Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2025-01-20 CVE-2024-13524 A vulnerability has been found in obsproject OBS Studio up to 30.0.2 on Windows and classified as problematic.
local
high complexity
CWE-426
4.5
2025-01-19 CVE-2025-0567 A vulnerability classified as problematic was found in Epic Games Launcher up to 17.2.1.
local
high complexity
CWE-426
4.5
2025-01-15 CVE-2024-53407 Untrusted Search Path vulnerability in Phiewer 4.1.0
In Phiewer 4.1.0, a dylib injection leads to Command Execution which allow attackers to inject dylib file potentially leading to remote control and unauthorized access to sensitive user data.
local
low complexity
phiewer CWE-426
3.3
2025-01-15 CVE-2024-55503 Untrusted Search Path vulnerability in Termius
An issue in termius before v.9.9.0 allows a local attacker to execute arbitrary code via a crafted script to the DYLD_INSERT_LIBRARIES component.
local
low complexity
termius CWE-426
3.3
2024-11-12 CVE-2024-49515 Untrusted Search Path vulnerability in Adobe Substance 3D Painter
Substance3D - Painter versions 10.1.0 and earlier are affected by an Untrusted Search Path vulnerability that might allow attackers to execute arbitrary code.
local
low complexity
adobe CWE-426
7.8
2024-11-12 CVE-2024-36507 Untrusted Search Path vulnerability in Fortinet Forticlient
A untrusted search path in Fortinet FortiClientWindows versions 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0 allows an attacker to run arbitrary code via DLL hijacking and social engineering.
local
low complexity
fortinet CWE-426
7.8
2024-11-12 CVE-2024-47906 Untrusted Search Path vulnerability in Ivanti Connect Secure and Policy Secure
Excessive binary privileges in Ivanti Connect Secure before version 22.7R2.3 (Not Applicable to 9.1Rx) and Ivanti Policy Secure before version 22.7R1.2 (Not Applicable to 9.1Rx) allows a local authenticated attacker to escalate privileges.
local
low complexity
ivanti CWE-426
7.8
2024-10-09 CVE-2024-47422 Untrusted Search Path vulnerability in Adobe Framemaker
Adobe Framemaker versions 2020.6, 2022.4 and earlier are affected by an Untrusted Search Path vulnerability that could lead to arbitrary code execution.
local
low complexity
adobe CWE-426
7.8
2024-09-29 CVE-2024-9325 Untrusted Search Path vulnerability in Intelbras Incontrol web
A vulnerability classified as critical has been found in Intelbras InControl up to 2.21.56.
local
low complexity
intelbras CWE-426
7.8
2024-09-10 CVE-2024-44103 Untrusted Search Path vulnerability in Ivanti Workspace Control
DLL hijacking in the management console of Ivanti Workspace Control version 10.18.0.0 and below allows a local authenticated attacker to escalate their privileges.
local
low complexity
ivanti CWE-426
7.8