Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2020-01-14 CVE-2013-2773 Untrusted Search Path vulnerability in Gonitro Nitropdf 8.5.0.26
Nitro PDF 8.5.0.26: A specially crafted DLL file can facilitate Arbitrary Code Execution
local
low complexity
gonitro CWE-426
7.8
2020-01-08 CVE-2016-6593 Untrusted Search Path vulnerability in Symantec VIP Access Desktop
A code-execution vulnerability exists during startup in jhi.dll and otpiha.dll in Symantec VIP Access Desktop before 2.2.2, which could let local malicious users execute arbitrary code.
local
low complexity
symantec CWE-426
7.8
2019-12-26 CVE-2019-6019 Untrusted Search Path vulnerability in IPA Stamp Workbench
Untrusted search path vulnerability in STAMP Workbench installer all versions allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
ipa CWE-426
7.8
2019-12-23 CVE-2019-19929 Untrusted Search Path vulnerability in Malwarebytes Adwcleaner
An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner before 8.0.1 could cause arbitrary code execution with SYSTEM privileges when a malicious DLL library is loaded by the product.
local
low complexity
malwarebytes CWE-426
7.8
2019-12-18 CVE-2019-18996 Untrusted Search Path vulnerability in ABB Pb610 Panel Builder 600 1.90.0.975/2.8.0.424
Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier accept DLLs outside of the program directory, potentially allowing an attacker with access to the local file system the execution of code in the application’s context.
local
low complexity
abb CWE-426
7.8
2019-12-18 CVE-2019-8801 Untrusted Search Path vulnerability in Apple Itunes and mac OS X
A dynamic library loading issue existed in iTunes setup.
local
low complexity
apple CWE-426
7.8
2019-12-16 CVE-2019-14599 Untrusted Search Path vulnerability in Intel Control Center-I 2.1.0.0
Unquoted service path in Control Center-I version 2.1.0.0 and earlier may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-426
7.8
2019-12-12 CVE-2019-4606 Untrusted Search Path vulnerability in IBM DB2 High Performance Unload Load
IBM DB2 High Performance Unload load for LUW 6.1 and 6.5 could allow a local attacker to execute arbitrary code on the system, caused by an untrusted search path vulnerability.
local
low complexity
ibm CWE-426
7.8
2019-12-02 CVE-2019-15628 Untrusted Search Path vulnerability in Trendmicro products
Trend Micro Security (Consumer) 2020 (v16.0.1221 and below) is affected by a DLL hijacking vulnerability that could allow an attacker to use a specific service as an execution and/or persistence mechanism which could execute a malicious program each time the service is started.
local
low complexity
trendmicro CWE-426
7.8
2019-11-22 CVE-2019-17446 Untrusted Search Path vulnerability in Eracent EPA Agent 10.2.26
An issue was discovered in Eracent EPA Agent through 10.2.26.
local
low complexity
eracent CWE-426
7.8