Vulnerabilities > Uncontrolled Search Path Element

DATE CVE VULNERABILITY TITLE RISK
2024-10-11 CVE-2024-4132 Uncontrolled Search Path Element vulnerability in Lenovo Lock Screen
A DLL hijack vulnerability was reported in Lenovo Lock Screen that could allow a local attacker to execute code with elevated privileges.
local
low complexity
lenovo CWE-427
7.8
2024-10-11 CVE-2024-9046 Uncontrolled Search Path Element vulnerability in Lenovo Starstudio
A DLL hijack vulnerability was reported in Lenovo stARstudio that could allow a local attacker to execute code with elevated privileges.
local
low complexity
lenovo CWE-427
7.8
2024-10-08 CVE-2024-47194 Uncontrolled Search Path Element vulnerability in Siemens Modelsim and Questa
A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3).
local
low complexity
siemens CWE-427
7.3
2024-10-08 CVE-2024-47195 Uncontrolled Search Path Element vulnerability in Siemens Modelsim and Questa
A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3).
local
low complexity
siemens CWE-427
7.3
2024-10-08 CVE-2024-47196 Uncontrolled Search Path Element vulnerability in Siemens Modelsim and Questa
A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3).
local
low complexity
siemens CWE-427
7.3
2024-09-17 CVE-2024-44168 Uncontrolled Search Path Element vulnerability in Apple Macos
A library injection issue was addressed with additional restrictions.
local
low complexity
apple CWE-427
5.5
2024-09-16 CVE-2024-34153 Uncontrolled Search Path Element vulnerability in Intel Raid web Console
Uncontrolled search path element in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2024-09-16 CVE-2024-39613 Uncontrolled Search Path Element vulnerability in Mattermost Desktop
Mattermost Desktop App versions <=5.8.0 fail to specify an absolute path when searching the cmd.exe file, which allows a local attacker who is able to put an cmd.exe file in the Downloads folder of a user's machine to cause remote code execution on that machine.
local
low complexity
mattermost CWE-427
7.8
2024-09-12 CVE-2024-20430 Uncontrolled Search Path Element vulnerability in Cisco Meraki Systems Manager
A vulnerability in Cisco Meraki Systems Manager (SM) Agent for Windows could allow an authenticated, local attacker to execute arbitrary code with elevated privileges.&nbsp; This vulnerability is due to incorrect handling of directory search paths at runtime.
local
low complexity
cisco CWE-427
7.3
2024-09-12 CVE-2024-6510 Uncontrolled Search Path Element vulnerability in AVG Internet Security
Local Privilege Escalation in AVG Internet Security v24 on Windows allows a local unprivileged user to escalate privileges to SYSTEM via COM-Hijacking.
local
low complexity
avg CWE-427
7.8