Filtered by CWE-732
Total 1333 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-0304 1 Google 1 Android 2024-08-03 5.5 Medium
In several functions of GlobalScreenshot.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure of the user's contacts with User execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-10, Android-8.0, Android-8.1, Android-9; Android ID: A-162738636.
CVE-2021-0109 1 Intel 2 Compute Stick Stk1a32sc, Compute Stick Stk1a32sc Firmware 2024-08-03 7.8 High
Insecure inherited permissions for the Intel(R) SOC driver package for STK1A32SC before version 604 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2021-0105 1 Intel 10 Ac 9461, Ac 9461 Firmware, Ac 9462 and 7 more 2024-08-03 7.3 High
Insecure inherited permissions in some Intel(R) ProSet/Wireless WiFi drivers may allow an authenticated user to potentially enable information disclosure and denial of service via adjacent access.
CVE-2021-0102 1 Intel 1 Unite 2024-08-03 7.8 High
Insecure inherited permissions in the Intel Unite(R) Client for Windows before version 4.2.25031 may allow an authenticated user to potentially enable an escalation of privilege via local access.
CVE-2021-0077 1 Intel 1 Vtune Profiler 2024-08-03 7.8 High
Insecure inherited permissions in the installer for the Intel(R) VTune(TM) Profiler before version 2021.1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2021-0064 1 Intel 24 7265, 7265 Firmware, Ac 3165 and 21 more 2024-08-03 7.8 High
Insecure inherited permissions in the Intel(R) PROSet/Wireless WiFi software installer for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2021-0056 1 Intel 4 Lapbc510, Lapbc510 Firmware, Lapbc710 and 1 more 2024-08-03 7.8 High
Insecure inherited permissions for the Intel(R) NUC M15 Laptop Kit Driver Pack software before updated version 1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2021-0055 1 Intel 8 Lapqc71a, Lapqc71a Firmware, Lapqc71b and 5 more 2024-08-03 7.8 High
Insecure inherited permissions for some Intel(R) NUC 9 Extreme Laptop Kit LAN Drivers before version 10.42 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2022-48257 1 Eternal Terminal Project 1 Eternal Terminal 2024-08-03 5.3 Medium
In Eternal Terminal 6.2.1, etserver and etclient have predictable logfile names in /tmp.
CVE-2022-47927 2 Fedoraproject, Mediawiki 2 Fedora, Mediawiki 2024-08-03 5.5 Medium
An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1. When installing with a pre-existing data directory that has weak permissions, the SQLite files are created with file mode 0644, i.e., world readable to local users. These files include credentials data.
CVE-2022-46656 1 Intel 1 Nuc Pro Software Suite 2024-08-03 6.7 Medium
Insecure inherited permissions for the Intel(R) NUC Pro Software Suite before version 2.0.0.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2022-46338 2 Debian, G810-led Project 2 Debian Linux, G810-led 2024-08-03 6.5 Medium
g810-led 0.4.2, a LED configuration tool for Logitech Gx10 keyboards, contained a udev rule to make supported device nodes world-readable and writable, allowing any process on the system to read traffic from keyboards, including sensitive data.
CVE-2022-45306 1 Chocolatey 1 Chocolatey Azure-pipelines-agent 2024-08-03 4.3 Medium
Insecure permissions in Chocolatey Azure-Pipelines-Agent package v2.211.1 and below grants all users in the Authenticated Users group write privileges for the subfolder C:\agent and all files located in that folder.
CVE-2022-45305 1 Chocolatey 1 Chocolatey Python3 2024-08-03 4.3 Medium
Insecure permissions in Chocolatey Python3 package v3.11.0 and below grants all users in the Authenticated Users group write privileges for the subfolder C:\Python311 and all files located in that folder.
CVE-2022-45301 1 Chocolatey 1 Chocolatey Ruby 2024-08-03 4.3 Medium
Insecure permissions in Chocolatey Ruby package v3.1.2.1 and below grants all users in the Authenticated Users group write privileges for the path C:\tools\ruby31 and all files located in that folder.
CVE-2022-45304 1 Chocolatey 1 Chocolatey Cmder 2024-08-03 4.3 Medium
Insecure permissions in Chocolatey Cmder package v1.3.20 and below grants all users in the Authenticated Users group write privileges for the path C:\tools\Cmder and all files located in that folder.
CVE-2022-45193 1 Bruhn-newtech 1 Cbrn-analysis 2024-08-03 5.9 Medium
CBRN-Analysis before 22 has weak file permissions under Public Profile, leading to disclosure of file contents or privilege escalation.
CVE-2022-45307 1 Chocolatey 1 Chocolatey Php 2024-08-03 4.3 Medium
Insecure permissions in Chocolatey PHP package v8.1.12 and below grants all users in the Authenticated Users group write privileges for the subfolder C:\tools\php81 and all files located in that folder.
CVE-2022-44733 1 Acronis 1 Cyber Protect Home Office 2024-08-03 7.8 High
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 39900.
CVE-2022-44732 1 Acronis 1 Cyber Protect Home Office 2024-08-03 7.8 High
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 39900.