Vulnerability index

Browse CVEs

15 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect Default PermissionsCWE-276 × clear
Pdns CRITICAL 9.8
CVE-2014-7210

pdns specific as packaged in Debian in version before 3.3.1-1 creates a too privileged MySQL user. It was discovered that the maintainer scripts of p…

Fix: 3.3.1-1+
Fix from $2,300 2025-06-26
Debian Linux HIGH 7.8
CVE-2023-23583

Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable es…

Mitigation only
Fix from $1,950 2023-11-14
Debian Linux HIGH 7.8
CVE-2022-2735

A vulnerability was found in the PCS project. This issue occurs due to incorrect permissions on a Unix socket used for internal communication between…

Fix: after 0.11.3
Fix from $1,950 2022-09-06
Debian Linux CRITICAL 9.8
CVE-2021-20001

It was discovered, that debian-edu-config, a set of configuration files used for the Debian Edu blend, before 2.12.16 configured insecure permissions…

Fix: 2.12.16+
Fix from $2,300 2022-02-11
Debian Linux MEDIUM 6.5
CVE-2022-24301

In Minetest before 5.4.0, players can add or subtract items from a different player's inventory.

Fix: 5.4.0+
Fix from $1,600 2022-02-02
Debian Linux MEDIUM 5.5
CVE-2022-21704

log4js-node is a port of log4js to node.js. In affected versions default file permissions for log files created by the file, fileSync and dateFile ap…

Fix: 6.4.0+
Fix from $1,600 2022-01-19
Debian Linux HIGH 7.5
CVE-2021-33038

An issue was discovered in management/commands/hyperkitty_import.py in HyperKitty through 1.3.4. When importing a private mailing list's archives, th…

Fix: after 1.3.4
Fix from $1,950 2021-05-26
Debian Linux HIGH 7.1
CVE-2021-1056

NVIDIA GPU Display Driver for Linux, all versions, contains a vulnerability in the kernel mode layer (nvidia.ko) in which it does not completely hono…

Fix: 390.141 / 450.102.04+
Fix from $1,950 2021-01-08
Debian Linux MEDIUM 5.5
CVE-2020-0009

In calc_vm_may_flags of ashmem.c, there is a possible arbitrary write to shared memory due to a permissions bypass. This could lead to local escalati…

Patch available
Fix from $1,600 2020-01-08
Debian Linux HIGH 7.5
CVE-2010-5108

Trac 0.11.6 does not properly check workflow permissions before modifying a ticket. This can be exploited by an attacker to change the status and res…

Mitigation only
Fix from $1,950 2019-11-13
Debian Linux MEDIUM 5.5
CVE-2013-1425

ldap-git-backup before 1.0.4 exposes password hashes due to incorrect directory permissions.

Fix: 1.0.4+
Fix from $1,600 2019-11-07
Debian Linux CRITICAL 9.8
CVE-2019-12450

file_copy_fallback in gio/gfile.c in GNOME GLib 2.15.0 through 2.61.1 does not properly restrict file permissions while a copy operation is in progre…

Fix: after 2.61.1
Fix from $2,300 2019-05-29
Debian Linux MEDIUM 6.5
CVE-2017-0369

Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw, allowing a sysops to undelete pages, although the page is protected against it.

Fix: 1.27.2 / 1.28.1+
Fix from $1,600 2018-04-13
Debian Linux MEDIUM 5.9
CVE-2013-4394

The SetX11Keyboard function in systemd, when PolicyKit Local Authority (PKLA) is used to change the group permissions on the X Keyboard Extension (XK…

Fix: 194+
Fix from $1,600 2013-10-28
Debian Linux MEDIUM 5.0
CVE-2011-4361

MediaWiki before 1.17.1 does not check for read permission before handling action=ajax requests, which allows remote attackers to obtain sensitive in…

Fix: 1.17.1+
Fix from $1,600 2012-01-08