Vulnerabilities > Unquoted Search Path or Element

DATE CVE VULNERABILITY TITLE RISK
2022-10-07 CVE-2022-39959 Unquoted Search Path or Element vulnerability in Panini Everest Engine 2.0.4
Panini Everest Engine 2.0.4 allows unprivileged users to create a file named Everest.exe in the %PROGRAMDATA%\Panini folder.
local
low complexity
panini CWE-428
7.8
2022-09-13 CVE-2022-35292 Unquoted Search Path or Element vulnerability in SAP Business ONE 10.0
In SAP Business One application when a service is created, the executable path contains spaces and isn’t enclosed within quotes, leading to a vulnerability known as Unquoted Service Path which allows a user to gain SYSTEM privileges.
local
low complexity
sap CWE-428
7.8
2022-07-21 CVE-2022-35899 Unquoted Search Path or Element vulnerability in Asus Aura Ready Game Software Development KIT 1.0.0.4
There is an unquoted service path in ASUSTeK Aura Ready Game SDK service (GameSDK.exe) 1.0.0.4.
local
low complexity
asus CWE-428
7.8
2022-07-12 CVE-2022-31591 Unquoted Search Path or Element vulnerability in SAP Businessobjects BW Publisher Service 420/430
SAP BusinessObjects BW Publisher Service - versions 420, 430, uses a search path that contains an unquoted element.
local
low complexity
sap CWE-428
4.6
2022-06-23 CVE-2022-2147 Unquoted Search Path or Element vulnerability in Cloudflare Warp 2022.2.247.0/2022.2.95.0/2022.3.63.0
Cloudflare Warp for Windows from version 2022.2.95.0 contained an unquoted service path which enables arbitrary code execution leading to privilege escalation.
local
low complexity
cloudflare CWE-428
4.6
2022-05-20 CVE-2022-26634 Unquoted Search Path or Element vulnerability in HMA Hidemyass 5.3.5913.0
HMA VPN v5.3.5913.0 contains an unquoted service path which allows attackers to escalate privileges to the system level.
local
low complexity
hma CWE-428
7.8
2022-05-20 CVE-2022-27094 Unquoted Search Path or Element vulnerability in Sony Playmemories Home 6.0
Sony PlayMemories Home v6.0 contains an unquoted service path which allows attackers to escalate privileges to the system level.
local
low complexity
sony CWE-428
7.2
2022-05-20 CVE-2022-27095 Unquoted Search Path or Element vulnerability in Battleye 0.9
BattlEye v0.9 contains an unquoted service path which allows attackers to escalate privileges to the system level.
local
low complexity
battleye CWE-428
7.2
2022-05-20 CVE-2022-29320 Unquoted Search Path or Element vulnerability in Minitool Partition Wizard 12.0
MiniTool Partition Wizard v12.0 contains an unquoted service path which allows attackers to escalate privileges to the system level.
local
low complexity
minitool CWE-428
7.2
2022-05-18 CVE-2022-0883 Unquoted Search Path or Element vulnerability in Snowsoftware Snow License Manager
SLM has an issue with Windows Unquoted/Trusted Service Paths Security Issue.
local
low complexity
snowsoftware CWE-428
4.6