Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2018-07-26 CVE-2018-0619 Untrusted Search Path vulnerability in Glarysoft Glary Utilities 5.99
Untrusted search path vulnerability in the installer of Glarysoft Glary Utilities (Glary Utilities 5.99 and earlier and Glary Utilities Pro 5.99 and earlier) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
glarysoft CWE-426
7.8
2018-07-13 CVE-2018-10875 Untrusted Search Path vulnerability in multiple products
A flaw was found in ansible.
local
low complexity
redhat debian suse canonical CWE-426
7.8
2018-07-10 CVE-2018-1487 Untrusted Search Path vulnerability in IBM DB2
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5 and 11.1 binaries load shared libraries from an untrusted path potentially giving low privilege users full access to the DB2 instance account by loading a malicious shared library.
local
low complexity
ibm CWE-426
7.8
2018-07-10 CVE-2018-1458 Untrusted Search Path vulnerability in IBM DB2
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10,1, 10.5 and 11.1 could allow a local user to execute arbitrary code and conduct DLL hijacking attacks.
local
low complexity
ibm CWE-426
7.8
2018-07-04 CVE-2018-13133 Untrusted Search Path vulnerability in Goldenfrog Vyprvpn
Golden Frog VyprVPN before 2018-06-21 has a vulnerability associated with the installation process on Windows.
local
low complexity
goldenfrog CWE-426
7.8
2018-07-03 CVE-2018-13102 Untrusted Search Path vulnerability in Anydesk
AnyDesk before "12.06.2018 - 4.1.3" on Windows 7 SP1 has a DLL preloading vulnerability.
local
low complexity
anydesk CWE-426
7.8
2018-06-28 CVE-2018-12589 Untrusted Search Path vulnerability in Polarisoffice Polaris Office 2017 8.1
Polaris Office 2017 8.1 allows attackers to execute arbitrary code via a Trojan horse puiframeworkproresenu.dll file in the current working directory.
local
low complexity
polarisoffice CWE-426
7.8
2018-06-26 CVE-2018-0609 Untrusted Search Path vulnerability in Linecorp Line 4.3.0.724/4.7.0/4.8.2.1125
Untrusted search path vulnerability in LINE for Windows versions before 5.8.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
linecorp CWE-426
7.8
2018-06-26 CVE-2018-0601 Untrusted Search Path vulnerability in Axpdfium Project Axpdfium 0.01
Untrusted search path vulnerability in axpdfium v0.01 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
axpdfium-project CWE-426
7.8
2018-06-26 CVE-2018-0600 Untrusted Search Path vulnerability in Sony Playmemories Home 5.5.01
Untrusted search path vulnerability in the installer of PlayMemories Home for Windows ver.5.5.01 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sony CWE-426
7.8