Threats Tagged 'cwe-276'
View all threats tagged with 'cwe-276'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-276'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-12602: CWE-276 Incorrect default permissions in Aruba ArubaSignCVE-2026-12602 0 Incorrect default permissions in ArubaSign, affecting versions prior to v4.6.6. The vulnerability is caused by the assignment of inappropriate permissions during the software’s default installation, whereby the main executable and other programme files located in C:\Program Files have excessive permissions for the ‘Everyone’ group. This could allow an unprivileged user to replace the main executable and/or its components with a malicious file, thereby enabling the execution of arbitrary code. In the worst-case scenario, if the malicious code is executed with elevated privileges (such as those of Administrator or SYSTEM), the attacker could escalate privileges and gain full control of the system, compromising both security and data integrity. Join the discussion | CVE Database V5 | 06/22/2026, 12:34:49 UTC Added: 06/22/2026, 13:54:17 UTC |
CVE-2025-15642: CWE-276 Incorrect default permissions in Netskope Netskope ClientCVE-2025-15642 0 Netskope is notified about a potential gap in its Netskoped Client for Windows systems where a malicious insider with admin privileges can lead to bypassing the NSClient Tamper Protections due to weak Discretionary Access Control List (DACLs) on the service object and related registry keys,. * Product Name: Netskope Client * Affected Platform: Windows * Affected Version: All version below R138 Join the discussion | CVE Database V5 | 06/17/2026, 01:48:39 UTC Added: 06/17/2026, 02:00:35 UTC |
CVE-2026-48191: CWE-276 Incorrect Default Permissions in OTRS AG OTRSCVE-2026-48191 0 An incorrect handling of permissions in STORM powered by OTRS and in OTRS (2026.x and above) Document Search Article Meta Filters modules allows gaining knowledge about number of affected CIs, SLA and services without gaining access to them. This issue affects OTRS with STORM modules: * 7.0.X * 8.0.X * 2023.X * 2024.X * 2025.X * 2026.X before 2026.4.X Join the discussion | CVE Database V5 | 06/01/2026, 03:32:47 UTC Added: 06/01/2026, 15:04:03 UTC |
CVE-2026-48190: CWE-276 Incorrect Default Permissions in OTRS AG OTRSCVE-2026-48190 0 An incorrect handling of permissions in OTRS External Interface and the ConfigItem List module allows an authenticated customer to query the system for CI information. Please note that CMDB has to be anabled and CustomerGroupSupport has to be used to be affected. This issue affects OTRS: * 7.0.X * 8.0.X * 2023.X * 2024.X * 2025.X * 2026.X before 2026.4.X Join the discussion | CVE Database V5 | 06/01/2026, 03:32:53 UTC Added: 06/01/2026, 15:04:03 UTC |
CVE-2026-49157: CWE-276 Incorrect Default Permissions in Apache Software Foundation Apache ActiveMQCVE-2026-49157 0 Incorrect Default Permissions vulnerability in Apache ActiveMQ. This issue affects Apache ActiveMQ: before 5.19.7, from 6.0.0 before 6.2.6. The default Jolokia authorization settings granted non-admin (low-privilege) web-login accounts access to Jolokia operations which allowed executing broker management operations meant for admins such as addQueue and removeQueue. Users are recommended to upgrade to version 6.2.6 or 5.19.7, which fixes the issue. Join the discussion | CVE Database V5 | 06/01/2026, 07:20:10 UTC Added: 06/01/2026, 09:18:49 UTC |
CVE-2026-33590: CWE-276 Incorrect default permissions in Portainer Portainer Community EditionCVE-2026-33590 0 Insecure default settings of Portainer CE grant regular (non-admin) users privileges that allow host filesystem access and host-level code execution. An authenticated non-administrative user with endpoint access can exploit these settings to read host files or obtain root equivalent access on the host. Join the discussion | CVE Database V5 | 05/28/2026, 19:30:06 UTC Added: 05/28/2026, 19:53:12 UTC |
CVE-2026-44469: CWE-276 Incorrect Default Permissions in CODESYS CODESYS Development SystemCVE-2026-44469 0 The affected product extracts installation files to a temporary directory with incorrect default permissions during administrative installation. A low-privileged local attacker can exploit a TOCTOU race condition with a practical time window to replace verified files with malicious ones before installation, resulting in local privilege escalation. Join the discussion | CVE Database V5 | 05/26/2026, 06:39:04 UTC Added: 05/26/2026, 07:55:14 UTC |
CVE-2026-44468: CWE-276 Incorrect Default Permissions in CODESYS CODESYS Development SystemCVE-2026-44468 0 The affected product creates a directory with insecure default permissions during administrative installation. This allows a low-privileged local attacker to modify a temporary file defining the components to be installed, enabling local privilege escalation by forcing the deployment of arbitrary components. Join the discussion | CVE Database V5 | 05/26/2026, 06:37:53 UTC Added: 05/26/2026, 07:55:14 UTC |
Showing 1 to 8 of 8 results