Vulnerabilities > Unquoted Search Path or Element

DATE CVE VULNERABILITY TITLE RISK
2024-01-08 CVE-2023-6631 Unquoted Search Path or Element vulnerability in Subnet Powersystem Center 2020
PowerSYSTEM Center versions 2020 Update 16 and prior contain a vulnerability that may allow an authorized local user to insert arbitrary code into the unquoted service path and escalate privileges.
local
low complexity
subnet CWE-428
7.8
2023-11-14 CVE-2023-25075 Unquoted Search Path or Element vulnerability in Intel Server Configuration Utility 16.0.7/16.0.8
Unquoted search path in the installer for some Intel Server Configuration Utility software before version 16.0.9 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-428
7.8
2023-11-14 CVE-2023-29165 Unquoted Search Path or Element vulnerability in Intel ARC a Graphics and Iris XE Graphics
Unquoted search path or element in some Intel(R) Arc(TM) Control software before version 1.73.5335.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-428
7.3
2023-11-14 CVE-2023-32658 Unquoted Search Path or Element vulnerability in Intel Hdmi Firmware
Unquoted search path in some Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software before version 1.79.1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-428
7.3
2023-11-08 CVE-2023-0392 Unquoted Search Path or Element vulnerability in Okta Ldap Agent
The LDAP Agent Update service with versions prior to 5.18 used an unquoted path, which could allow arbitrary code execution.
local
low complexity
okta CWE-428
6.7
2023-10-23 CVE-2021-26735 Unquoted Search Path or Element vulnerability in Zscaler Client Connector
The Zscaler Client Connector Installer and Unsintallers for Windows prior to 3.6 had an unquoted search path vulnerability.
local
low complexity
zscaler CWE-428
7.8
2023-10-17 CVE-2023-37537 Unquoted Search Path or Element vulnerability in Hcltech Appscan Presence
An unquoted service path vulnerability in HCL AppScan Presence, deployed as a Windows service in HCL AppScan on Cloud (ASoC), may allow a local attacker to gain elevated privileges.
local
low complexity
hcltech CWE-428
7.8
2023-09-27 CVE-2023-42486 Unquoted Search Path or Element vulnerability in Fortect
Fortect - CWE-428: Unquoted Search Path or Element, may be used by local user to elevate privileges.
local
low complexity
fortect CWE-428
7.8
2023-09-16 CVE-2023-5012 Unquoted Search Path or Element vulnerability in Topazevolution OFD 2.11.0.201
A vulnerability, which was classified as problematic, was found in Topaz OFD 2.11.0.201.
local
low complexity
topazevolution CWE-428
7.8
2023-09-15 CVE-2023-4991 Unquoted Search Path or Element vulnerability in Quescom Nextbx Qwalerter 4.50
A vulnerability was found in NextBX QWAlerter 4.50.
local
low complexity
quescom CWE-428
7.8