Vulnerabilities > Unquoted Search Path or Element

DATE CVE VULNERABILITY TITLE RISK
2022-12-26 CVE-2019-19705 Unquoted Search Path or Element vulnerability in Lenovo products
Realtek Audio Drivers for Windows, as used on the Lenovo ThinkPad X1 Carbon 20A7, 20A8, 20BS, and 20BT before 6.0.8882.1 and 20KH and 20KG before 6.0.8907.1 (and on many other Lenovo and non-Lenovo products), mishandles DLL preloading.
local
low complexity
lenovo CWE-428
7.8
2022-12-21 CVE-2022-46662 Unquoted Search Path or Element vulnerability in Corel Roxio Creator LJB 12.2
Roxio Creator LJB starts another program with an unquoted file path.
local
low complexity
corel CWE-428
6.7
2022-11-18 CVE-2022-37197 Unquoted Search Path or Element vulnerability in Iobit Iotransfer 4.0
IOBit IOTransfer V4 is vulnerable to Unquoted Service Path.
local
low complexity
iobit CWE-428
7.8
2022-11-11 CVE-2022-36384 Unquoted Search Path or Element vulnerability in Intel NUC KIT Wireless Adapter Driver Installer
Unquoted search path in the installer software for some Intel(r) NUC Kit Wireless Adapter drivers for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-428
7.3
2022-10-12 CVE-2022-33920 Unquoted Search Path or Element vulnerability in Dell Geodrive
Dell GeoDrive, versions prior to 2.2, contains an Unquoted File Path vulnerability.
local
low complexity
dell CWE-428
7.8
2022-10-07 CVE-2022-39959 Unquoted Search Path or Element vulnerability in Panini Everest Engine 2.0.4
Panini Everest Engine 2.0.4 allows unprivileged users to create a file named Everest.exe in the %PROGRAMDATA%\Panini folder.
local
low complexity
panini CWE-428
7.8
2022-09-06 CVE-2022-1697 Unquoted Search Path or Element vulnerability in Okta Active Directory Agent
Okta Active Directory Agent versions 3.8.0 through 3.11.0 installed the Okta AD Agent Update Service using an unquoted path.
local
high complexity
okta CWE-428
3.9
2022-08-16 CVE-2022-36344 Unquoted Search Path or Element vulnerability in Justsystems products
An unquoted search path vulnerability exists in 'JustSystems JUST Online Update for J-License' bundled with multiple products for corporate users as in Ichitaro through Pro5 and others.
network
low complexity
justsystems CWE-428
critical
9.8
2022-07-21 CVE-2022-35899 Unquoted Search Path or Element vulnerability in Asus Aura Ready Game Software Development KIT 1.0.0.4
There is an unquoted service path in ASUSTeK Aura Ready Game SDK service (GameSDK.exe) 1.0.0.4.
local
low complexity
asus CWE-428
7.8
2022-07-18 CVE-2016-15003 Unquoted Search Path or Element vulnerability in Filezilla-Project Filezilla Client 3.17.0
A vulnerability has been found in FileZilla Client 3.17.0.0 and classified as problematic.
local
low complexity
filezilla-project CWE-428
7.8