Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-06-09 CVE-2017-2192 Untrusted Search Path vulnerability in Sharp Rw-5100 1.1.0.0/1.2.0.0
Untrusted search path vulnerability in RW-5100 tool to verify execution environment for Windows 7 version 1.1.0.0 and RW-5100 tool to verify execution environment for Windows 8.1 version 1.2.0.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sharp CWE-426
7.8
2017-06-09 CVE-2017-2191 Untrusted Search Path vulnerability in Sharp products
Untrusted search path vulnerability in RW-5100 driver installer for Windows 7 version 1.0.0.9 and RW-5100 driver installer for Windows 8.1 version 1.0.1.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sharp CWE-426
7.8
2017-06-09 CVE-2017-2190 Untrusted Search Path vulnerability in Sharp Rw-4040 1.2.0.0
Untrusted search path vulnerability in RW-4040 tool to verify execution environment for Windows 7 version 1.2.0.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sharp CWE-426
7.8
2017-06-09 CVE-2017-2189 Untrusted Search Path vulnerability in Sharp Rw-4040 2.27
Untrusted search path vulnerability in RW-4040 driver installer for Windows 7 version 2.27 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sharp CWE-426
7.8
2017-06-09 CVE-2017-2182 Unspecified vulnerability in IPA Appgoat 3.0.0/3.0.1/3.0.2
Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspecified vectors, a different vulnerability than CVE-2017-2179 and CVE-2017-2181.
network
low complexity
ipa
8.8
2017-06-09 CVE-2017-2181 Unspecified vulnerability in IPA Appgoat 3.0.0/3.0.1/3.0.2
Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspecified vectors, a different vulnerability than CVE-2017-2179 and CVE-2017-2182.
network
low complexity
ipa
8.8
2017-06-09 CVE-2017-2179 Improper Input Validation vulnerability in IPA Appgoat 3.0.0/3.0.1/3.0.2
Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allows remote code execution via unspecified vectors, a different vulnerability than CVE-2017-2181 and CVE-2017-2182.
network
low complexity
ipa CWE-20
8.8
2017-06-09 CVE-2017-2178 Untrusted Search Path vulnerability in Atla Electronic Tendering and BID Opening System
Untrusted search path vulnerability in Installer of electronic tendering and bid opening system available prior to May 25, 2017 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
network
low complexity
atla CWE-426
8.8
2017-06-09 CVE-2017-2177 Untrusted Search Path vulnerability in Shogyo Touki Denshi 1.7
Untrusted search path vulnerability in Installer of Shogyo Touki Denshi Ninsho Software Ver 1.7 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
network
low complexity
shogyo CWE-426
8.8
2017-06-09 CVE-2017-2176 Untrusted Search Path vulnerability in Jasdf Screensavers
Untrusted search path vulnerability in screensaver installers (jasdf_01.exe, jasdf_02.exe, jasdf_03.exe, jasdf_04.exe, jasdf_05.exe, scramble_setup.exe, clock_01_setup.exe, clock_02_setup.exe) available prior to May 25, 2017 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
jasdf CWE-426
7.8