CWE-379 · 52 kayıt
Creation of Temporary File in Directory with Insecure Permissions
Bu sınıftaki CVE’ler
52 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
34İzleyin | CVE-2024-9950Kavram kanıtı | Abuse of Unauthenticated Compliance Recheck in SecureConnectorforescout · secureconnector · CWE-379 | Yüksek8,5 | — | %0,3 | 2 Oca 2025 |
32İzleyin | CVE-2020-11979İstismar yok | As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was alapache · ant · CWE-379 | Yüksek7,5 | — | %8,0 | 1 Eki 2020 |
32İzleyin | CVE-2023-26396İstismar yok | Adobe Acrobat Reader DC for macOS installer (AcroRdrDC_2200220191_MUI.pkg) contains a local privilege escalation vulnerability.adobe · acrobat · CWE-379 | Yüksek7,8 | — | %4,0 | 12 Nis 2023 |
32İzleyin | CVE-2021-21100İstismar yok | Adobe Digital Editions Arbitrary file system write vulnerabilityadobe · digital editions · CWE-379 | Yüksek7,8 | — | %1,7 | 15 Nis 2021 |
31İzleyin | CVE-2016-9486İstismar yok | On Windows endpoints, the SecureConnector agent is vulnerable to privilege escalation whereby an authenticated unprivileged user can obtain administrator privilforescout · secureconnector · CWE-379 | Yüksek7,8 | — | %1,3 | 13 Tem 2018 |
31İzleyin | CVE-2023-21611İstismar yok | Adobe Acrobat Reader Creation of Temporary File in Directory with Incorrect Permissions Privilege escalationadobe · acrobat dc · CWE-379 | Yüksek7,8 | — | %0,4 | 18 Oca 2023 |
31İzleyin | CVE-2023-21612İstismar yok | Adobe Acrobat Reader Creation of Temporary File in Directory with Incorrect Permissions Privilege escalationadobe · acrobat dc · CWE-379 | Yüksek7,8 | — | %0,4 | 18 Oca 2023 |
31İzleyin | CVE-2023-49797İstismar yok | Local Privilege Escalation in pyinstaller on Windowspyinstaller · pyinstaller · CWE-379 | Yüksek7,8 | — | %0,3 | 8 Ara 2023 |
31İzleyin | CVE-2023-3972İstismar yok | Insights-client: unsafe handling of temporary files and directoriesredhat · insights-client · CWE-379 | Yüksek7,8 | — | %0,3 | 1 Kas 2023 |
31İzleyin | CVE-2021-31411İstismar yok | Insecure temporary directory usage in frontend build functionality of Vaadin 14 and 15-19vaadin · flow · CWE-379 | Yüksek7,8 | — | %0,2 | 5 May 2021 |
31İzleyin | CVE-2023-6080İstismar yok | Privilege Escalation to SYSTEM in Lakeside Software Installerlakesidesoftware · systrack lsiagent · CWE-379 | Yüksek7,8 | — | %0,2 | 18 Eki 2024 |
31İzleyin | CVE-2023-32450İstismar yok | Dell Power Manager, Versions 3.3 to 3.14 contains an Improper Access Control vulnerability.dell · power manager · CWE-379 | Yüksek7,8 | — | %0,2 | 27 Tem 2023 |
31İzleyin | CVE-2024-9500İstismar yok | Autodesk ADP Desktop SDK Privilege Escalation Vulnerabilityautodesk · installer · CWE-379 | Yüksek7,8 | — | %0,2 | 15 Kas 2024 |
31İzleyin | CVE-2023-3181İstismar yok | Insecure Permissions in Splashtop Software Updatersplashtop · mirroring360 receiver · CWE-379 | Yüksek7,8 | — | %0,2 | 25 Oca 2024 |
31İzleyin | CVE-2023-37243İstismar yok | The C:\Windows\Temp\Agent.Package.Availability\Agent.Package.Availability.exe file is automatically launched as SYSTEM when the system rebooatera · agent package availability · CWE-379 | Yüksek7,8 | — | %0,2 | 31 Eki 2023 |
31İzleyin | CVE-2026-42191İstismar yok | OpenTelemetry.Exporter.OpenTelemetryProtocol: Disk retry default temp path enables local blob injection for OTLP Exporteropentelemetry · opentelemetry.exporter.opentelemetryprotocol · CWE-379 | Yüksek7,8 | — | %0,1 | 12 May 2026 |
30İzleyin | CVE-2021-40708İstismar yok | Adobe Genuine Service Installer Privilege Escalation Vulnerabilityadobe · genuine service · CWE-379 | Yüksek7,3 | — | %1,7 | 29 Eyl 2021 |
30İzleyin | CVE-2022-23950İstismar yok | In Keylime before 6.3.0, Revocation Notifier uses a fixed /tmp path for UNIX domain socket which can allow unprivileged users a method to prkeylime · keylime · CWE-379 | Yüksek7,5 | — | %1,6 | 21 Eyl 2022 |
30İzleyin | CVE-2026-12555İstismar yok | HP Easy Start for macOS - Security Updatehp inc · hp easy start for macos · CWE-379 | Yüksek7,7 | — | %0,4 | 24 Ağu 2026 |
29İzleyin | CVE-2025-21173İstismar yok | .NET Elevation of Privilege Vulnerabilitymicrosoft · visual studio 2022 · CWE-379 | Yüksek7,3 | — | %1,2 | 14 Oca 2025 |
29İzleyin | CVE-2021-36002İstismar yok | Adobe Captivate Installer Creation of Temporary File In Directory With Incorrect Permissions Could Lead To Privilege Escalationadobe · captivate · CWE-379 | Yüksek7,3 | — | %0,5 | 1 Eyl 2021 |
29İzleyin | CVE-2021-28613İstismar yok | Adobe Creative Cloud Arbitrary File Overwrite Vulnerabilityadobe · creative cloud desktop application · CWE-379 | Yüksek7,4 | — | %0,5 | 27 Eyl 2021 |
29İzleyin | CVE-2026-85028İstismar yok | Creation of Temporary File in Directory with Insecure Permissions in AWS FPGA Development Kitaws · aws-fpga · CWE-379 | Yüksek7,3 | — | %0,2 | 3 Eyl 2026 |
29İzleyin | CVE-2026-54328İstismar yok | Pi: Predictable temporary extension install paths allow local privilege escalation on shared Linux hostsearendil-works · pi · CWE-379 | Yüksek7,3 | — | %0,2 | 23 Haz 2026 |
29İzleyin | CVE-2024-7562İstismar yok | A potential elevated privilege issue has been reported with InstallShield built Standalone MSI setups having multiple InstallScript custom arevenera · installshield · CWE-379 | Yüksek7,3 | — | %0,1 | 12 Haz 2025 |
- CVE-2024-995034İzleyin
Abuse of Unauthenticated Compliance Recheck in SecureConnector
YüksekCVSS 8,5Kavram kanıtıEPSS %0forescout · secureconnector2 Oca 2025
- CVE-2020-1197932İzleyin
As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was al
YüksekCVSS 7,5İstismar yokEPSS %8apache · ant1 Eki 2020
- CVE-2023-2639632İzleyin
Adobe Acrobat Reader DC for macOS installer (AcroRdrDC_2200220191_MUI.pkg) contains a local privilege escalation vulnerability.
YüksekCVSS 7,8İstismar yokEPSS %4adobe · acrobat12 Nis 2023
- CVE-2021-2110032İzleyin
Adobe Digital Editions Arbitrary file system write vulnerability
YüksekCVSS 7,8İstismar yokEPSS %2adobe · digital editions15 Nis 2021
- CVE-2016-948631İzleyin
On Windows endpoints, the SecureConnector agent is vulnerable to privilege escalation whereby an authenticated unprivileged user can obtain administrator privil
YüksekCVSS 7,8İstismar yokEPSS %1forescout · secureconnector13 Tem 2018
- CVE-2023-2161131İzleyin
Adobe Acrobat Reader Creation of Temporary File in Directory with Incorrect Permissions Privilege escalation
YüksekCVSS 7,8İstismar yokEPSS %0adobe · acrobat dc18 Oca 2023
- CVE-2023-2161231İzleyin
Adobe Acrobat Reader Creation of Temporary File in Directory with Incorrect Permissions Privilege escalation
YüksekCVSS 7,8İstismar yokEPSS %0adobe · acrobat dc18 Oca 2023
- CVE-2023-4979731İzleyin
Local Privilege Escalation in pyinstaller on Windows
YüksekCVSS 7,8İstismar yokEPSS %0pyinstaller · pyinstaller8 Ara 2023
- CVE-2023-397231İzleyin
Insights-client: unsafe handling of temporary files and directories
YüksekCVSS 7,8İstismar yokEPSS %0redhat · insights-client1 Kas 2023
- CVE-2021-3141131İzleyin
Insecure temporary directory usage in frontend build functionality of Vaadin 14 and 15-19
YüksekCVSS 7,8İstismar yokEPSS %0vaadin · flow5 May 2021
- CVE-2023-608031İzleyin
Privilege Escalation to SYSTEM in Lakeside Software Installer
YüksekCVSS 7,8İstismar yokEPSS %0lakesidesoftware · systrack lsiagent18 Eki 2024
- CVE-2023-3245031İzleyin
Dell Power Manager, Versions 3.3 to 3.14 contains an Improper Access Control vulnerability.
YüksekCVSS 7,8İstismar yokEPSS %0dell · power manager27 Tem 2023
- CVE-2024-950031İzleyin
Autodesk ADP Desktop SDK Privilege Escalation Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0autodesk · installer15 Kas 2024
- CVE-2023-318131İzleyin
Insecure Permissions in Splashtop Software Updater
YüksekCVSS 7,8İstismar yokEPSS %0splashtop · mirroring360 receiver25 Oca 2024
- CVE-2023-3724331İzleyin
The C:\Windows\Temp\Agent.Package.Availability\Agent.Package.Availability.exe file is automatically launched as SYSTEM when the system reboo
YüksekCVSS 7,8İstismar yokEPSS %0atera · agent package availability31 Eki 2023
- CVE-2026-4219131İzleyin
OpenTelemetry.Exporter.OpenTelemetryProtocol: Disk retry default temp path enables local blob injection for OTLP Exporter
YüksekCVSS 7,8İstismar yokEPSS %0opentelemetry · opentelemetry.exporter.opentelemetryprotocol12 May 2026
- CVE-2021-4070830İzleyin
Adobe Genuine Service Installer Privilege Escalation Vulnerability
YüksekCVSS 7,3İstismar yokEPSS %2adobe · genuine service29 Eyl 2021
- CVE-2022-2395030İzleyin
In Keylime before 6.3.0, Revocation Notifier uses a fixed /tmp path for UNIX domain socket which can allow unprivileged users a method to pr
YüksekCVSS 7,5İstismar yokEPSS %2keylime · keylime21 Eyl 2022
- CVE-2026-1255530İzleyin
HP Easy Start for macOS - Security Update
YüksekCVSS 7,7İstismar yokEPSS %0hp inc · hp easy start for macos24 Ağu 2026
- CVE-2025-2117329İzleyin
.NET Elevation of Privilege Vulnerability
YüksekCVSS 7,3İstismar yokEPSS %1microsoft · visual studio 202214 Oca 2025
- CVE-2021-3600229İzleyin
Adobe Captivate Installer Creation of Temporary File In Directory With Incorrect Permissions Could Lead To Privilege Escalation
YüksekCVSS 7,3İstismar yokEPSS %1adobe · captivate1 Eyl 2021
- CVE-2021-2861329İzleyin
Adobe Creative Cloud Arbitrary File Overwrite Vulnerability
YüksekCVSS 7,4İstismar yokEPSS %0adobe · creative cloud desktop application27 Eyl 2021
- CVE-2026-8502829İzleyin
Creation of Temporary File in Directory with Insecure Permissions in AWS FPGA Development Kit
YüksekCVSS 7,3İstismar yokEPSS %0aws · aws-fpga3 Eyl 2026
- CVE-2026-5432829İzleyin
Pi: Predictable temporary extension install paths allow local privilege escalation on shared Linux hosts
YüksekCVSS 7,3İstismar yokEPSS %0earendil-works · pi23 Haz 2026
- CVE-2024-756229İzleyin
A potential elevated privilege issue has been reported with InstallShield built Standalone MSI setups having multiple InstallScript custom a
YüksekCVSS 7,3İstismar yokEPSS %0revenera · installshield12 Haz 2025