Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2024-11-12 CVE-2024-49515 Untrusted Search Path vulnerability in Adobe Substance 3D Painter
Substance3D - Painter versions 10.1.0 and earlier are affected by an Untrusted Search Path vulnerability that might allow attackers to execute arbitrary code.
local
low complexity
adobe CWE-426
7.8
2024-11-12 CVE-2024-36507 Untrusted Search Path vulnerability in Fortinet Forticlient
A untrusted search path in Fortinet FortiClientWindows versions 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0 allows an attacker to run arbitrary code via DLL hijacking and social engineering.
local
low complexity
fortinet CWE-426
7.8
2024-10-09 CVE-2024-47422 Untrusted Search Path vulnerability in Adobe Framemaker
Adobe Framemaker versions 2020.6, 2022.4 and earlier are affected by an Untrusted Search Path vulnerability that could lead to arbitrary code execution.
local
low complexity
adobe CWE-426
7.8
2024-09-29 CVE-2024-9325 Untrusted Search Path vulnerability in Intelbras Incontrol web
A vulnerability classified as critical has been found in Intelbras InControl up to 2.21.56.
local
low complexity
intelbras CWE-426
7.8
2024-09-10 CVE-2024-44103 Untrusted Search Path vulnerability in Ivanti Workspace Control
DLL hijacking in the management console of Ivanti Workspace Control version 10.18.0.0 and below allows a local authenticated attacker to escalate their privileges.
local
low complexity
ivanti CWE-426
7.8
2024-09-03 CVE-2024-6473 Untrusted Search Path vulnerability in Yandex Browser
Yandex Browser for Desktop before 24.7.1.380 has a DLL Hijacking Vulnerability because an untrusted search path is used.
local
low complexity
yandex CWE-426
7.8
2024-08-29 CVE-2024-5622 Untrusted Search Path vulnerability in Br-Automation Industrial Automation Aprol
An untrusted search path vulnerability in the AprolConfigureCCServices of B&R APROL <= R 4.2.-07P3 and <= R 4.4-00P3 may allow an authenticated local attacker to execute arbitrary code with elevated privileges.
local
low complexity
br-automation CWE-426
7.8
2024-08-29 CVE-2024-5623 Untrusted Search Path vulnerability in Br-Automation Industrial Automation Aprol
An untrusted search path vulnerability in B&R APROL <= R 4.4-00P3 may be used by an authenticated local attacker to get other users to execute arbitrary code under their privileges.
local
low complexity
br-automation CWE-426
7.8
2024-08-14 CVE-2024-42439 Untrusted Search Path vulnerability in Zoom products
Untrusted search path in the installer for Zoom Workplace Desktop App for macOS and Zoom Meeting SDK for macOS before 6.1.0 may allow a privileged user to conduct an escalation of privilege via local access.
local
low complexity
zoom CWE-426
6.5
2024-08-14 CVE-2024-41865 Untrusted Search Path vulnerability in Adobe Dimension
Dimension versions 3.4.11 and earlier are affected by an Untrusted Search Path vulnerability that could lead to arbitrary code execution.
local
low complexity
adobe CWE-426
7.8