CWE-281

Improper Preservation of Permissions

Parent: CWE-732 - Incorrect Permission Assignment for Critical Resource

The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.

321 vulnerabilities with CWE-281
CVE-2023-2818 MEDIUM
Insider Threat Management Agent <7.14.3 - Info Disclosure
CVSS 5.5
CVE-2023-32552 MEDIUM
Trend Micro Apex One/Apex One as a Service - Info Disclosure
CVSS 5.3
CVE-2023-2993 MEDIUM
SMM/FPC - Command Injection
CVSS 5.4
CVE-2023-34672 HIGH
Elenos ETG150 FM <3.12 - Privilege Escalation
CVSS 8.8
CVE-2023-32400 MEDIUM
Apple Ipados < 16.5 - Denial of Service
CVSS 5.5
CVE-2023-32388 MEDIUM
Apple Ipados < 15.7.6 - Denial of Service
CVSS 5.5
CVE-2023-32355 MEDIUM
macOS <13.4 - Info Disclosure
CVSS 5.5
CVE-2023-28161 HIGH
Firefox < 111 - Info Disclosure
CVSS 8.8
CVE-2023-31923 HIGH
Suprema BioStar 2 <2022 Q4 v2.9.1 - Privilege Escalation
CVSS 8.8
CVE-2023-0975 HIGH
Trellix Agent for Windows <5.7.8 - Privilege Escalation
CVSS 8.2
CVE-2023-28668 CRITICAL
Jenkins Role-based Authorization Strategy Plugin <587.v2872c41fa_e5...
CVSS 9.8
CVE-2023-28647 MEDIUM
Nextcloud iOS <4.7.0 - Privilege Escalation
CVSS 4.4
CVE-2023-28646 MEDIUM
Nextcloud android <3.24.1 - Info Disclosure
CVSS 4.4
CVE-2023-28642 MEDIUM
runc <1.1.5 - Privilege Escalation
CVSS 6.1
CVE-2023-25809 MEDIUM
runc - Path Traversal
CVSS 5.0
CVE-2023-25817 LOW
Nextcloud Server < 24.0.9 - Incorrect Permission Assignment
CVSS 3.5
CVE-2023-21464 MEDIUM
Samsung Calendar <12.4.02.9000-12.3.08.2000 - Info Disclosure
CVSS 4.0
CVE-2023-22738 MEDIUM
vantage6 <3.8.0 - Privilege Escalation
CVSS 6.3
CVE-2023-25812 MEDIUM
Minio - DoS
CVSS 6.5
CVE-2022-47637 MEDIUM
XAMPP <8.1.12 - Info Disclosure
CVSS 6.7
CVE-2022-43910 HIGH
IBM Security Guardium 11.3 - Privilege Escalation
CVSS 8.4
CVE-2022-48301 HIGH
Bundle Management Module - Privilege Escalation
CVSS 7.5
CVE-2022-48296 MEDIUM
SystemUI - Info Disclosure
CVSS 5.3
CVE-2022-48295 HIGH
IHwAntiMalPlugin - Privilege Escalation
CVSS 7.5
CVE-2022-4139 HIGH
Linux Kernel < 5.4.226 - Memory Leak
CVSS 7.8
Details
Vulnerabilities 321