Vulnerabilities > Permission Issues

DATE CVE VULNERABILITY TITLE RISK
2019-08-02 CVE-2017-18425 Permission Issues vulnerability in Cpanel
In cPanel before 66.0.2, the cpdavd_error_log file can be created with weak permissions (SEC-280).
local
cpanel CWE-275
1.9
2019-08-02 CVE-2017-18422 Permission Issues vulnerability in Cpanel
In cPanel before 66.0.2, EasyApache 4 conversion sets weak domlog ownership and permissions (SEC-272).
local
low complexity
cpanel CWE-275
2.1
2019-08-02 CVE-2017-18397 Permission Issues vulnerability in Cpanel
cPanel before 68.0.15 does not preserve permissions for local backup transport (SEC-330).
local
low complexity
cpanel CWE-275
2.1
2019-08-02 CVE-2017-18390 Permission Issues vulnerability in Cpanel
cPanel before 68.0.15 allows code execution in the context of the root account because of weak permissions on incremental backups (SEC-322).
local
low complexity
cpanel CWE-275
7.2
2019-08-01 CVE-2016-10818 Permission Issues vulnerability in Cpanel
cPanel before 57.9999.54 incorrectly sets log-file permissions in dnsadmin-startup and spamd-startup (SEC-124).
network
low complexity
cpanel CWE-275
4.0
2019-08-01 CVE-2016-10846 Permission Issues vulnerability in Cpanel
cPanel before 11.54.0.4 allows arbitrary file-chown and file-chmod operations during Roundcube database conversions (SEC-79).
network
low complexity
cpanel CWE-275
8.5
2019-07-03 CVE-2017-9327 Permission Issues vulnerability in Cloudera Manager 5.10.1/5.11.0/5.9.2
Secret data of processes managed by CM is not secured by file permissions.
network
low complexity
cloudera CWE-275
4.0
2019-05-29 CVE-2019-11896 Permission Issues vulnerability in Bosch Smart Home Controller Firmware
A potential incorrect privilege assignment vulnerability exists in the 3rd party pairing mechanism of the Bosch Smart Home Controller (SHC) before 9.8.907 that may result in a restricted app obtaining default app permissions.
network
bosch CWE-275
6.8
2019-05-29 CVE-2019-11893 Permission Issues vulnerability in Bosch Smart Home Controller Firmware
A potential incorrect privilege assignment vulnerability exists in the app permission update API of the Bosch Smart Home Controller (SHC) before 9.8.905 that may result in a restricted app obtaining default app permissions.
4.9
2019-05-23 CVE-2017-17060 Permission Issues vulnerability in Open-Xchange Appsuite
OX Software GmbH OX App Suite 7.8.4 and earlier is affected by: Insecure Permissions.
network
low complexity
open-xchange CWE-275
7.5