BaseDraft
CWE-276Incorrect Default Permissions
Category: authz
Description
During installation, installed file permissions are set to allow anyone to modify those files.
Common consequences· 1
- Confidentiality / Integrity — Read Application Data, Modify Application Data
Potential mitigations· 2
- [Architecture and Design, Operation]The architecture needs to access and modification attributes for files to only those users who actually require those actions.
- [Architecture and Design]
Related CAPEC attack patterns· 3
References
Exploits (incoming)3
| Type | Target | Confidence | Tier |
|---|---|---|---|
| AttackPattern | Directory Indexingcapec-127 | 100% | live |
| AttackPattern | Accessing Functionality Not Properly Constrained by ACLscapec-1 | 100% | live |
| AttackPattern | Web Server Logs Tamperingcapec-81 | 100% | live |
Compliance frameworks addressing this (incoming)5
| Type | Target | Confidence | Tier |
|---|---|---|---|
| ComplianceControl | nis2-art21e | 100% | live |
| ComplianceControl | cis_v8-4 | 100% | live |
| ComplianceControl | owasp_api_top10-api01 | 100% | live |
| ComplianceControl | ai_act-art72 | 100% | live |
| ComplianceControl | cra-art14 | 100% | live |
(incoming)41
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Vulnerability | CVE-2025-10314cve-2025-10314 | 0% | live |
| Vulnerability | CVE-2025-24093cve-2025-24093 | 0% | live |
| Vulnerability | CVE-2025-24172cve-2025-24172 | 0% | live |
| Vulnerability | CVE-2025-24195cve-2025-24195 | 0% | live |
| Vulnerability | CVE-2025-24207cve-2025-24207 | 0% | live |
| Vulnerability | CVE-2025-24238cve-2025-24238 | 0% | live |
| Vulnerability | CVE-2025-24399cve-2025-24399 | 0% | live |
| Vulnerability | CVE-2025-24891cve-2025-24891 | 0% | live |
| Vulnerability | CVE-2025-25535cve-2025-25535 | 0% | live |
| Vulnerability | CVE-2025-27154cve-2025-27154 | 0% | live |
| Vulnerability | CVE-2025-27677cve-2025-27677 | 0% | live |
| Vulnerability | CVE-2025-27682cve-2025-27682 | 0% | live |
| Vulnerability | CVE-2025-30465cve-2025-30465 | 0% | live |
| Vulnerability | CVE-2025-32091cve-2025-32091 | 0% | live |
| Vulnerability | CVE-2025-34191cve-2025-34191 | 0% | live |
| Vulnerability | CVE-2025-35062cve-2025-35062 | 0% | live |
| Vulnerability | CVE-2025-3528cve-2025-3528 | 0% | live |
| Vulnerability | CVE-2025-40585cve-2025-40585 | 0% | live |
| Vulnerability | CVE-2025-43595cve-2025-43595 | 0% | live |
| Vulnerability | CVE-2025-43596cve-2025-43596 | 0% | live |
| Vulnerability | CVE-2025-44643cve-2025-44643 | 0% | live |
| Vulnerability | CVE-2025-46014cve-2025-46014 | 0% | live |
| Vulnerability | CVE-2025-4660cve-2025-4660 | 0% | live |
| Vulnerability | CVE-2025-48950cve-2025-48950 | 0% | live |
| Vulnerability | CVE-2025-49084cve-2025-49084 | 0% | live |
| Vulnerability | CVE-2025-54530cve-2025-54530 | 0% | live |
| Vulnerability | CVE-2025-57625cve-2025-57625 | 0% | live |
| Vulnerability | CVE-2025-60262cve-2025-60262 | 0% | live |
| Vulnerability | CVE-2025-6179cve-2025-6179 | 0% | live |
| Vulnerability | CVE-2025-62577cve-2025-62577 | 0% | live |
Showing top 30 of 41 by confidence. Click any target to see the full neighbourhood.
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.