CWE-281

Improper Preservation of Permissions

Parent: CWE-732 - Incorrect Permission Assignment for Critical Resource

The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.

329 vulnerabilities with CWE-281
CVE-2024-57439 MEDIUM
ruoyi v4.8.0 - Authenticated Denial of Service via Reset Password Interface
CVSS 4.9
CVE-2024-40672 HIGH
ChooserActivity - Privilege Escalation
CVSS 8.4
CVE-2024-56178 MEDIUM
Couchbase Server <7.6.4 - Privilege Escalation
CVSS 6.5
CVE-2024-54557 HIGH
macOS <14.7.2-13.7.2 - Info Disclosure
CVSS 7.5
CVE-2024-54516 LOW
macOS < 14.7.2 and < 15.2 - Unauthorized Launch Daemon Approval
CVSS 3.3
CVE-2024-46310 CRITICAL
Cfx.re FXServer <v9601 - Info Disclosure
CVSS 9.1
CVE-2024-52869 MEDIUM
Teradata <2024-11-04 - Privilege Escalation
CVSS 6.0
CVE-2024-54818 HIGH
SourceCodester Computer Lab Mgmt <1.0 - Info Disclosure
CVSS 8.8
CVE-2024-53934 HIGH
Color Phone Call Screen Themes <1.1.2 - RCE
CVSS 7.7
CVE-2024-54880 CRITICAL
SeaCMS V13.1 - Privilege Escalation
CVSS 9.1
CVE-2024-54879 CRITICAL
SeaCMS V13.1 - Privilege Escalation
CVSS 9.1
CVE-2024-46622 CRITICAL
SecureAge Security Suite <7.0.38-8.1.18 - Privilege Escalation
CVSS 9.8
CVE-2024-55507 CRITICAL
CodeAstro Complaint Management System <1.0 - Privilege Escalation
CVSS 9.8
CVE-2024-44223 MEDIUM
macOS Sequoia <15.1 - Info Disclosure
CVSS 4.6
CVE-2024-44211 MEDIUM
macOS < 15.1 - Unprotected User Data Exposure via Symlink Validation
CVSS 5.5
CVE-2024-56317 HIGH
Matter < 1.4.0.0 - Denial of Service via ACL Entry Decoding Failure
CVSS 7.5
CVE-2024-37649 MEDIUM
SecureSTATION <2.5.5.3116-S50-SMA-B20160811A - Info Disclosure
CVSS 4.6
CVE-2024-54515 HIGH
macOS Sequoia <15.2 - Privilege Escalation
CVSS 7.8
CVE-2024-54513 MEDIUM
Apple iPadOS < 18.2 - Unprotected User Data Exposure via Permissions Issue
CVSS 5.5
CVE-2024-54484 MEDIUM
macOS < 15.2 - Unprotected User Data Exposure via Log File Insertion
CVSS 5.5
CVE-2024-54465 CRITICAL
macOS Sequoia <15.2 - Privilege Escalation
CVSS 9.8
CVE-2024-50931 MEDIUM
Silicon Labs Z-Wave Series 500 <6.84.0 - Privilege Escalation
CVSS 4.6
CVE-2024-50930 HIGH
Silicon Labs Z-Wave Series 500 v6.84.0 - Arbitrary Code Execution
CVSS 8.8
CVE-2024-50929 MEDIUM
Silicon Labs Z-Wave SDK < 7.21.1 - Denial of Service via Device Type Manipulation
CVSS 6.2
CVE-2024-50928 MEDIUM
Silicon Labs Z-Wave <7.21.1 - Privilege Escalation
CVSS 6.5
Details
Vulnerabilities 329