Vulnerabilities > Uncontrolled Search Path Element

DATE CVE VULNERABILITY TITLE RISK
2021-03-25 CVE-2020-6787 Uncontrolled Search Path Element vulnerability in Bosch Video Client 1.7.6.079
Loading a DLL through an Uncontrolled Search Path Element in the Bosch Video Client installer up to and including version 1.7.6.079 potentially allows an attacker to execute arbitrary code on a victim's system.
local
low complexity
bosch CWE-427
7.8
2021-03-25 CVE-2020-6786 Uncontrolled Search Path Element vulnerability in Bosch Video Recording Manager
Loading a DLL through an Uncontrolled Search Path Element in the Bosch Video Recording Manager installer up to and including version 3.82.0055 for 3.82, up to and including version 3.81.0064 for 3.81 and 3.71 and older potentially allows an attacker to execute arbitrary code on a victim's system.
local
low complexity
bosch CWE-427
7.8
2021-03-25 CVE-2020-6785 Uncontrolled Search Path Element vulnerability in Bosch products
Loading a DLL through an Uncontrolled Search Path Element in Bosch BVMS and BVMS Viewer in versions 10.1.0, 10.0.1, 10.0.0 and 9.0.0 and older potentially allows an attacker to execute arbitrary code on a victim's system.
local
low complexity
bosch CWE-427
7.8
2021-03-25 CVE-2020-6771 Uncontrolled Search Path Element vulnerability in Bosch IP Helper 1.00.0008
Loading a DLL through an Uncontrolled Search Path Element in Bosch IP Helper up to and including version 1.00.0008 potentially allows an attacker to execute arbitrary code on a victim's system.
local
low complexity
bosch CWE-427
7.8
2021-03-23 CVE-2021-28822 Uncontrolled Search Path Element vulnerability in Tibco Enterprise Message Service 8.5.1
The Enterprise Message Service Server (tibemsd), Enterprise Message Service Central Administration (tibemsca), Enterprise Message Service JSON configuration generator (tibemsconf2json), and Enterprise Message Service C API components of TIBCO Software Inc.'s TIBCO Enterprise Message Service, TIBCO Enterprise Message Service - Community Edition, and TIBCO Enterprise Message Service - Developer Edition contain a vulnerability that theoretically allows a low privileged attacker with local access on the Windows operating system to insert malicious software.
local
low complexity
tibco CWE-427
7.8
2021-03-23 CVE-2021-28820 Uncontrolled Search Path Element vulnerability in Tibco FTL
The FTL Server (tibftlserver), FTL C API, FTL Golang API, FTL Java API, and FTL .Net API components of TIBCO Software Inc.'s TIBCO FTL - Community Edition, TIBCO FTL - Developer Edition, and TIBCO FTL - Enterprise Edition contain a vulnerability that theoretically allows a low privileged attacker with local access on the Windows operating system to insert malicious software.
local
low complexity
tibco CWE-427
7.8
2021-03-22 CVE-2021-28955 Uncontrolled Search Path Element vulnerability in Git-Bug Project Git-Bug
git-bug before 0.7.2 has an Uncontrolled Search Path Element.
network
low complexity
git-bug-project CWE-427
critical
9.8
2021-03-21 CVE-2021-28954 Uncontrolled Search Path Element vulnerability in BIT Project BIT
In Chris Walz bit before 1.0.5 on Windows, attackers can run arbitrary code via a .exe file in a crafted repository.
local
low complexity
bit-project CWE-427
7.8
2021-03-21 CVE-2021-28953 Uncontrolled Search Path Element vulnerability in C/C++ Advanced Lint Project C/C++ Advanced Lint
The unofficial C/C++ Advanced Lint extension before 1.9.0 for Visual Studio Code allows attackers to execute arbitrary binaries if the user opens a crafted repository.
local
low complexity
c-c-advanced-lint-project CWE-427
7.8
2021-03-18 CVE-2020-9367 Uncontrolled Search Path Element vulnerability in Zohocorp Manageengine Desktop Central 10.0.486
The MPS Agent in Zoho ManageEngine Desktop Central MSP build MSP build 10.0.486 is vulnerable to DLL Hijacking: dcinventory.exe and dcconfig.exe try to load CSUNSAPI.dll without supplying the complete path.
local
low complexity
zohocorp CWE-427
7.8