Vulnerabilities > Incorrect Default Permissions

DATE CVE VULNERABILITY TITLE RISK
2019-10-14 CVE-2019-17043 Incorrect Default Permissions vulnerability in BMC Patrol Agent 9.0.10I
An issue was discovered in BMC Patrol Agent 9.0.10i.
local
low complexity
bmc CWE-276
7.8
2019-10-11 CVE-2019-2173 Incorrect Default Permissions vulnerability in Google Android
In startActivityMayWait of ActivityStarter.java, there is a possible incorrect Activity launch due to an incorrect permission check.
local
low complexity
google CWE-276
7.8
2019-10-11 CVE-2019-2114 Incorrect Default Permissions vulnerability in Google Android 8.0/8.1/9.0
In the default privileges of NFC, there is a possible local bypass of user interaction requirements on package installation due to a default permission.
local
low complexity
google CWE-276
7.8
2019-10-11 CVE-2019-14510 Incorrect Default Permissions vulnerability in Kaseya VSA
An issue was discovered in Kaseya VSA RMM through 9.5.0.22.
local
low complexity
kaseya CWE-276
6.7
2019-10-10 CVE-2015-9477 Incorrect Default Permissions vulnerability in Vernissage Project Vernissage 1.2.8
The Vernissage theme 1.2.8 for WordPress has insufficient restrictions on option updates.
network
low complexity
vernissage-project CWE-276
8.8
2019-10-10 CVE-2015-9476 Incorrect Default Permissions vulnerability in Teardrop Project Teardrop 1.8.1
The Teardrop theme 1.8.1 for WordPress has insufficient restrictions on option updates.
network
low complexity
teardrop-project CWE-276
8.8
2019-10-10 CVE-2015-9475 Incorrect Default Permissions vulnerability in Pont Project Pont 1.5
The Pont theme 1.5 for WordPress has insufficient restrictions on option updates.
network
low complexity
pont-project CWE-276
8.8
2019-10-10 CVE-2015-9474 Incorrect Default Permissions vulnerability in Simpolio Project Simpolio 1.3.2
The Simpolio theme 1.3.2 for WordPress has insufficient restrictions on option updates.
network
low complexity
simpolio-project CWE-276
8.8
2019-10-09 CVE-2019-17365 Incorrect Default Permissions vulnerability in Nixos NIX
Nix through 2.3 allows local users to gain access to an arbitrary user's account because the parent directory of the user-profile directories is world writable.
local
low complexity
nixos CWE-276
7.8
2019-10-09 CVE-2019-17383 Incorrect Default Permissions vulnerability in Netaddr Project Netaddr
The netaddr gem before 2.0.4 for Ruby has misconfigured file permissions, such that a gem install may result in 0777 permissions in the target filesystem.
network
low complexity
netaddr-project CWE-276
critical
9.8