Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2018-06-05 CVE-2018-7884 Untrusted Search Path vulnerability in Displaylink Core Software Cleaner 8.2.1956
An issue was discovered in DisplayLink Core Software Cleaner Application 8.2.1956.
local
low complexity
displaylink CWE-426
7.8
2018-06-01 CVE-2018-11551 Untrusted Search Path vulnerability in NCH Axon PBX 2.02
AXON PBX 2.02 contains a DLL hijacking vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on a targeted system.
local
low complexity
nch CWE-426
7.8
2018-05-23 CVE-2018-10650 Untrusted Search Path vulnerability in Citrix Xenmobile Server 10.7/10.8
There is an Insufficient Path Validation Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
local
low complexity
citrix CWE-426
7.8
2018-05-19 CVE-2018-4927 Untrusted Search Path vulnerability in Adobe Indesign
Adobe InDesign versions 13.0 and below have an exploitable Untrusted Search Path vulnerability.
local
low complexity
adobe CWE-426
7.8
2018-05-17 CVE-2018-10027 Untrusted Search Path vulnerability in Estsoft Alzip
ESTsoft ALZip before 10.76 allows local users to execute arbitrary code via creating a malicious .DLL file and installing it in a specific directory: %PROGRAMFILES%\ESTsoft\ALZip\Formats, %PROGRAMFILES%\ESTsoft\ALZip\Coders, %PROGRAMFILES(X86)%\ESTsoft\ALZip\Formats, or %PROGRAMFILES(X86)%\ESTsoft\ALZip\Coders.
local
low complexity
estsoft CWE-426
7.8
2018-05-14 CVE-2018-0580 Untrusted Search Path vulnerability in Celsys products
Untrusted search path vulnerability in CELSYS, Inc CLIP STUDIO series (CLIP STUDIO PAINT (for Windows) EX/PRO/DEBUT Ver.1.7.3 and earlier, CLIP STUDIO ACTION (for Windows) Ver.1.5.5 and earlier, with its timestamp prior to April 25, 2018, 12:11:31, and CLIP STUDIO MODELER (for Windows) Ver.1.6.3 and earlier, with its timestamp prior to April 25, 2018, 17:02:49) allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
celsys CWE-426
7.8
2018-04-24 CVE-2017-2802 Untrusted Search Path vulnerability in Dell Precision Optimizer 3.5.5.0
An exploitable dll hijacking vulnerability exists in the poaService.exe service component of the Dell Precision Optimizer software version 3.5.5.0.
local
low complexity
dell CWE-426
7.8
2018-04-19 CVE-2018-6306 Untrusted Search Path vulnerability in Kaspersky Password Manager
Unauthorized code execution from specific DLL and is known as DLL Hijacking attack in Kaspersky Password Manager versions before 8.0.6.538.
local
low complexity
kaspersky CWE-426
7.8
2018-04-16 CVE-2018-0562 Untrusted Search Path vulnerability in Coderium Soundengine 5.21
Untrusted search path vulnerability in Installer of SoundEngine Free ver.5.21 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
coderium CWE-426
7.8
2018-04-16 CVE-2018-0561 Untrusted Search Path vulnerability in Securebrain Phishwall 3.7.15
Untrusted search path vulnerability in The installer of PhishWall Client Internet Explorer edition Ver.
local
low complexity
securebrain CWE-426
7.8