Vulnerabilities > Uncontrolled Search Path Element

DATE CVE VULNERABILITY TITLE RISK
2021-11-10 CVE-2021-31853 Uncontrolled Search Path Element vulnerability in Mcafee Drive Encryption
DLL Search Order Hijacking Vulnerability in McAfee Drive Encryption (MDE) prior to 7.3.0 HF2 (7.3.0.183) allows local users to execute arbitrary code and escalate privileges via execution from a compromised folder.
local
low complexity
mcafee CWE-427
7.8
2021-11-03 CVE-2021-38416 Uncontrolled Search Path Element vulnerability in Deltaww Dialink 1.2.4.0
Delta Electronics DIALink versions 1.2.4.0 and prior insecurely loads libraries, which may allow an attacker to use DLL hijacking and takeover the system where the software is installed.
local
low complexity
deltaww CWE-427
7.8
2021-10-29 CVE-2021-22037 Uncontrolled Search Path Element vulnerability in VMWare Installbuilder
Under certain circumstances, when manipulating the Windows registry, InstallBuilder uses the reg.exe system command.
local
low complexity
vmware CWE-427
7.8
2021-10-22 CVE-2021-30359 Uncontrolled Search Path Element vulnerability in Checkpoint Harmony Browse and Sandblast Agent for Browsers
The Harmony Browse and the SandBlast Agent for Browsers installers must have admin privileges to execute some steps during the installation.
local
low complexity
checkpoint CWE-427
7.8
2021-10-22 CVE-2021-38469 Uncontrolled Search Path Element vulnerability in Auvesy Versiondog
Many of the services used by the affected product do not specify full paths for the DLLs they are loading.
local
low complexity
auvesy CWE-427
7.1
2021-10-21 CVE-2021-42101 Uncontrolled Search Path Element vulnerability in Trendmicro Apex ONE 2019
An uncontrolled search path element vulnerabilities in Trend Micro Apex One and Apex One as a Service could allow a local attacker to escalate privileges on affected installations.
local
low complexity
trendmicro CWE-427
7.8
2021-10-21 CVE-2021-42102 Uncontrolled Search Path Element vulnerability in Trendmicro Apex ONE 2019
An uncontrolled search path element vulnerabilities in Trend Micro Apex One and Apex One as a Service agents could allow a local attacker to escalate privileges on affected installations.
local
low complexity
trendmicro CWE-427
7.8
2021-10-21 CVE-2021-42103 Uncontrolled Search Path Element vulnerability in Trendmicro Apex ONE 2019
An uncontrolled search path element vulnerabilities in Trend Micro Apex One and Apex One as a Service could allow a local attacker to escalate privileges on affected installations.
local
low complexity
trendmicro CWE-427
7.8
2021-09-29 CVE-2021-35982 Uncontrolled Search Path Element vulnerability in Adobe Acrobat DC and Acrobat Reader DC
Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by an Uncontrolled Search Path Element vulnerability.
local
low complexity
adobe CWE-427
7.3
2021-09-29 CVE-2021-32466 Uncontrolled Search Path Element vulnerability in Trendmicro Housecall for Home Networks
An uncontrolled search path element privilege escalation vulnerability in Trend Micro HouseCall for Home Networks version 5.3.1225 and below could allow an attacker to escalate privileges by placing a custom crafted file in a specific directory to load a malicious library.
local
high complexity
trendmicro CWE-427
7.0