Vulnerabilities > Unquoted Search Path or Element

DATE CVE VULNERABILITY TITLE RISK
2022-07-12 CVE-2022-31591 Unquoted Search Path or Element vulnerability in SAP Businessobjects BW Publisher Service 420/430
SAP BusinessObjects BW Publisher Service - versions 420, 430, uses a search path that contains an unquoted element.
local
low complexity
sap CWE-428
4.6
2022-06-23 CVE-2022-2147 Unquoted Search Path or Element vulnerability in Cloudflare Warp 2022.2.247.0/2022.2.95.0/2022.3.63.0
Cloudflare Warp for Windows from version 2022.2.95.0 contained an unquoted service path which enables arbitrary code execution leading to privilege escalation.
local
low complexity
cloudflare CWE-428
4.6
2022-05-20 CVE-2022-26634 Unquoted Search Path or Element vulnerability in HMA Hidemyass 5.3.5913.0
HMA VPN v5.3.5913.0 contains an unquoted service path which allows attackers to escalate privileges to the system level.
local
low complexity
hma CWE-428
7.8
2022-05-20 CVE-2022-27094 Unquoted Search Path or Element vulnerability in Sony Playmemories Home 6.0
Sony PlayMemories Home v6.0 contains an unquoted service path which allows attackers to escalate privileges to the system level.
local
low complexity
sony CWE-428
7.2
2022-05-20 CVE-2022-27095 Unquoted Search Path or Element vulnerability in Battleye 0.9
BattlEye v0.9 contains an unquoted service path which allows attackers to escalate privileges to the system level.
local
low complexity
battleye CWE-428
7.2
2022-05-20 CVE-2022-29320 Unquoted Search Path or Element vulnerability in Minitool Partition Wizard 12.0
MiniTool Partition Wizard v12.0 contains an unquoted service path which allows attackers to escalate privileges to the system level.
local
low complexity
minitool CWE-428
7.2
2022-05-18 CVE-2022-0883 Unquoted Search Path or Element vulnerability in Snowsoftware Snow License Manager
SLM has an issue with Windows Unquoted/Trusted Service Paths Security Issue.
local
low complexity
snowsoftware CWE-428
4.6
2022-04-27 CVE-2022-27905 Unquoted Search Path or Element vulnerability in Controlup
In ControlUp Real-Time Agent before 8.6, an unquoted path can result in privilege escalation.
network
low complexity
controlup CWE-428
critical
9.0
2022-04-11 CVE-2022-27088 Unquoted Search Path or Element vulnerability in Ivanti DSM Remote
Ivanti DSM Remote <= 6.3.1.1862 is vulnerable to an unquoted service path allowing local users to launch processes with elevated privileges.
local
low complexity
ivanti CWE-428
4.6
2022-04-11 CVE-2022-27089 Unquoted Search Path or Element vulnerability in Fujitsu Plugfree Network 7.3.0.3
In Fujitsu PlugFree Network <= 7.3.0.3, an Unquoted service path in PFNService.exe software allows a local attacker to potentially escalate privileges to system level.
local
low complexity
fujitsu CWE-428
7.2