Vulnerabilities > Uncontrolled Search Path Element

DATE CVE VULNERABILITY TITLE RISK
2024-09-10 CVE-2024-44107 Uncontrolled Search Path Element vulnerability in Ivanti Workspace Control
DLL hijacking in the management console of Ivanti Workspace Control version 10.18.0.0 and below allows a local authenticated attacker to escalate their privileges and achieve arbitrary code execution.
local
low complexity
ivanti CWE-427
7.8
2024-09-10 CVE-2024-8441 Uncontrolled Search Path Element vulnerability in Ivanti Endpoint Manager
An uncontrolled search path in the agent of Ivanti EPM before 2022 SU6, or the 2024 September update allows a local authenticated attacker with admin privileges to escalate their privileges to SYSTEM.
local
low complexity
ivanti CWE-427
6.7
2024-09-04 CVE-2024-7834 Uncontrolled Search Path Element vulnerability in Overwolf
A local privilege escalation is caused by Overwolf loading and executing certain dynamic link library files from a user-writeable folder in SYSTEM context on launch.
local
low complexity
overwolf CWE-427
7.8
2024-08-29 CVE-2024-34017 Uncontrolled Search Path Element vulnerability in Acronis Snap Deploy 6
Local privilege escalation due to DLL hijacking vulnerability.
local
low complexity
acronis CWE-427
7.3
2024-08-29 CVE-2024-34019 Uncontrolled Search Path Element vulnerability in Acronis Snap Deploy 6
Local privilege escalation due to DLL hijacking vulnerability.
local
low complexity
acronis CWE-427
7.3
2024-08-21 CVE-2024-5929 Uncontrolled Search Path Element vulnerability in Vipre Advanced Security 12.0.1.214
VIPRE Advanced Security PMAgent Uncontrolled Search Path Element Local Privilege Escalation Vulnerability.
local
low complexity
vipre CWE-427
7.8
2024-08-14 CVE-2024-23489 Uncontrolled Search Path Element vulnerability in Intel Virtual Raid on CPU 8.0.0.4035
Uncontrolled search path for some Intel(R) VROC software before version 8.6.0.1191 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.3
2024-08-14 CVE-2024-23491 Uncontrolled Search Path Element vulnerability in Intel Distribution for GDB and Oneapi Base Toolkit
Uncontrolled search path in some Intel(R) Distribution for GDB software before version 2024.0.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.3
2024-08-14 CVE-2024-23907 Uncontrolled Search Path Element vulnerability in Intel products
Uncontrolled search path in some Intel(R) High Level Synthesis Compiler software before version 23.4 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2024-08-14 CVE-2024-23909 Uncontrolled Search Path Element vulnerability in Intel Field Programmable Gate Array Software Development KIT for Opencl
Uncontrolled search path in some Intel(R) FPGA SDK for OpenCL(TM) software technology may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8