CWE-277

Insecure Inherited Permissions

Parent: CWE-732 - Incorrect Permission Assignment for Critical Resource

A product defines a set of insecure permissions that are inherited by objects that are created by the program.

68 vulnerabilities with CWE-277
CVE-2026-20630 MEDIUM
macOS Tahoe <26.3 - Info Disclosure
CVSS 5.5
CVE-2025-32092 MEDIUM
Intel(R) Graphics Software <25.30.1702.0 - Privilege Escalation
CVSS 6.7
CVE-2025-37174 HIGH
Mobility Conductors - Authenticated RCE
CVSS 7.2
CVE-2025-65111 MEDIUM
SpiceDB <1.47.1 - Info Disclosure
CVSS 5.3
CVE-2025-64185
Open OnDemand <4.0.8-3.1.16 - Info Disclosure
CVE-2025-24327 MEDIUM
Intel(R) Rapid Storage Technology Application <20.0.1021 - Privileg...
CVSS 6.7
CVE-2025-11554 MEDIUM
Portabilis i-Educar <2.9.10 - Privilege Escalation
CVSS 6.3
CVE-2025-56019 MEDIUM
Agasta Easytouch+ 9.3.97 - Privilege Escalation
CVSS 6.5
CVE-2025-58437 HIGH
Coder <2.25.1 - Info Disclosure
CVSS 8.1
CVE-2025-9039 MEDIUM
Amazon ECS <1.97.1 - Info Disclosure
CVSS 4.3
CVE-2025-36104 MEDIUM
IBM Storage Scale - Incorrect Permission Assignment
CVSS 6.5
CVE-2025-32797 HIGH
Conda-build <25.3.1 - RCE
CVSS 7.0
CVE-2025-3473 MEDIUM
IBM Security Guardium 12.1 - Privilege Escalation
CVSS 6.7
CVE-2018-25111 MEDIUM
django-helpdesk <1.0.0 - Info Disclosure
CVSS 5.1
CVE-2025-22448 MEDIUM
Intel(R) Simics(R) Package Manager <1.12.0 - DoS
CVSS 6.1
CVE-2025-20629 MEDIUM
Intel(R) Ethernet Network Adapter E810 Series <4.60 - Privilege Esc...
CVSS 6.7
CVE-2025-20008 HIGH
Intel(R) Simics(R) Package Manager <1.12.0 - Privilege Escalation
CVSS 7.7
CVE-2025-31332 MEDIUM
SAP BusinessObjects - Privilege Escalation
CVSS 6.6
CVE-2025-29982 MEDIUM
Dell Wyse Management Suite <WMS 5.1 - Privilege Escalation
CVSS 6.8
CVE-2023-28207 MEDIUM
macOS - Privilege Escalation
CVSS 5.5
CVE-2024-51448 MEDIUM
IBM Robotic Process Automation - Incorrect Permission Assignment
CVSS 6.7
CVE-2024-36294 MEDIUM
Intel(R) DSA <24.3.26.8 - Privilege Escalation
CVSS 6.7
CVE-2024-36276 MEDIUM
Intel(R) CIP <2.4.10852 - Privilege Escalation
CVSS 6.7
CVE-2024-45599 LOW
Cursor <0.41.0 - Privilege Escalation
CVSS 3.8
CVE-2024-42681 HIGH
xxl-job <2.4.1 - RCE
CVSS 8.8
Details
Vulnerabilities 68