Vulnerabilities > Unquoted Search Path or Element

DATE CVE VULNERABILITY TITLE RISK
2023-01-26 CVE-2022-44264 Unquoted Search Path or Element vulnerability in Dentsplysirona Sidexis 4.2/4.3
Dentsply Sirona Sidexis <= 4.3 is vulnerable to Unquoted Service Path.
local
low complexity
dentsplysirona CWE-428
7.8
2023-01-16 CVE-2022-4258 Unquoted Search Path or Element vulnerability in Hima products
In multiple versions of HIMA PC based Software an unquoted Windows search path vulnerability might allow local users to gain privileges via a malicious .exe file and gain full access to the system.
local
low complexity
hima CWE-428
7.8
2023-01-10 CVE-2022-4429 Unquoted Search Path or Element vulnerability in Avira Security 1.1.71.30554
Avira Security for Windows contains an unquoted service path which allows attackers with local administrative privileges to cause a Denial of Service. The issue was fixed with Avira Security version 1.1.78
local
low complexity
avira CWE-428
4.4
2022-12-26 CVE-2019-19705 Unquoted Search Path or Element vulnerability in Lenovo products
Realtek Audio Drivers for Windows, as used on the Lenovo ThinkPad X1 Carbon 20A7, 20A8, 20BS, and 20BT before 6.0.8882.1 and 20KH and 20KG before 6.0.8907.1 (and on many other Lenovo and non-Lenovo products), mishandles DLL preloading.
local
low complexity
lenovo CWE-428
7.8
2022-12-21 CVE-2022-46662 Unquoted Search Path or Element vulnerability in Corel Roxio Creator LJB 12.2
Roxio Creator LJB starts another program with an unquoted file path.
local
low complexity
corel CWE-428
6.7
2022-11-18 CVE-2022-37197 Unquoted Search Path or Element vulnerability in Iobit Iotransfer 4.0
IOBit IOTransfer V4 is vulnerable to Unquoted Service Path.
local
low complexity
iobit CWE-428
7.8
2022-11-11 CVE-2022-36384 Unquoted Search Path or Element vulnerability in Intel NUC KIT Wireless Adapter Driver Installer
Unquoted search path in the installer software for some Intel(r) NUC Kit Wireless Adapter drivers for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-428
7.3
2022-10-12 CVE-2022-33920 Unquoted Search Path or Element vulnerability in Dell Geodrive
Dell GeoDrive, versions prior to 2.2, contains an Unquoted File Path vulnerability.
local
low complexity
dell CWE-428
7.8
2022-10-07 CVE-2022-39959 Unquoted Search Path or Element vulnerability in Panini Everest Engine 2.0.4
Panini Everest Engine 2.0.4 allows unprivileged users to create a file named Everest.exe in the %PROGRAMDATA%\Panini folder.
local
low complexity
panini CWE-428
7.8
2022-09-13 CVE-2022-35292 Unquoted Search Path or Element vulnerability in SAP Business ONE 10.0
In SAP Business One application when a service is created, the executable path contains spaces and isn’t enclosed within quotes, leading to a vulnerability known as Unquoted Service Path which allows a user to gain SYSTEM privileges.
local
low complexity
sap CWE-428
7.8