CWE-276
Medium likelihoodIncorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.
1,510 vulnerabilities with CWE-276
CVE-2025-13131
HIGH
Sonarr 4.0.15.2940 - Local Privilege Escalation
CVSS 7.8
CVE-2025-13130
HIGH
Radarr 5.28.0.10274 - Privilege Escalation
CVSS 7.8
CVE-2025-8485
HIGH
Lenovo App Store < 9.0.2530.1027 - Authenticated Privilege Escalation via Improper Permissions
CVSS 7.3
CVE-2025-8421
MEDIUM
Lenovo Dock Manager - Privilege Escalation
CVSS 6.6
CVE-2025-61667
HIGH
Datadog Linux Host Agent <7.70.2 - Code Injection
CVE-2025-11567
HIGH
PowerChute Serial Shutdown - Incorrect Default Permissions
CVE-2025-32091
HIGH
Intel(R) Arc(TM) B-series GPUs - Privilege Escalation
CVSS 8.2
CVE-2025-31940
MEDIUM
Intel(R) Thread Director Visualizer <1.1.1 - Privilege Escalation
CVSS 6.7
CVE-2025-30518
MEDIUM
Intel(R) PresentMon <2.3.1 - Privilege Escalation
CVSS 6.7
CVE-2025-27711
MEDIUM
Intel(R) OFU <14.1.31 - Privilege Escalation
CVSS 6.7
CVE-2025-27246
MEDIUM
Intel(R) Processor Identification Utility <8.0.43 - Privilege Escal...
CVSS 6.7
CVE-2025-13025
HIGH
Firefox < 145.0 - Incorrect Default Permissions in WebGPU Component
CVSS 7.5
CVE-2025-10918
HIGH
Ivanti Endpoint Manager < 2024 SU4 - Authenticated Arbitrary File Write via Insecure Default Permissions
CVSS 7.1
CVE-2025-64436
MEDIUM
KubeVirt < 1.5.3 - Improper Privilege Management via Virt-Handler Service Account
CVSS 5.3
CVE-2025-43507
MEDIUM
Apple watchOS <26.1 - Info Disclosure
CVSS 6.5
CVE-2025-43444
MEDIUM
iPadOS < 26.1 - Unprotected User Data Exposure via Permissions Issue
CVSS 5.3
CVE-2025-43442
LOW
iPadOS < 26.1 - Unprotected User Data Exposure via App Permissions
CVSS 3.3
CVE-2025-43350
LOW
iPadOS < 26.1 - Unprotected User Data Exposure via Lock Screen
CVSS 2.4
CVE-2025-8432
HIGH
Centreon Infra Monitoring <24.10.6-<24.04.9-<23.10.15 - Info Disclo...
CVSS 8.4
CVE-2025-46185
MEDIUM
pgcodekeeper 10.12.0 - Info Disclosure
CVSS 6.2
CVE-2025-12100
HIGH
MongoDB BI Connector ODBC driver <1.4.6 - Privilege Escalation
CVSS 7.8
CVE-2025-57848
MEDIUM
Container-native Virtualization - Privilege Escalation
CVSS 6.4
CVE-2025-23347
HIGH
NVIDIA Project G-Assist - Privilege Escalation
CVSS 7.8
CVE-2025-11575
HIGH
MongoDB Atlas SQL ODBC driver <2.0.0 - Privilege Escalation
CVSS 7.8
CVE-2025-58712
MEDIUM
Apache ActiveMQ Artemis - Container Privilege Escalation via Group-Writable /etc/passwd
CVSS 6.4
Details
Vulnerabilities
1,510
Exploit Likelihood
Medium