Weaknesses of type CWE-276

954 results

Permissões padrão incorretas

Ocorre quando um recurso (arquivo, diretório, banco de dados, serviço) é criado com permissões padrão excessivamente permissivas, expondo dados ou funcionalidades a usuários não autorizados. O desenvolvedor ou administrador não restringe explicitamente o acesso, deixando a configuração padrão do sistema, que geralmente é insegura.

Example

Um aplicativo cria arquivos de cache com informações sensíveis (tokens, chaves de API) com permissões 644 (leitura para todos), permitindo que qualquer usuário local da máquina leia esses dados. Ou um bucket S3 é criado com acesso público habilitado por padrão, expondo documentos confidenciais.

How to mitigate

Defina explicitamente permissões restritivas no código (ex: 0600 para arquivos sensíveis, 0700 para diretórios) e revise configurações padrão de infraestrutura antes do deploy. Automatize verificações de permissões em pipelines CI/CD e aplique o princípio do menor privilégio desde a criação dos recursos.

CVE-2022-25814MEDIUMPendingIntent hijacking vulnerability in Wearable Manager Installer prior to SMR Mar-2022 Release 1 allows local attackers to perform unauthEPSS 0.1%CVE-2024-31312MEDIUMIn multiple locations, there is a possible information leak due to a missing permission check. This could lead to local information disclosuEPSS 0.1%CVE-2025-22425MEDIUMIn onCreate of InstallStart.java, there is a possible permissions bypass due to improper input validation. This could lead to local escalatiEPSS 0.1%CVE-2022-30758MEDIUMImplicit Intent hijacking vulnerability in Finder prior to SMR Jul-2022 Release 1 allow allows attackers to access some protected informatioEPSS 0.1%CVE-2025-31940MEDIUMIncorrect default permissions for some Intel(R) Thread Director Visualizer software before version 1.1.1 within Ring 3: User Applications maEPSS 0.1%CVE-2025-30518MEDIUMIncorrect default permissions for some Intel(R) PresentMon before version 2.3.1 within Ring 3: User Applications may allow an escalation of EPSS 0.1%CVE-2018-9434HIGHIn multiple functions of Parcel.cpp, there is a possible way to bypass address space layout randomization. This could lead to local escalatiEPSS 0.1%CVE-2024-43089HIGHIn updateInternal of MediaProvider.java , there is a possible access of another app's files due to a missing permission check. This could leEPSS 0.1%CVE-2024-20005HIGHIn da, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with SystemEPSS 0.1%CVE-2018-9401HIGHIn many locations, there is a possible way to access kernel memory in user space due to an incorrect bounds check. This could lead to local EPSS 0.1%CVE-2024-40661HIGHIn mayAdminGrantPermission of AdminRestrictedPermissionsUtils.java, there is a possible way to access the microphone due to a missing permisEPSS 0.1%CVE-2022-20611HIGHIn deletePackageVersionedInternal of DeletePackageHelper.java, there is a possible way to bypass carrier restrictions due to a permissions bEPSS 0.1%CVE-2023-21187—In onCreate of UsbAccessoryUriActivity.java, there is a possible way to escape the Setup Wizard due to a logic error in the code. This couldEPSS 0.1%CVE-2024-43086MEDIUMIn validateAccountsInternal of AccountManagerService.java, there is a possible way to leak account credentials to a third party app due to aEPSS 0.1%CVE-2025-48516MEDIUMInsecure default configuration state of DDR5 memory module by AGESA Bootloader Firmware could allow an attacker with local user privilege toEPSS 0.1%CVE-2024-53841HIGHIn startListeningForDeviceStateChanges, there is a possible Permission Bypass due to a confused deputy. This could lead to local escalation EPSS 0.1%CVE-2023-21128—In various functions of AppStandbyController.java, there is a possible way to break manageability scenarios due to a logic error in the codeEPSS 0.1%CVE-2023-21175—In onCreate of DataUsageSummary.java, there is a possible method for a guest user to enable or disable mobile data due to a permissions bypaEPSS 0.1%CVE-2023-21270HIGHIn restorePermissionState of PermissionManagerServiceImpl.java, there is a possible way for an app to keep permissions that should be revokeEPSS 0.1%CVE-2023-21107HIGHIn retrieveAppEntry of NotificationAccessDetails.java, there is a missing permission check. This could lead to local escalation of privilegeEPSS 0.1%