Description
A product inherits a set of insecure permissions for an object, e.g. when copying from an archive file, without user awareness or involvement.
CVE vulnerabilities with CWE-278 (7)
8.8
CVSS
HIGH
CVE-2024-36538
pub. 2024-07-24
8.8
CVSS
HIGH
CVE-2024-37769
pub. 2024-07-05
7.9
CVSS
HIGH
CVE-2023-38497
pub. 2023-08-04
7.3
CVSS
HIGH
CVE-2026-6265
pub. 2026-04-27
7.2
CVSS
HIGH
CVE-2025-2947
pub. 2025-04-17
6.7
CVSS
MEDIUM
CVE-2026-71477
pub. 2026-08-18
3.6
CVSS
LOW
CVE-2024-38531
pub. 2024-06-28