Vulnerabilities > Uncontrolled Search Path Element

DATE CVE VULNERABILITY TITLE RISK
2022-11-11 CVE-2022-27187 Uncontrolled Search Path Element vulnerability in Intel Quartus Prime
Uncontrolled search path element in the Intel(R) Quartus Prime Standard edition software before version 21.1 Patch 0.02std may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2022-11-11 CVE-2022-27638 Uncontrolled Search Path Element vulnerability in Intel Advanced Link Analyzer
Uncontrolled search path element in the Intel(R) Advanced Link Analyzer Pro before version 22.2 and Standard edition software before version 22.1.1 STD may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2022-11-11 CVE-2022-30548 Uncontrolled Search Path Element vulnerability in Intel Glorp 1.0.0
Uncontrolled search path element in the Intel(R) Glorp software may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2022-11-11 CVE-2022-36380 Uncontrolled Search Path Element vulnerability in Intel NUC KIT Wireless Adapter Driver Installer
Uncontrolled search path in the installer software for some Intel(r) NUC Kit Wireless Adapter drivers for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.3
2022-11-09 CVE-2022-43310 Uncontrolled Search Path Element vulnerability in Foxitsoftware Foxit Reader
An Uncontrolled Search Path Element in Foxit Software released Foxit Reader v11.2.118.51569 allows attackers to escalate privileges when searching for DLL libraries without specifying an absolute path.
local
low complexity
foxitsoftware CWE-427
7.8
2022-11-08 CVE-2022-34825 Uncontrolled Search Path Element vulnerability in NEC products
Uncontrolled Search Path Element in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earlier, CLUSTERPRO X 5.0 SingleServerSafe for Windows and earlier, EXPRESSCLUSTER X 5.0 SingleServerSafe for Windows and earlier allows a remote unauthenticated attacker to overwrite existing files on the file system and to potentially execute arbitrary code.
network
low complexity
nec CWE-427
critical
9.8
2022-11-07 CVE-2022-44744 Uncontrolled Search Path Element vulnerability in Acronis Cyber Protect Home Office
Local privilege escalation due to DLL hijacking vulnerability.
local
low complexity
acronis CWE-427
7.3
2022-10-26 CVE-2022-39286 Uncontrolled Search Path Element vulnerability in multiple products
Jupyter Core is a package for the core common functionality of Jupyter projects.
network
low complexity
jupyter debian fedoraproject CWE-427
8.8
2022-10-24 CVE-2022-41796 Uncontrolled Search Path Element vulnerability in Sony Content Transfer 1.3
Untrusted search path vulnerability in the installer of Content Transfer (for Windows) Ver.1.3 and prior allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sony CWE-427
7.8
2022-10-12 CVE-2022-33921 Uncontrolled Search Path Element vulnerability in Dell Geodrive
Dell GeoDrive, versions prior to 2.2, contains Multiple DLL Hijacking Vulnerabilities.
local
low complexity
dell CWE-427
7.8