Skip to content
Noroxi

CWE-379 · 52 records

Creation of Temporary File in Directory with Insecure Permissions

CVEs in this class

52 records

  • CVE-2024-9950
    34Monitor

    Abuse of Unauthenticated Compliance Recheck in SecureConnector

    HighCVSS 8.5Proof of conceptEPSS 0%

    forescout · secureconnectorJan 2, 2025

  • As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was al

    HighCVSS 7.5No exploitEPSS 8%

    apache · antOct 1, 2020

  • Adobe Acrobat Reader DC for macOS installer (AcroRdrDC_2200220191_MUI.pkg) contains a local privilege escalation vulnerability.

    HighCVSS 7.8No exploitEPSS 4%

    adobe · acrobatApr 12, 2023

  • Adobe Digital Editions Arbitrary file system write vulnerability

    HighCVSS 7.8No exploitEPSS 2%

    adobe · digital editionsApr 15, 2021

  • CVE-2016-9486
    31Monitor

    On Windows endpoints, the SecureConnector agent is vulnerable to privilege escalation whereby an authenticated unprivileged user can obtain administrator privil

    HighCVSS 7.8No exploitEPSS 1%

    forescout · secureconnectorJul 13, 2018

  • Adobe Acrobat Reader Creation of Temporary File in Directory with Incorrect Permissions Privilege escalation

    HighCVSS 7.8No exploitEPSS 0%

    adobe · acrobat dcJan 18, 2023

  • Adobe Acrobat Reader Creation of Temporary File in Directory with Incorrect Permissions Privilege escalation

    HighCVSS 7.8No exploitEPSS 0%

    adobe · acrobat dcJan 18, 2023

  • Local Privilege Escalation in pyinstaller on Windows

    HighCVSS 7.8No exploitEPSS 0%

    pyinstaller · pyinstallerDec 8, 2023

  • CVE-2023-3972
    31Monitor

    Insights-client: unsafe handling of temporary files and directories

    HighCVSS 7.8No exploitEPSS 0%

    redhat · insights-clientNov 1, 2023

  • Insecure temporary directory usage in frontend build functionality of Vaadin 14 and 15-19

    HighCVSS 7.8No exploitEPSS 0%

    vaadin · flowMay 5, 2021

  • CVE-2023-6080
    31Monitor

    Privilege Escalation to SYSTEM in Lakeside Software Installer

    HighCVSS 7.8No exploitEPSS 0%

    lakesidesoftware · systrack lsiagentOct 18, 2024

  • Dell Power Manager, Versions 3.3 to 3.14 contains an Improper Access Control vulnerability.

    HighCVSS 7.8No exploitEPSS 0%

    dell · power managerJul 27, 2023

  • CVE-2024-9500
    31Monitor

    Autodesk ADP Desktop SDK Privilege Escalation Vulnerability

    HighCVSS 7.8No exploitEPSS 0%

    autodesk · installerNov 15, 2024

  • CVE-2023-3181
    31Monitor

    Insecure Permissions in Splashtop Software Updater

    HighCVSS 7.8No exploitEPSS 0%

    splashtop · mirroring360 receiverJan 25, 2024

  • The C:\Windows\Temp\Agent.Package.Availability\Agent.Package.Availability.exe file is automatically launched as SYSTEM when the system reboo

    HighCVSS 7.8No exploitEPSS 0%

    atera · agent package availabilityOct 31, 2023

  • OpenTelemetry.Exporter.OpenTelemetryProtocol: Disk retry default temp path enables local blob injection for OTLP Exporter

    HighCVSS 7.8No exploitEPSS 0%

    opentelemetry · opentelemetry.exporter.opentelemetryprotocolMay 12, 2026

  • Adobe Genuine Service Installer Privilege Escalation Vulnerability

    HighCVSS 7.3No exploitEPSS 2%

    adobe · genuine serviceSep 29, 2021

  • In Keylime before 6.3.0, Revocation Notifier uses a fixed /tmp path for UNIX domain socket which can allow unprivileged users a method to pr

    HighCVSS 7.5No exploitEPSS 2%

    keylime · keylimeSep 21, 2022

  • HP Easy Start for macOS - Security Update

    HighCVSS 7.7No exploitEPSS 0%

    hp inc · hp easy start for macosAug 24, 2026

  • .NET Elevation of Privilege Vulnerability

    HighCVSS 7.3No exploitEPSS 1%

    microsoft · visual studio 2022Jan 14, 2025

  • Adobe Captivate Installer Creation of Temporary File In Directory With Incorrect Permissions Could Lead To Privilege Escalation

    HighCVSS 7.3No exploitEPSS 1%

    adobe · captivateSep 1, 2021

  • Adobe Creative Cloud Arbitrary File Overwrite Vulnerability

    HighCVSS 7.4No exploitEPSS 0%

    adobe · creative cloud desktop applicationSep 27, 2021

  • Creation of Temporary File in Directory with Insecure Permissions in AWS FPGA Development Kit

    HighCVSS 7.3No exploitEPSS 0%

    aws · aws-fpgaSep 3, 2026

  • Pi: Predictable temporary extension install paths allow local privilege escalation on shared Linux hosts

    HighCVSS 7.3No exploitEPSS 0%

    earendil-works · piJun 23, 2026

  • CVE-2024-7562
    29Monitor

    A potential elevated privilege issue has been reported with InstallShield built Standalone MSI setups having multiple InstallScript custom a

    HighCVSS 7.3No exploitEPSS 0%

    revenera · installshieldJun 12, 2025

All vulnerability classes