CWE-281
Improper Preservation of Permissions
Description
The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.
Parent Weaknesses (ChildOf)
Common Consequences
Scope
Impact
Read Application Data, Modify Application Data
CVE-2002-2323Incorrect ACLs used when restoring backups from directories that use symbolic links.
CVE-2001-1515Automatic modification of permissions inherited from another file system.
CVE-2005-1920Permissions on backup file are created with defaults, possibly less secure than original file.
CVE-2001-0195File is made world-readable when being cloned.
Applicable Platforms
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now