Vulnerabilities > Incorrect Default Permissions

DATE CVE VULNERABILITY TITLE RISK
2020-06-17 CVE-2019-9943 Incorrect Default Permissions vulnerability in Openmicroscopy Omero.Server 5.6.0
In ome.services.graphs.GraphTraversal.findObjectDetails in Open Microscopy Environment OMERO.server 5.1.0 through 5.6.0, permissions on OMERO model objects may be circumvented during certain operations such as move and delete, because group permissions are mishandled.
network
low complexity
openmicroscopy CWE-276
7.5
2020-06-15 CVE-2020-14156 Incorrect Default Permissions vulnerability in Openbmc-Project Openbmc
user_channel/passwd_mgr.cpp in OpenBMC phosphor-host-ipmid before 2020-04-03 does not ensure that /etc/ipmi-pass has strong file permissions.
network
low complexity
openbmc-project CWE-276
8.8
2020-06-11 CVE-2020-0215 Incorrect Default Permissions vulnerability in Google Android
In onCreate of ConfirmConnectActivity.java, there is a possible leak of Bluetooth information due to a permissions bypass.
local
low complexity
google CWE-276
7.8
2020-06-11 CVE-2020-0209 Incorrect Default Permissions vulnerability in Google Android 10.0
In multiple functions of AccountManager.java, there is a possible permissions bypass.
local
low complexity
google CWE-276
7.8
2020-06-11 CVE-2020-0208 Incorrect Default Permissions vulnerability in Google Android 10.0
In multiple functions of AccountManager.java, there is a possible permissions bypass.
local
low complexity
google CWE-276
7.8
2020-06-11 CVE-2020-0133 Incorrect Default Permissions vulnerability in Google Android 10.0
In MockLocationAppPreferenceController.java, it is possible to mock the GPS location of the device due to a permissions bypass.
local
low complexity
google CWE-276
7.3
2020-06-09 CVE-2020-9817 Incorrect Default Permissions vulnerability in Apple mac OS X
A permissions issue existed.
local
low complexity
apple CWE-276
7.8
2020-06-08 CVE-2020-13885 Incorrect Default Permissions vulnerability in Citrix Workspace APP 1909/1911/2002
Citrix Workspace App before 1912 on Windows has Insecure Permissions which allows local users to gain privileges during the uninstallation of the application.
local
low complexity
citrix CWE-276
7.8
2020-06-08 CVE-2020-13884 Incorrect Default Permissions vulnerability in Citrix Workspace APP 1909/1911/2002
Citrix Workspace App before 1912 on Windows has Insecure Permissions and an Unquoted Path vulnerability which allows local users to gain privileges during the uninstallation of the application.
local
low complexity
citrix CWE-276
7.8
2020-06-08 CVE-2020-8954 Incorrect Default Permissions vulnerability in Openbrowser Project Openbrowser 1.0.4.9
OpenSearch Web browser 1.0.4.9 allows Intent Scheme Hijacking.[a link that opens another app in the browser can be manipulated]
network
low complexity
openbrowser-project CWE-276
5.4