Permissions

DATE CVE VULNERABILITY TITLE RISK
2021-11-24 CVE-2021-31822 Incorrect Default Permissions vulnerability in Octopus Tentacle
When Octopus Tentacle is installed on a Linux operating system, the systemd service file permissions are misconfigured.
local
low complexity
octopus CWE-276
7.8
2021-11-24 CVE-2021-44140 Incorrect Default Permissions vulnerability in Apache Jspwiki
Remote attackers may delete arbitrary files in a system hosting a JSPWiki instance, versions up to 2.11.0.M8, by using a carefuly crafted http request on logout, given that those files are reachable to the user running the JSPWiki instance.
network
low complexity
apache CWE-276
critical
9.1
2021-11-23 CVE-2021-37030 Incorrect Default Permissions vulnerability in Huawei Emui and Magic UI
There is an Improper permission vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.
network
low complexity
huawei CWE-276
7.5
2021-11-17 CVE-2020-8741 Incorrect Default Permissions vulnerability in Intel Thunderbolt Non-Dch Driver
Improper permissions in the installer for the Intel(R) Thunderbolt(TM) non-DCH driver, all versions, for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-0065 Incorrect Default Permissions vulnerability in Intel products
Incorrect default permissions in the Intel(R) PROSet/Wireless WiFi software installer for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-33062 Incorrect Default Permissions vulnerability in Intel Vtune Profiler
Incorrect default permissions in the software installer for the Intel(R) VTune(TM) Profiler before version 2021.3.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-33071 Incorrect Default Permissions vulnerability in Intel Oneapi Rendering Toolkit 2021.1
Incorrect default permissions in the installer for the Intel(R) oneAPI Rendering Toolkit before version 2021.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-33088 Incorrect Default Permissions vulnerability in Intel NUC M15 Laptop KIT Integrated Sensor HUB Driver Pack
Incorrect default permissions in the installer for the Intel(R) NUC M15 Laptop Kit Integrated Sensor Hub driver pack before version 5.4.1.4449 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-33090 Incorrect Default Permissions vulnerability in Intel NUC Hdmi Firmware Update Tool
Incorrect default permissionsin the software installer for the Intel(R) NUC HDMI Firmware Update Tool for NUC10i3FN, NUC10i5FN, NUC10i7FN before version 1.78.2.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-33092 Incorrect Default Permissions vulnerability in Intel NUC M15 Laptop KIT HID Event Filter Driver Pack
Incorrect default permissions in the installer for the Intel(R) NUC M15 Laptop Kit HID Event Filter driver pack before version 2.2.1.383 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8