CWE-281

Improper Preservation of Permissions

Parent: CWE-732 - Incorrect Permission Assignment for Critical Resource

The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.

321 vulnerabilities with CWE-281
CVE-2022-42260 HIGH
Nvidia Virtual Gpu < 11.11 - Denial of Service
CVSS 7.8
CVE-2022-38473 HIGH
Thunderbird/Firefox < 102.2/<91.13/<104 - SSRF
CVSS 8.8
CVE-2022-47547 MEDIUM
GossipSub 1.1 - Info Disclosure
CVSS 5.3
CVE-2022-4326 MEDIUM
Trellix Endpoint Agent <V35.31.22 - Privilege Escalation
CVSS 5.5
CVE-2022-41963 LOW
BigBlueButton <2.4.3 - Info Disclosure
CVSS 2.7
CVE-2022-31608 HIGH
NVIDIA GPU Display Driver for Linux - RCE
CVSS 7.8
CVE-2022-26024 MEDIUM
Intel(R) NUC HDMI Firmware Update Tool - Privilege Escalation
CVSS 6.7
CVE-2022-44020 MEDIUM
OpenStack Sushy-Tools <0.21.0-VirtualBMC <2.2.2 - Info Disclosure
CVSS 5.5
CVE-2022-41708 MEDIUM
Relatedcode's Messenger <7bcd20b - Info Disclosure
CVSS 4.3
CVE-2022-36062 HIGH
Grafana <8.5.13, 9.0.9, 9.1.6 - Privilege Escalation
CVSS 7.6
CVE-2022-38577 HIGH
ProcessMaker <3.5.4 - Privilege Escalation
CVSS 8.8
CVE-2022-36102 MEDIUM
Shopware <5.7.15 - Auth Bypass
CVSS 6.3
CVE-2022-2787 MEDIUM
Debian Schroot < 1.6.13 - Denial of Service
CVSS 4.3
CVE-2022-31237 LOW
Dell PowerScale OneFS <9.2.1.12 & 9.3.0.5 - Info Disclosure
CVSS 3.3
CVE-2022-31262 HIGH
GOG Galaxy 2.0.46 - Privilege Escalation
CVSS 7.8
CVE-2022-22472 HIGH
IBM Spectrum Protect Plus - Auth Bypass
CVSS 8.8
CVE-2022-32969 MEDIUM
MetaMask <10.11.3 - Info Disclosure
CVSS 5.9
CVE-2022-31096 MEDIUM
Discourse - Auth Bypass
CVSS 5.7
CVE-2022-31755 MEDIUM
Communication Module - Privilege Escalation
CVSS 5.5
CVE-2022-29594 HIGH
eG Agent <7.2 - Privilege Escalation
CVSS 7.8
CVE-2022-1227 HIGH
Podman < 4.0.0 - Improper Privilege Management
CVSS 8.8
CVE-2022-24428 MEDIUM
Dell PowerScale OneFS - Privilege Escalation
CVSS 6.3
CVE-2022-0330 HIGH
Linux kernel's GPU i915 - Memory Corruption
CVSS 7.8
CVE-2022-22650 MEDIUM
macOS - Privilege Escalation
CVSS 5.5
CVE-2022-24618 HIGH
Heimdal Premium Security <2.5.395 - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 321