Fallos del tipo CWE-276

952 resultados

Permissões padrão incorretas

Ocorre quando um software cria arquivos, diretórios ou recursos com permissões padrão muito permissivas, expondo dados sensíveis a usuários não autorizados do sistema. O risco é que qualquer outro processo ou usuário consegue ler, modificar ou deletar informações que deveriam ser privadas.

Ejemplo

Um aplicativo cria um arquivo de configuração com senha de banco de dados com permissões 0644 (legível por qualquer usuário), em vez de 0600 (só o dono). Outro usuário no mesmo servidor consegue ler esse arquivo e obtém as credenciais.

Cómo mitigar

Defina permissões explícitas e restritivas no ato da criação (use umask apropriado, chmod, ou APIs de segurança). Sempre revise e documente quais permissões cada recurso deve ter, testando a realidade no sistema de arquivos ou controle de acesso após o deploy.

CVE-2023-38334Omnis Studio 10.22.00 has incorrect access control. It advertises an irreversible feature for locking classes within Omnis libraries: it shoEPSS 0.9%CVE-2020-12510HIGHBeckhoff: Privilege Escalation through TwinCat SystemEPSS 0.9%CVE-2023-6302MEDIUMCSZCMS File Manager Page templates permissionEPSS 0.9%CVE-2021-40397HIGHA privilege escalation vulnerability exists in the installation of Advantech WISE-PaaS/OTA Server 3.0.9. A specially-crafted file can be repEPSS 0.9%CVE-2021-34182CRITICALAn issue in ttyd v.1.6.3 allows attacker to execute arbitrary code via default configuration permissions.EPSS 0.9%CVE-2024-20921MEDIUMVulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: HotspotEPSS 0.9%CVE-2023-42501MEDIUMApache Superset: Unnecessary read permissions within the Gamma roleEPSS 0.9%CVE-2020-8022HIGHUser-writeable configuration file /usr/lib/tmpfiles.d/tomcat.conf allows for escalation of priviligesEPSS 0.9%CVE-2022-29909HIGHDocuments in deeply-nested cross-origin browsing contexts could have obtained permissions granted to the top-level origin, bypassing the exiEPSS 0.9%CVE-2022-1833A flaw was found in AMQ Broker Operator 7.9.4 installed via UI using OperatorHub where a low-privilege user that has access to the namespaceEPSS 0.8%CVE-2024-2859MEDIUMBy default, SANnav OVA is shipped with root user login enabled (CVE-2024-2859)EPSS 0.8%CVE-2024-34221HIGHSourcecodester Human Resource Management System 1.0 is vulnerable to Insecure Permissions resulting in privilege escalation.EPSS 0.8%CVE-2022-20465MEDIUMIn dismiss and related functions of KeyguardHostViewController.java and related files, there is a possible lockscreen bypass due to a logic EPSS 0.8%CVE-2023-22951HIGHAn issue was discovered in TigerGraph Enterprise Free Edition 3.x. It creates an authentication token for internal systems use. This token cEPSS 0.8%CVE-2025-24093CRITICALA permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.3, macOS VenturEPSS 0.8%CVE-2024-55959CRITICALNorthern.tech Mender Client 4.x before 4.0.5 has Insecure Permissions.EPSS 0.8%CVE-2022-40187HIGHForesight GC3 Launch Monitor 1.3.15.68 ships with a Target Communication Framework (TCF) service enabled. This service listens on a TCP portEPSS 0.8%CVE-2022-4039HIGHRhsso-container-image: unsecured management interface exposed to adjecent networkEPSS 0.8%CVE-2020-21514HIGHAn issue was discovered in Fluent-ui v.1.2.2 allows attackers to gain escalated privileges and execute arbitrary code due to a default passwEPSS 0.8%CVE-2024-46054CRITICALOpenVidReview 1.0 is vulnerable to Incorrect Access Control. The /upload route is accessible without authentication, allowing any user to upEPSS 0.8%