CWE-276 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-276 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2013-0632administrator.cfc in Adobe ColdFusion 9.0, 9.0.1, 9.0.2, and 10 allows remote attackers to bypass au…93.6%심각9.8● 실제 악용이 확인됨CVE-2022-22948The vCenter Server contains an information disclosure vulnerability due to improper permission of fi…13.3%보통6.5● 실제 악용이 확인됨CVE-2026-87886Local privilege escalation due to insecure file permissions. The following products are affected: Ac…0.2%높음7.8CVE-2026-77393In Ignition 8.1.53 and earlier, the Gateway "Create Project Role(s)" setting shipped blank, which pe…0.5%높음8.7CVE-2026-52766YesWiki is a wiki system written in PHP. Prior to version 4.6.6, the {{erasespamedcomments}} wiki ac…0.3%심각9.1CVE-2026-86359Dell Repository Manager, versions prior to 3.5.2, contains an Incorrect Default Permissions vulnerab…0.2%높음8.5CVE-2026-100718Froxlor through 2.3.10 does not enforce the mail.allow_external_domains policy in the EmailSender.ad…0.2%높음7.1CVE-2026-81302PALLET CONTROL products contain an incorrect default permission vulnerability, which may allow a loc…0.2%높음8.5
전체 목록
15건
CVE-2026-92252Incorrect default permissions in the installation directory of WatchDog Anti-Virus on Windows allow local, low…0.1%보통5.9
CVE-2026-82165Dell Command | Integration Suite for System Center, versions prior to 6.7.2, contain an Incorrect Default Perm…0.1%보통5.5
CVE-2026-82163Dell Command | Intel vPro Out of Band, versions prior to 4.7.2, contain an Incorrect Default Permissions vulne…0.1%보통5.5
CVE-2026-48722Nextflow is a DSL for data-driven computational pipelines. From 25.09.2-edge until 25.10.6 and 26.04.3, nextfl…0.1%보통5.5
CVE-2026-11813A potential improper permissions vulnerability was reported in the Lenovo Filez Client application that could …0.1%높음8.5
CVE-2026-6718IBM Concert 1.0.0 through 3.0.0 is vulnerable to improper access control which allows unauthorized modificatio…0.1%보통6.2
CVE-2026-86836In Eclipse Ankaios versions 0.1.0 through 1.0.2, the agent creates workload files and Control Interface named …0.1%높음8.4
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.