CWE-281
Improper Preservation of Permissions
The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.
337 vulnerabilities with CWE-281
CVE-2024-12125
HIGH
3scale Developer Portal - Info Disclosure
CVSS 7.5
CVE-2024-46941
MEDIUM
vivo SystemUI < 14.0.8.120 - Unauthenticated Information Disclosure via Incorrect Component Protection
CVE-2024-57698
HIGH
modernwms 1.0 - Unauthenticated Information Disclosure via User List Endpoint
CVSS 7.5
CVE-2024-56192
HIGH
Android - Local Privilege Escalation via wl_notify_gscan_event Bounds Check Bypass
CVSS 7.8
CVE-2024-56191
HIGH
Android - Local Privilege Escalation via Integer Overflow in dhd_process_full_gscan_result
CVSS 8.4
CVE-2024-56973
CRITICAL
Alvaria, Inc Unified IP Unified Director <7.2SP2 - RCE
CVSS 9.8
CVE-2024-53994
MEDIUM
Discourse - Improper Preservation of Permissions in Chat Preferences
CVSS 4.3
CVE-2024-53355
HIGH
EasyVirt DCScope <= 8.6.0, CO2Scope <= 1.3.0 - Privilege Escalation
CVSS 8.8
CVE-2024-57439
MEDIUM
ruoyi v4.8.0 - Authenticated Denial of Service via Reset Password Interface
CVSS 4.9
CVE-2024-40672
HIGH
ChooserActivity - Privilege Escalation
CVSS 8.4
CVE-2024-56178
MEDIUM
Couchbase Server <7.6.4 - Privilege Escalation
CVSS 6.5
CVE-2024-54557
HIGH
macOS <14.7.2-13.7.2 - Info Disclosure
CVSS 7.5
CVE-2024-54516
LOW
macOS < 14.7.2 and < 15.2 - Unauthorized Launch Daemon Approval
CVSS 3.3
CVE-2024-46310
CRITICAL
Cfx.re FXServer <v9601 - Info Disclosure
CVSS 9.1
CVE-2024-52869
MEDIUM
Teradata <2024-11-04 - Privilege Escalation
CVSS 6.0
CVE-2024-54818
HIGH
SourceCodester Computer Lab Mgmt <1.0 - Info Disclosure
CVSS 8.8
CVE-2024-53934
HIGH
Color Phone Call Screen Themes <1.1.2 - RCE
CVSS 7.7
CVE-2024-54880
CRITICAL
SeaCMS V13.1 - Privilege Escalation
CVSS 9.1
CVE-2024-54879
CRITICAL
SeaCMS V13.1 - Privilege Escalation
CVSS 9.1
CVE-2024-46622
CRITICAL
SecureAge Security Suite <7.0.38-8.1.18 - Privilege Escalation
CVSS 9.8
CVE-2024-55507
CRITICAL
CodeAstro Complaint Management System <1.0 - Privilege Escalation
CVSS 9.8
CVE-2024-44223
MEDIUM
macOS Sequoia <15.1 - Info Disclosure
CVSS 4.6
CVE-2024-44211
MEDIUM
macOS < 15.1 - Unprotected User Data Exposure via Symlink Validation
CVSS 5.5
CVE-2024-56317
HIGH
Matter < 1.4.0.0 - Denial of Service via ACL Entry Decoding Failure
CVSS 7.5
CVE-2024-37649
MEDIUM
SecureSTATION <2.5.5.3116-S50-SMA-B20160811A - Info Disclosure
CVSS 4.6
Details
Vulnerabilities
337