Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2018-07-04 CVE-2018-13133 Untrusted Search Path vulnerability in Goldenfrog Vyprvpn
Golden Frog VyprVPN before 2018-06-21 has a vulnerability associated with the installation process on Windows.
local
low complexity
goldenfrog CWE-426
7.8
2018-07-03 CVE-2018-13102 Untrusted Search Path vulnerability in Anydesk
AnyDesk before "12.06.2018 - 4.1.3" on Windows 7 SP1 has a DLL preloading vulnerability.
local
low complexity
anydesk CWE-426
7.8
2018-07-02 CVE-2018-10874 Untrusted Search Path vulnerability in Redhat products
In ansible it was found that inventory variables are loaded from current working directory when running ad-hoc command which are under attacker's control, allowing to run arbitrary code as a result.
local
low complexity
redhat CWE-426
7.8
2018-06-28 CVE-2018-12589 Untrusted Search Path vulnerability in Polarisoffice Polaris Office 2017 8.1
Polaris Office 2017 8.1 allows attackers to execute arbitrary code via a Trojan horse puiframeworkproresenu.dll file in the current working directory.
local
low complexity
polarisoffice CWE-426
7.8
2018-06-26 CVE-2018-0609 Untrusted Search Path vulnerability in Linecorp Line 4.3.0.724/4.7.0/4.8.2.1125
Untrusted search path vulnerability in LINE for Windows versions before 5.8.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
linecorp CWE-426
7.8
2018-06-26 CVE-2018-0601 Untrusted Search Path vulnerability in Axpdfium Project Axpdfium 0.01
Untrusted search path vulnerability in axpdfium v0.01 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
axpdfium-project CWE-426
7.8
2018-06-26 CVE-2018-0600 Untrusted Search Path vulnerability in Sony Playmemories Home 5.5.01
Untrusted search path vulnerability in the installer of PlayMemories Home for Windows ver.5.5.01 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sony CWE-426
7.8
2018-06-26 CVE-2018-0599 Untrusted Search Path vulnerability in Microsoft Windows
Untrusted search path vulnerability in the installer of Visual C++ Redistributable allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
microsoft CWE-426
7.8
2018-06-26 CVE-2018-0598 Untrusted Search Path vulnerability in Microsoft Windows
Untrusted search path vulnerability in Self-extracting archive files created by IExpress bundled with Microsoft Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
microsoft CWE-426
7.8
2018-06-26 CVE-2018-0597 Untrusted Search Path vulnerability in Microsoft Visual Studio Code
Untrusted search path vulnerability in the installer of Visual Studio Code allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
microsoft CWE-426
7.8