Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2019-03-21 CVE-2019-6724 Untrusted Search Path vulnerability in Barracuda VPN Client 5.0/5.0.2.5
The barracudavpn component of the Barracuda VPN Client prior to version 5.0.2.7 for Linux, macOS, and OpenBSD runs as a privileged process and can allow an unprivileged local attacker to load a malicious library, resulting in arbitrary code executing as root.
local
low complexity
barracuda CWE-426
7.8
2019-03-12 CVE-2019-5922 Untrusted Search Path vulnerability in Microsoft Teams
Untrusted search path vulnerability in The installer of Microsoft Teams allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
microsoft CWE-426
7.8
2019-03-12 CVE-2019-5921 Untrusted Search Path vulnerability in Microsoft Windows 7
Untrusted search path vulnerability in Windows 7 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
microsoft CWE-426
7.8
2019-02-13 CVE-2019-5913 Untrusted Search Path vulnerability in Micco Lhmelting
Untrusted search path vulnerability in the installer of LHMelting (LHMelting for Win32 Ver 1.65.3.6 and earlier) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
micco CWE-426
7.8
2019-02-13 CVE-2019-5912 Untrusted Search Path vulnerability in Micco Unarj32.Dll
Untrusted search path vulnerability in the installer of UNARJ32.DLL (UNARJ32.DLL for Win32 Ver 1.10.1.25 and earlier) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
micco CWE-426
7.8
2019-02-13 CVE-2019-5911 Untrusted Search Path vulnerability in Micco Unlha32.Dll
Untrusted search path vulnerability in the installer of UNLHA32.DLL (UNLHA32.DLL for Win32 Ver 2.67.1.2 and earlier) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
micco CWE-426
7.8
2019-02-13 CVE-2018-16190 Untrusted Search Path vulnerability in Micco products
Untrusted search path vulnerability in UNARJ32.DLL for Win32, LHMelting for Win32, and LMLzh32.DLL (UNARJ32.DLL for Win32 Ver 1.10.1.25 and earlier, LHMelting for Win32 Ver 1.65.3.6 and earlier, LMLzh32.DLL Ver 2.67.1.2 and earlier) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
micco CWE-426
7.8
2019-02-13 CVE-2018-16189 Untrusted Search Path vulnerability in Micco Unlha32.Dll
Untrusted search path vulnerability in Self-Extracting Archives created by UNLHA32.DLL prior to Ver 3.00 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
micco CWE-426
7.8
2019-02-08 CVE-2018-18364 Untrusted Search Path vulnerability in Symantec Ghost Solution Suite
Symantec Ghost Solution Suite (GSS) versions prior to 3.3 RU1 may be susceptible to a DLL hijacking vulnerability, which is a type of issue whereby a potential attacker attempts to execute unexpected code on your machine.
local
low complexity
symantec CWE-426
7.3
2019-02-05 CVE-2018-18333 Untrusted Search Path vulnerability in Trendmicro products
A DLL hijacking vulnerability in Trend Micro Security 2019 (Consumer) versions below 15.0.0.1163 and below could allow an attacker to manipulate a specific DLL and escalate privileges on vulnerable installations.
local
low complexity
trendmicro CWE-426
7.8