Vulnerabilities > Uncontrolled Search Path Element

DATE CVE VULNERABILITY TITLE RISK
2021-04-19 CVE-2021-21070 Uncontrolled Search Path Element vulnerability in Adobe Robohelp
Adobe Robohelp version 2020.0.3 (and earlier) is affected by an uncontrolled search path element vulnerability that could lead to privilege escalation.
local
low complexity
adobe CWE-427
6.5
2021-04-16 CVE-2020-9681 Uncontrolled Search Path Element vulnerability in Adobe Genuine Service
Adobe Genuine Service version 6.6 (and earlier) is affected by an Uncontrolled Search Path element vulnerability.
local
low complexity
adobe CWE-427
6.5
2021-04-16 CVE-2020-9667 Uncontrolled Search Path Element vulnerability in Adobe Genuine Service
Adobe Genuine Service version 6.6 (and earlier) is affected by an Uncontrolled Search Path element vulnerability.
local
low complexity
adobe CWE-427
6.5
2021-04-13 CVE-2021-28647 Uncontrolled Search Path Element vulnerability in Trendmicro Password Manager 5.0/5.0.0.1076/5.0.0.1081
Trend Micro Password Manager version 5 (Consumer) is vulnerable to a DLL Hijacking vulnerability which could allow an attacker to inject a malicious DLL file during the installation progress and could execute a malicious program each time a user installs a program.
local
low complexity
trendmicro CWE-427
7.8
2021-04-12 CVE-2021-21545 Uncontrolled Search Path Element vulnerability in Dell Peripheral Manager
Dell Peripheral Manager 1.3.1 or greater contains remediation for a local privilege escalation vulnerability that could be potentially exploited to gain arbitrary code execution on the system with privileges of the system user.
local
low complexity
dell CWE-427
7.8
2021-04-08 CVE-2021-1386 Uncontrolled Search Path Element vulnerability in Cisco products
A vulnerability in the dynamic link library (DLL) loading mechanism in Cisco Advanced Malware Protection (AMP) for Endpoints Windows Connector, ClamAV for Windows, and Immunet could allow an authenticated, local attacker to perform a DLL hijacking attack on an affected Windows system.
local
low complexity
cisco CWE-427
7.8
2021-04-01 CVE-2021-22195 Uncontrolled Search Path Element vulnerability in Gitlab Gitlab-Vscode-Extension
Client side code execution in gitlab-vscode-extension v3.15.0 and earlier allows attacker to execute code on user system
local
low complexity
gitlab CWE-427
7.8
2021-03-25 CVE-2020-6790 Uncontrolled Search Path Element vulnerability in Bosch Video Streaming Gateway
Calling an executable through an Uncontrolled Search Path Element in the Bosch Video Streaming Gateway installer up to and including version 6.45.10 potentially allows an attacker to execute arbitrary code on a victim's system.
local
low complexity
bosch CWE-427
7.8
2021-03-25 CVE-2020-6789 Uncontrolled Search Path Element vulnerability in Bosch Monitor Wall 10.00.0164
Loading a DLL through an Uncontrolled Search Path Element in the Bosch Monitor Wall installer up to and including version 10.00.0164 potentially allows an attacker to execute arbitrary code on a victim's system.
local
low complexity
bosch CWE-427
7.8
2021-03-25 CVE-2020-6788 Uncontrolled Search Path Element vulnerability in Bosch Configuration Manager
Loading a DLL through an Uncontrolled Search Path Element in the Bosch Configuration Manager installer up to and including version 7.21.0078 potentially allows an attacker to execute arbitrary code on a victim's system.
local
low complexity
bosch CWE-427
7.8