CWE-281

Improper Preservation of Permissions

Parent: CWE-732 - Incorrect Permission Assignment for Critical Resource

The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.

321 vulnerabilities with CWE-281
CVE-2024-53934 HIGH
Color Phone Call Screen Themes <1.1.2 - RCE
CVSS 7.7
CVE-2024-54880 CRITICAL
SeaCMS V13.1 - Privilege Escalation
CVSS 9.1
CVE-2024-54879 CRITICAL
SeaCMS V13.1 - Privilege Escalation
CVSS 9.1
CVE-2024-46622 CRITICAL
SecureAge Security Suite <7.0.38-8.1.18 - Privilege Escalation
CVSS 9.8
CVE-2024-55507 CRITICAL
CodeAstro Complaint Management System <1.0 - Privilege Escalation
CVSS 9.8
CVE-2024-44223 MEDIUM
macOS Sequoia <15.1 - Info Disclosure
CVSS 4.6
CVE-2024-44211 MEDIUM
Apple Macos - Symlink Following
CVSS 5.5
CVE-2024-56317 HIGH
Matter <1.4.0.0 - DoS
CVSS 7.5
CVE-2024-37649 MEDIUM
SecureSTATION <2.5.5.3116-S50-SMA-B20160811A - Info Disclosure
CVSS 4.6
CVE-2024-54515 HIGH
macOS Sequoia <15.2 - Privilege Escalation
CVSS 7.8
CVE-2024-54513 MEDIUM
Apple Ipados < 18.2 - Denial of Service
CVSS 5.5
CVE-2024-54484 MEDIUM
Apple Macos < 15.2 - Log Information Exposure
CVSS 5.5
CVE-2024-54465 CRITICAL
macOS Sequoia <15.2 - Privilege Escalation
CVSS 9.8
CVE-2024-50931 MEDIUM
Silicon Labs Z-Wave Series 500 <6.84.0 - Privilege Escalation
CVSS 4.6
CVE-2024-50930 HIGH
Silicon Labs Z-Wave Series 500 <6.84.0 - RCE
CVSS 8.8
CVE-2024-50929 MEDIUM
Silabs Z-wave Software Development Kit < 7.21.1 - Denial of Service
CVSS 6.2
CVE-2024-50928 MEDIUM
Silicon Labs Z-Wave <7.21.1 - Privilege Escalation
CVSS 6.5
CVE-2024-50924 MEDIUM
Silicon Labs Z-Wave Series 700/800 <7.21.1 - DoS
CVSS 6.5
CVE-2024-50921 MEDIUM
Silabs Z-wave Software Development Kit < 7.21.1 - Denial of Service
CVSS 6.5
CVE-2024-50920 HIGH
Silicon Labs Z-Wave <7.21.1 - Privilege Escalation
CVSS 8.8
CVE-2024-41650 CRITICAL
Open Robotics Robotic Operating System 2 <v.humble - Code Injection
CVSS 9.8
CVE-2024-41649 CRITICAL
Open Robotics Robotic Operating System 2 <v.humble - RCE
CVSS 9.8
CVE-2024-41648 CRITICAL
Open Robotics Robotic Operating System 2 <v.humble - RCE
CVSS 9.8
CVE-2024-41646 CRITICAL
Open Robotics Robotic Operating System 2 <v.humble - Code Injection
CVSS 9.8
CVE-2024-41645 CRITICAL
Open Robotics ROS2 navigation2 v.humble - Insecure Permissions
CVSS 9.8
Details
Vulnerabilities 321