Show filters
101 Total Results
Displaying 91-100 of 101
Sort by:
Attacker Value
Unknown
CVE-2020-9781
Disclosure Date: April 01, 2020 (last updated February 21, 2025)
The issue was addressed by clearing website permission prompts after navigation. This issue is fixed in iOS 13.4 and iPadOS 13.4. A user may grant website permissions to a site they didn't intend to.
0
Attacker Value
Unknown
CVE-2020-10083
Disclosure Date: March 13, 2020 (last updated February 21, 2025)
GitLab 12.7 through 12.8.1 has Insecure Permissions. Under certain conditions involving groups, project authorization changes were not being applied.
0
Attacker Value
Unknown
CVE-2020-8634
Disclosure Date: March 07, 2020 (last updated February 21, 2025)
Wing FTP Server v6.2.3 for Linux, macOS, and Solaris sets insecure permissions on files modified within the HTTP file management interface, resulting in files being saved with world-readable and world-writable permissions. If a sensitive system file were edited this way, a low-privilege user may escalate privileges to root.
0
Attacker Value
Unknown
CVE-2020-8633
Disclosure Date: February 18, 2020 (last updated February 21, 2025)
An issue was discovered in Zimbra Collaboration Suite (ZCS) before 8.8.15 Patch 7. When grantors revoked a shared calendar in Outlook, the calendar stayed mounted and accessible.
0
Attacker Value
Unknown
CVE-2020-7063
Disclosure Date: February 17, 2020 (last updated February 21, 2025)
In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when creating PHAR archive using PharData::buildFromIterator() function, the files are added with default permissions (0666, or all access) even if the original files on the filesystem were with more restrictive permissions. This may result in files having more lax permissions than intended when such archive is extracted.
0
Attacker Value
Unknown
CVE-2019-15621
Disclosure Date: February 04, 2020 (last updated February 21, 2025)
Improper permissions preservation in Nextcloud Server 16.0.1 causes sharees to be able to reshare with write permissions when sharing the mount point of a share they received, as a public link.
0
Attacker Value
Unknown
CVE-2020-8117
Disclosure Date: February 04, 2020 (last updated February 21, 2025)
Improper preservation of permissions in Nextcloud Server 14.0.3 causes the event details to be leaked when sharing a non-public event.
0
Attacker Value
Unknown
CVE-2005-1920
Disclosure Date: July 26, 2005 (last updated February 22, 2025)
The (1) Kate and (2) Kwrite applications in KDE KDE 3.2.x through 3.4.0 do not properly set the same permissions on the backup file as were set on the original file, which could allow local users and possibly remote attackers to obtain sensitive information.
0
Attacker Value
Unknown
CVE-2002-2323
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Sun PC NetLink 1.0 through 1.2 does not properly set the access control list (ACL) for files and directories that use symbolic links and have been restored from backup, which could allow local or remote attackers to bypass intended access restrictions.
0
Attacker Value
Unknown
CVE-2001-1515
Disclosure Date: December 31, 2001 (last updated February 22, 2025)
Macintosh clients, when using NT file system volumes on Windows 2000 SP1, create subdirectories and automatically modify the inherited NTFS permissions, which may cause the directories to have less restrictive permissions than intended.
0