CWE-276

CWE-276 · 6 records · 1 with a public proof-of-concept

Records the NVD classes under CWE-276, highest CVSS first.

  1. HIGH 8.5CVE-2026-86359

    Dell Repository Manager, versions prior to 3.5.2, contains an Incorrect Default Permissions vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 7.1CVE-2026-100718public PoC

    Froxlor through 2.3.10 does not enforce the mail.allow_external_domains policy in the EmailSender.add API command. When an administrator has enabled the allowed-sender feature but disabled external allowed-sender domains (mail.enable_allow_sender = 1, mail.all…

    AI risk analysis on Exploit-DB.ai →

  3. MEDIUM 6.2CVE-2026-6718

    IBM Concert 1.0.0 through 3.0.0 is vulnerable to improper access control which allows unauthorized modification of application files.

    concert · linux kernel

    AI risk analysis on Exploit-DB.ai →

  4. MEDIUM 5.5CVE-2026-82165

    Dell Command | Integration Suite for System Center, versions prior to 6.7.2, contain an Incorrect Default Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information Disclosure.

    AI risk analysis on Exploit-DB.ai →

  5. MEDIUM 5.5CVE-2026-82163

    Dell Command | Intel vPro Out of Band, versions prior to 4.7.2, contain an Incorrect Default Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information Disclosure.

    AI risk analysis on Exploit-DB.ai →

  6. UNSCOREDCVE-2026-92252

    Incorrect default permissions in the installation directory of WatchDog Anti-Virus on Windows allow local, low-privileged users to modify, replace, or delete antivirus binaries and configuration files, because the installer grants the Users group Full Control …

    AI risk analysis on Exploit-DB.ai →