Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2020-06-04 CVE-2020-13813 Untrusted Search Path vulnerability in Foxitsoftware Foxit Studio Photo
An issue was discovered in Foxit Studio Photo before 3.6.6.922.
local
low complexity
foxitsoftware CWE-426
7.8
2020-06-04 CVE-2020-13812 Untrusted Search Path vulnerability in Foxitsoftware Foxit Studio Photo
An issue was discovered in Foxit Studio Photo before 3.6.6.922.
local
low complexity
foxitsoftware CWE-426
7.8
2020-06-01 CVE-2020-4019 Untrusted Search Path vulnerability in Atlassian Companion
The file editing functionality in the Atlassian Companion App before version 1.0.0 allows local attackers to have the app run a different executable in place of the app's cmd.exe via a untrusted search path vulnerability.
local
low complexity
atlassian CWE-426
7.8
2020-04-22 CVE-2020-7490 Untrusted Search Path vulnerability in Schneider-Electric Vijeo Designer 1.0/1.1/6.9
A CWE-426: Untrusted Search Path vulnerability exists in Vijeo Designer Basic (V1.1 HotFix 15 and prior) and Vijeo Designer (V6.9 SP9 and prior), which could cause arbitrary code execution on the system running Vijeo Basic when a malicious DLL library is loaded by the Product.
local
low complexity
schneider-electric CWE-426
7.8
2020-04-21 CVE-2020-8895 Untrusted Search Path vulnerability in Google Earth
Untrusted Search Path vulnerability in the windows installer of Google Earth Pro versions prior to 7.3.3 allows an attacker to insert malicious local files to execute unauthenticated remote code on the targeted system.
local
low complexity
google CWE-426
7.8
2020-04-17 CVE-2020-7079 Untrusted Search Path vulnerability in Autodesk Dynamo BIM 2.5.0/2.5.1
An improper signature validation vulnerability in Autodesk Dynamo BIM versions 2.5.1 and 2.5.0 may lead to code execution through maliciously crafted DLL files.
local
low complexity
autodesk CWE-426
7.8
2020-04-15 CVE-2020-0598 Untrusted Search Path vulnerability in Intel Binary Configuration Tool
Uncontrolled search path in the installer for the Intel(R) Binary Configuration Tool for Windows, all versions, may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-426
7.8
2020-04-07 CVE-2020-8096 Untrusted Search Path vulnerability in Bitdefender Antimalware Software Development KIT
Untrusted Search Path vulnerability in Bitdefender High-Level Antimalware SDK for Windows allows an attacker to load third party code from a DLL library in the search path.
local
low complexity
bitdefender CWE-426
5.3
2020-04-06 CVE-2020-11507 Untrusted Search Path vulnerability in Malwarebytes Adwcleaner 8.0.3
An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner 8.0.3 could cause arbitrary code execution with SYSTEM privileges when a malicious DLL library is loaded.
local
low complexity
malwarebytes CWE-426
7.8
2020-03-26 CVE-2020-7260 Untrusted Search Path vulnerability in Mcafee Application and Change Control
DLL Side Loading vulnerability in the installer for McAfee Application and Change Control (MACC) prior to 8.3 allows local users to execute arbitrary code via execution from a compromised folder.
local
low complexity
mcafee CWE-426
7.8