Vulnerabilities > Permission Issues

DATE CVE VULNERABILITY TITLE RISK
2017-02-01 CVE-2016-0394 Permission Issues vulnerability in IBM Integration BUS and Websphere Message Broker
IBM Integration Bus and WebSphere Message broker sets incorrect permissions for an object that could allow a local attacker to manipulate certain files.
local
low complexity
ibm CWE-275
3.3
2017-01-25 CVE-2016-8214 Permission Issues vulnerability in EMC Avamar Data Store and Avamar Virtual Edition
EMC Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) versions 7.3.0 and 7.3.1 contain a vulnerability that may allow malicious administrators to compromise Avamar servers.
local
low complexity
emc CWE-275
6.7
2017-01-12 CVE-2016-8605 Permission Issues vulnerability in multiple products
The mkdir procedure of GNU Guile temporarily changed the process' umask to zero.
network
low complexity
fedoraproject gnu CWE-275
5.3
2017-01-06 CVE-2016-9869 Permission Issues vulnerability in EMC Scaleio 2.0.1.0
An issue was discovered in EMC ScaleIO versions before 2.0.1.1.
local
low complexity
emc CWE-275
5.5
2017-01-06 CVE-2016-4288 Permission Issues vulnerability in Bluestacks 2.1.3.5650
A local privilege escalation vulnerability exists in BlueStacks App Player.
local
low complexity
bluestacks CWE-275
8.4
2016-11-30 CVE-2016-2877 Permission Issues vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 uses weak permissions for unspecified directories under the web root, which allows local users to modify data by writing to a file.
local
low complexity
ibm CWE-275
3.3
2016-11-25 CVE-2016-6719 Permission Issues vulnerability in Google Android
An elevation of privilege vulnerability in the Bluetooth component in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to pair with any Bluetooth device without user consent.
local
low complexity
google CWE-275
5.5
2016-11-25 CVE-2016-6715 Permission Issues vulnerability in Google Android
An elevation of privilege vulnerability in the Framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could allow a local malicious application to record audio without the user's permission.
local
low complexity
google CWE-275
5.5
2016-11-08 CVE-2016-7382 Permission Issues vulnerability in Nvidia GPU Driver
For the NVIDIA Quadro, NVS, GeForce, and Tesla products, NVIDIA GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys for Windows or nvidia.ko for Linux) handler where a missing permissions check may allow users to gain access to arbitrary physical memory, leading to an escalation of privileges.
local
low complexity
nvidia CWE-275
7.8
2016-10-31 CVE-2016-8856 Permission Issues vulnerability in Foxitsoftware Reader 2.1.0.0804/2.1.0.0805
Foxit Reader for Mac 2.1.0.0804 and earlier and Foxit Reader for Linux 2.1.0.0805 and earlier suffered from a vulnerability where weak file permissions could be exploited by attackers to execute arbitrary code.
local
low complexity
foxitsoftware CWE-275
7.8