Vulnerabilities > Permission Issues

DATE CVE VULNERABILITY TITLE RISK
2017-03-11 CVE-2017-6513 Permission Issues vulnerability in Softaculous Whmcs Reseller Module 2.0.2
The WHMCS Reseller Module V2 2.0.2 in Softaculous Virtualizor before 2.9.1.0 does not verify the user correctly, which allows remote authenticated users to control other virtual machines managed by Virtualizor by accessing a modified URL.
network
low complexity
softaculous CWE-275
critical
9.9
2017-02-27 CVE-2016-7553 Permission Issues vulnerability in Irssi Buf.Pl 2.13
The buf.pl script before 2.20 in Irssi before 0.8.20 uses weak permissions for the scrollbuffer dump file created between upgrades, which might allow local users to obtain sensitive information from private chat conversations by reading the file.
local
low complexity
irssi CWE-275
3.3
2017-02-03 CVE-2016-6648 Permission Issues vulnerability in EMC Recoverpoint and Recoverpoint for Virtual Machines
EMC RecoverPoint versions before 4.4.1.1 and EMC RecoverPoint for Virtual Machines versions before 5.0 are affected by sensitive information disclosure vulnerability as a result of incorrect permissions set on a sensitive system file.
local
low complexity
emc CWE-275
4.4
2017-02-01 CVE-2016-3022 Permission Issues vulnerability in IBM products
IBM Security Access Manager for Web could allow an authenticated user to gain access to highly sensitive information due to incorrect file permissions.
network
low complexity
ibm CWE-275
6.5
2017-02-01 CVE-2016-0394 Permission Issues vulnerability in IBM Integration BUS and Websphere Message Broker
IBM Integration Bus and WebSphere Message broker sets incorrect permissions for an object that could allow a local attacker to manipulate certain files.
local
low complexity
ibm CWE-275
3.3
2017-01-25 CVE-2016-8214 Permission Issues vulnerability in EMC Avamar Data Store and Avamar Virtual Edition
EMC Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) versions 7.3.0 and 7.3.1 contain a vulnerability that may allow malicious administrators to compromise Avamar servers.
local
low complexity
emc CWE-275
6.7
2017-01-12 CVE-2016-8605 Permission Issues vulnerability in multiple products
The mkdir procedure of GNU Guile temporarily changed the process' umask to zero.
network
low complexity
fedoraproject gnu CWE-275
5.3
2017-01-06 CVE-2016-9869 Permission Issues vulnerability in EMC Scaleio 2.0.1.0
An issue was discovered in EMC ScaleIO versions before 2.0.1.1.
local
low complexity
emc CWE-275
5.5
2017-01-06 CVE-2016-4288 Permission Issues vulnerability in Bluestacks 2.1.3.5650
A local privilege escalation vulnerability exists in BlueStacks App Player.
local
low complexity
bluestacks CWE-275
8.4
2016-11-30 CVE-2016-2877 Permission Issues vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 uses weak permissions for unspecified directories under the web root, which allows local users to modify data by writing to a file.
local
low complexity
ibm CWE-275
3.3