Vulnerabilities > Incorrect Default Permissions

DATE CVE VULNERABILITY TITLE RISK
2021-09-28 CVE-2021-36365 Incorrect Default Permissions vulnerability in Nagios XI
Nagios XI before 5.8.5 has Incorrect Permission Assignment for repairmysql.sh.
network
low complexity
nagios CWE-276
critical
9.8
2021-09-21 CVE-2021-20037 Incorrect Default Permissions vulnerability in Sonicwall Global VPN Client 4.10.4.0314
SonicWall Global VPN Client 4.10.5 installer (32-bit and 64-bit) incorrect default file permission vulnerability leads to privilege escalation which potentially allows command execution in the host operating system.
local
low complexity
sonicwall CWE-276
7.8
2021-09-08 CVE-2021-1831 Incorrect Default Permissions vulnerability in Apple Iphone OS
The issue was addressed with improved permissions logic.
local
low complexity
apple CWE-276
5.5
2021-09-08 CVE-2021-1832 Incorrect Default Permissions vulnerability in Apple products
Copied files may not have the expected file permissions.
local
low complexity
apple CWE-276
5.5
2021-09-08 CVE-2021-30750 Incorrect Default Permissions vulnerability in Apple Macos
The issue was addressed with improved permissions logic.
local
low complexity
apple CWE-276
5.5
2021-08-24 CVE-2021-30999 Incorrect Default Permissions vulnerability in Apple Iphone OS
The issue was addressed with improved permissions logic.
network
low complexity
apple CWE-276
4.3
2021-08-24 CVE-2021-31000 Incorrect Default Permissions vulnerability in Apple products
A permissions issue was addressed with improved validation.
local
low complexity
apple CWE-276
3.3
2021-08-24 CVE-2021-31006 Incorrect Default Permissions vulnerability in Apple Watchos
Description: A permissions issue was addressed with improved validation.
local
low complexity
apple CWE-276
5.5
2021-08-24 CVE-2021-31007 Incorrect Default Permissions vulnerability in Apple products
Description: A permissions issue was addressed with improved validation.
local
low complexity
apple CWE-276
5.5
2021-08-19 CVE-2021-39273 Incorrect Default Permissions vulnerability in Xerosecurity Sn1Per 9.0
In XeroSecurity Sn1per 9.0 (free version), insecure permissions (0777) are set upon application execution, allowing an unprivileged user to modify the application, modules, and configuration files.
network
low complexity
xerosecurity CWE-276
8.8