Vulnerability index

Browse CVEs

15 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect Default PermissionsCWE-276 × clear
CRITICAL 9.8 CVE-2014-7210 pdns specific as packaged in Debian in version before 3.3.1-1 creates a too privileged MySQL user. It was discovered that the maintainer scripts of p… Pdns 3.3.1-1+ Fix from $2,3002025-06-26 HIGH 7.8 CVE-2023-23583 Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable es… Debian Linux Mitigation only Fix from $1,9502023-11-14 HIGH 7.8 CVE-2022-2735 A vulnerability was found in the PCS project. This issue occurs due to incorrect permissions on a Unix socket used for internal communication between… Debian Linux after 0.11.3 Fix from $1,9502022-09-06 CRITICAL 9.8 CVE-2021-20001 It was discovered, that debian-edu-config, a set of configuration files used for the Debian Edu blend, before 2.12.16 configured insecure permissions… Debian Linux 2.12.16+ Fix from $2,3002022-02-11 MEDIUM 6.5 CVE-2022-24301 In Minetest before 5.4.0, players can add or subtract items from a different player's inventory. Debian Linux 5.4.0+ Fix from $1,6002022-02-02 MEDIUM 5.5 CVE-2022-21704 log4js-node is a port of log4js to node.js. In affected versions default file permissions for log files created by the file, fileSync and dateFile ap… Debian Linux 6.4.0+ Fix from $1,6002022-01-19 HIGH 7.5 CVE-2021-33038 An issue was discovered in management/commands/hyperkitty_import.py in HyperKitty through 1.3.4. When importing a private mailing list's archives, th… Debian Linux after 1.3.4 Fix from $1,9502021-05-26 HIGH 7.1 CVE-2021-1056 NVIDIA GPU Display Driver for Linux, all versions, contains a vulnerability in the kernel mode layer (nvidia.ko) in which it does not completely hono… Debian Linux 390.141 / 450.102.04+ Fix from $1,9502021-01-08 MEDIUM 5.5 CVE-2020-0009 In calc_vm_may_flags of ashmem.c, there is a possible arbitrary write to shared memory due to a permissions bypass. This could lead to local escalati… Debian Linux Patch available Fix from $1,6002020-01-08 HIGH 7.5 CVE-2010-5108 Trac 0.11.6 does not properly check workflow permissions before modifying a ticket. This can be exploited by an attacker to change the status and res… Debian Linux Mitigation only Fix from $1,9502019-11-13 MEDIUM 5.5 CVE-2013-1425 ldap-git-backup before 1.0.4 exposes password hashes due to incorrect directory permissions. Debian Linux 1.0.4+ Fix from $1,6002019-11-07 CRITICAL 9.8 CVE-2019-12450 file_copy_fallback in gio/gfile.c in GNOME GLib 2.15.0 through 2.61.1 does not properly restrict file permissions while a copy operation is in progre… Debian Linux after 2.61.1 Fix from $2,3002019-05-29 MEDIUM 6.5 CVE-2017-0369 Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw, allowing a sysops to undelete pages, although the page is protected against it. Debian Linux 1.27.2 / 1.28.1+ Fix from $1,6002018-04-13 MEDIUM 5.9 CVE-2013-4394 The SetX11Keyboard function in systemd, when PolicyKit Local Authority (PKLA) is used to change the group permissions on the X Keyboard Extension (XK… Debian Linux 194+ Fix from $1,6002013-10-28 MEDIUM 5.0 CVE-2011-4361 MediaWiki before 1.17.1 does not check for read permission before handling action=ajax requests, which allows remote attackers to obtain sensitive in… Debian Linux 1.17.1+ Fix from $1,6002012-01-08