VYPR

CWE-427

Uncontrolled Search Path Element

BaseDraft

Description

The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-38 · CAPEC-471

CVEs mapped to this weakness (1,213)

page 24 of 61
  • CVE-2020-13177HigAug 11, 2020
    risk 0.51cvss 7.8epss 0.00

    The support bundler in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows versions prior to 20.04.1 and 20.07.0 does not use hard coded paths for certain Windows binaries, which allows an attacker to gain elevated privileges via execution of a malicious…

  • CVE-2020-15657HigAug 10, 2020
    risk 0.51cvss 7.8epss 0.00

    Firefox could be made to load attacker-supplied DLL files from the installation directory. This required an attacker that is already capable of placing files in the installation directory. *Note: This issue only affected Windows operating systems. Other operating systems are…

  • CVE-2020-16143HigJul 29, 2020
    risk 0.51cvss 7.8epss 0.00

    The seafile-client client 7.0.8 for Seafile is vulnerable to DLL hijacking because it loads exchndl.dll from the current working directory.

  • CVE-2020-10610HigJul 24, 2020
    risk 0.51cvss 7.8epss 0.00

    In OSIsoft PI System multiple products and versions, a local attacker can modify a search path and plant a binary to exploit the affected PI System software to take control of the local computer at Windows system privilege level, resulting in unauthorized information disclosure,…

  • CVE-2020-15724HigJul 21, 2020
    risk 0.51cvss 7.8epss 0.01

    In the version 12.1.0.1005 and below of 360 Total Security, when the Gamefolde calls GameChrome.exe, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hijacking to bypass the hips could execute arbitrary code on the Local system.

  • CVE-2020-15723HigJul 21, 2020
    risk 0.51cvss 7.8epss 0.00

    In the version 12.1.0.1004 and below of 360 Total Security, when the main process of 360 Total Security calls GameChrome.exe, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hijacking to bypass the hips could execute arbitrary code on…

  • CVE-2020-15722HigJul 21, 2020
    risk 0.51cvss 7.8epss 0.00

    In version 12.1.0.1004 and below of 360 Total Security,when TPI calls the browser process, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hijacking could execute arbitrary code on the Local system.

  • CVE-2020-12423HigJul 9, 2020
    risk 0.51cvss 7.8epss 0.00

    When the Windows DLL "webauthn.dll" was missing from the Operating System, and a malicious one was placed in a folder in the user's %PATH%, Firefox may have loaded the DLL, leading to arbitrary code execution. *Note: This issue only affects the Windows operating system; other…

  • CVE-2020-9100HigJul 6, 2020
    risk 0.51cvss 7.8epss 0.00

    Earlier than HiSuite 10.1.0.500 have a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this DLL file of the attacker's choosing.

  • CVE-2019-20419HigJul 3, 2020
    risk 0.51cvss 7.8epss 0.01

    Affected versions of Atlassian Jira Server and Data Center allow remote attackers to execute arbitrary code via a DLL hijacking vulnerability in Tomcat. The affected versions are before version 8.5.5, and from version 8.6.0 before 8.7.2.

  • CVE-2020-11613HigJun 11, 2020
    risk 0.51cvss 7.8epss 0.00

    Mids' Reborn Hero Designer 2.6.0.7 has an elevation of privilege vulnerability due to default and insecure permissions being set for the installation folder. By default, the Authenticated Users group has Modify permissions to the installation folder. Because of this, any user on…

  • CVE-2020-7585HigJun 10, 2020
    risk 0.51cvss 7.8epss 0.00

    A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3), SIMATIC PDM (All versions < V9.2), SIMATIC STEP 7 V5.X (All versions < V5.6 SP2 HF3), SINAMICS STARTER (containing STEP 7 OEM version) (All…

  • CVE-2020-9858HigJun 9, 2020
    risk 0.51cvss 7.8epss 0.00

    A dynamic library loading issue was addressed with improved path searching. This issue is fixed in Windows Migration Assistant 2.2.0.0 (v. 1A11). Running the installer in an untrusted directory may result in arbitrary code execution.

  • CVE-2020-13110HigMay 16, 2020
    risk 0.51cvss 7.8epss 0.01

    The kerberos package before 1.0.0 for Node.js allows arbitrary code execution and privilege escalation via injection of malicious DLLs through use of the kerberos_sspi LoadLibrary() method, because of a DLL path search.

  • CVE-2020-10626HigMay 14, 2020
    risk 0.51cvss 7.8epss 0.01

    In Fazecast jSerialComm, Version 2.2.2 and prior, an uncontrolled search path element vulnerability could allow a malicious DLL file with the same name of any resident DLLs inside the software installation to execute arbitrary code.

  • CVE-2020-6244HigMay 12, 2020
    risk 0.51cvss 7.8epss 0.00

    SAP Business Client, version 7.0, allows an attacker after a successful social engineering attack to inject malicious code as a DLL file in untrusted directories that can be executed by the application, due to uncontrolled search path element. An attacker could thereby control…

  • CVE-2019-20781HigApr 29, 2020
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered in LG Bridge before April 2019 on Windows. DLL Hijacking can occur.

  • CVE-2020-5740HigApr 22, 2020
    risk 0.51cvss 7.8epss 0.01

    Improper Input Validation in Plex Media Server on Windows allows a local, unauthenticated attacker to execute arbitrary Python code with SYSTEM privileges.

  • CVE-2020-8895HigApr 21, 2020
    risk 0.51cvss 7.8epss 0.00

    Untrusted Search Path vulnerability in the windows installer of Google Earth Pro versions prior to 7.3.3 allows an attacker to insert malicious local files to execute unauthenticated remote code on the targeted system.

  • CVE-2019-20769HigApr 17, 2020
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered in LG PC Suite for LG G3 and earlier (aka LG PC Suite v5.3.27 and earlier). DLL Hijacking can occur via a Trojan horse DLL in the current working directory. The LG ID is LVE-MOT-190001 (November 2019).