Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2018-04-02 CVE-2018-6661 Untrusted Search Path vulnerability in Mcafee True KEY 3.1.9211.0/4.0.0.0/4.20
DLL Side-Loading vulnerability in Microsoft Windows Client in McAfee True Key before 4.20.110 allows local users to gain privilege elevation via not verifying a particular DLL file signature.
local
low complexity
mcafee CWE-426
7.8
2018-03-26 CVE-2018-5470 Untrusted Search Path vulnerability in Philips Intellispace Portal 8.0/9.0
Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have an unquoted search path or element vulnerability that has been identified, which may allow an authorized local user to execute arbitrary code and escalate their level of privileges.
local
low complexity
philips CWE-426
7.8
2018-03-22 CVE-2018-0552 Untrusted Search Path vulnerability in Securebrain Phishwall Client 5.1.26
Untrusted search path vulnerability in The installer of PhishWall Client Firefox and Chrome edition for Windows Ver.
local
low complexity
securebrain CWE-426
7.8
2018-03-22 CVE-2018-0540 Untrusted Search Path vulnerability in VIX Project VIX 2.21.148.0
Untrusted search path vulnerability in ViX version 2.21.148.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
vix-project CWE-426
7.8
2018-03-14 CVE-2018-1437 Untrusted Search Path vulnerability in IBM Notes
IBM Notes 8.5 and 9.0 could allow an attacker to execute arbitrary code on the system, caused by an error related to multiple untrusted search path.
local
low complexity
ibm CWE-426
7.8
2018-03-14 CVE-2018-1435 Untrusted Search Path vulnerability in IBM Notes
IBM Notes 8.5 and 9.0 is vulnerable to a DLL hijacking attack.
local
low complexity
ibm CWE-426
7.8
2018-03-09 CVE-2018-7239 Untrusted Search Path vulnerability in Schneider-Electric products
A DLL hijacking vulnerability exists in Schneider Electric's SoMove Software and associated DTM software components in all versions prior to 2.6.2 which could allow an attacker to execute arbitrary code.
local
low complexity
schneider-electric CWE-426
7.8
2018-03-09 CVE-2018-0544 Untrusted Search Path vulnerability in Woodybells Winshot
Untrusted search path vulnerability in WinShot 1.53a and earlier (Installer) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
woodybells CWE-426
7.8
2018-03-09 CVE-2018-0543 Untrusted Search Path vulnerability in Woodybells Jtrim
Untrusted search path vulnerability in Jtrim 1.53c and earlier (Installer) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
woodybells CWE-426
7.8
2018-02-26 CVE-2018-7484 Untrusted Search Path vulnerability in Purevpn 5.19.4.0
An issue was discovered in PureVPN through 5.19.4.0 on Windows.
local
low complexity
purevpn CWE-426
7.8