Vulnerabilities > Uncontrolled Search Path Element

DATE CVE VULNERABILITY TITLE RISK
2017-11-06 CVE-2017-14029 Uncontrolled Search Path Element vulnerability in Trihedral Vtscada
An Uncontrolled Search Path Element issue was discovered in Trihedral VTScada 11.3.03 and prior.
network
trihedral CWE-427
critical
9.3
2017-10-19 CVE-2017-14017 Uncontrolled Search Path Element vulnerability in Progea Movicon 11.4/11.4.1150/11.5.1181
An Uncontrolled Search Path Element issue was discovered in Progea Movicon Version 11.5.1181 and prior.
local
low complexity
progea CWE-427
4.6
2017-10-19 CVE-2017-12579 Uncontrolled Search Path Element vulnerability in Hashicorp Vagrant VMWare Fusion
An insecure suid wrapper binary in the HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 4.0.24 and earlier allows a non-root user to obtain a root shell.
local
low complexity
hashicorp CWE-427
7.2
2017-10-05 CVE-2017-12266 Uncontrolled Search Path Element vulnerability in Cisco Meeting APP
A vulnerability in the routine that loads DLL files in Cisco Meeting App for Windows could allow an authenticated, local attacker to run an executable file with privileges equivalent to those of Cisco Meeting App.
local
low complexity
cisco CWE-427
4.6
2017-10-05 CVE-2017-13993 Uncontrolled Search Path Element vulnerability in I-Sens Smartlog Diabetes Management Software
An Uncontrolled Search Path or Element issue was discovered in i-SENS SmartLog Diabetes Management Software, Version 2.4.0 and prior versions.
network
i-sens CWE-427
critical
9.3
2017-09-09 CVE-2017-5147 Uncontrolled Search Path Element vulnerability in Azeotech Daqfactory
An Uncontrolled Search Path Element issue was discovered in AzeoTech DAQFactory versions prior to 17.1.
local
low complexity
azeotech CWE-427
4.6
2017-08-30 CVE-2017-12717 Uncontrolled Search Path Element vulnerability in Advantech Webaccess
An Uncontrolled Search Path Element issue was discovered in Advantech WebAccess versions prior to V8.2_20170817.
network
advantech CWE-427
6.8
2017-08-29 CVE-2014-8393 Uncontrolled Search Path Element vulnerability in Corel products
DLL Hijacking vulnerability in CorelDRAW X7, Corel Photo-Paint X7, Corel PaintShop Pro X7, Corel Painter 2015, and Corel PDF Fusion.
local
low complexity
corel CWE-427
4.6
2017-08-23 CVE-2017-13130 Uncontrolled Search Path Element vulnerability in BMC Patrol
mcmnm in BMC Patrol allows local users to gain privileges via a crafted libmcmclnx.so file in the current working directory, because it is setuid root and the RPATH variable begins with the .: substring.
local
low complexity
bmc CWE-427
7.2
2017-08-21 CVE-2017-6329 Uncontrolled Search Path Element vulnerability in Symantec VIP Access FOR Desktop
Symantec VIP Access for Desktop prior to 2.2.4 can be susceptible to a DLL Pre-Loading vulnerability.
local
low complexity
symantec CWE-427
4.6