Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2025-05-11 CVE-2025-4532 A vulnerability classified as critical has been found in Shanghai Bairui Information Technology SunloginClient 15.8.3.19819.
local
high complexity
CWE-426
7.0
2025-05-09 CVE-2025-4455 A vulnerability was found in Patch My PC Home Updater up to 5.1.3.0.
local
high complexity
CWE-426
7.0
2025-05-05 CVE-2025-4272 A vulnerability was found in Mechrevo Control Console 1.0.2.70.
local
high complexity
CWE-426
7.0
2025-04-08 CVE-2025-27743 Untrusted search path in System Center allows an authorized attacker to elevate privileges locally.
local
low complexity
CWE-426
7.8
2025-03-11 CVE-2025-27167 Untrusted Search Path vulnerability in Adobe Illustrator
Illustrator versions 29.2.1, 28.7.4 and earlier are affected by an Untrusted Search Path vulnerability that might allow attackers to execute their own programs, access unauthorized data files, or modify configuration in unexpected ways.
local
low complexity
adobe CWE-426
7.8
2025-02-27 CVE-2025-1755 Untrusted Search Path vulnerability in multiple products
MongoDB Compass may be susceptible to local privilege escalation under certain conditions potentially enabling unauthorized actions on a user's system with elevated privileges, when a crafted file is stored in C:\node_modules\.
local
low complexity
mongodb redhat CWE-426
7.8
2025-02-27 CVE-2025-1756 Untrusted Search Path vulnerability in multiple products
mongosh may be susceptible to local privilege escalation under certain conditions potentially enabling unauthorized actions on a user's system with elevated privilege, when a crafted file is stored in C:\node_modules\.
local
low complexity
mongodb redhat CWE-426
7.8
2025-01-27 CVE-2025-0732 A vulnerability, which was classified as problematic, has been found in Discord up to 1.0.9177 on Windows.
local
high complexity
CWE-426
4.5
2025-01-27 CVE-2025-0733 A vulnerability, which was classified as problematic, was found in Postman up to 11.20 on Windows.
local
high complexity
CWE-426
4.5
2025-01-24 CVE-2025-0707 A vulnerability was found in Rise Group Rise Mode Temp CPU 2.1.
local
low complexity
CWE-426
7.8