← Back
CWE-426

655 CVEs • Abstraction: Base • Likelihood of Exploit: High

Untrusted Search Path

The product searches for critical resources using an externally-supplied search path that can point to resources that are not under the product's direct control.

JSON object

Loading...

CVEs (655)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Xilisoft
1Video Converter
Nov 21, 2024
Feb 12, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
Xilisoft Video Converter Ultimate 7.8.1 build-20140505 has a DLL Hijacking vulnerability
1Umplayer Project
1Umplayer
Nov 21, 2024
Feb 12, 2020
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
A Code Execution Vulnerability exists in UMPlayer 0.98 in wintab32.dll due to insufficient path restrictions when loading external libraries. which could let a malicious user execute arbitrary code.
1Daum
1Potplayer
Nov 21, 2024
Feb 11, 2020
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Potplayer prior to 1.5.39659: DLL Loading Arbitrary Code Execution Vulnerability
1Ibm
2Sdk
Websphere Application Server
Jun 17, 2026
Feb 3, 2020
N/A· v4
6.5 MEDIUM· v3
6.9 MEDIUM· v2
IBM SDK, Java Technology Edition Version 7.0.0.0 through 7.0.10.55, 7.1.0.0 through 7.1.4.55, and 8.0.0.0 through 8.0.6.0 could allow a local authenticated attacker to execute arbitrary code on the system, caused by DLL...Show more
IBM SDK, Java Technology Edition Version 7.0.0.0 through 7.0.10.55, 7.1.0.0 through 7.1.4.55, and 8.0.0.0 through 8.0.6.0 could allow a local authenticated attacker to execute arbitrary code on the system, caused by DLL search order hijacking vulnerability in Microsoft Windows client. By placing a specially-crafted file in a compromised folder, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 172618.Show less
1Trendmicro
1Anti Threat Toolkit
Jun 17, 2026
Jan 30, 2020
N/A· v4
7.8 HIGH· v3
5.1 MEDIUM· v2
Trend Micro Anti-Threat Toolkit (ATTK) versions 1.62.0.1218 and below have a vulnerability that may allow an attacker to place malicious files in the same directory, potentially leading to arbitrary remote code execution...Show more
Trend Micro Anti-Threat Toolkit (ATTK) versions 1.62.0.1218 and below have a vulnerability that may allow an attacker to place malicious files in the same directory, potentially leading to arbitrary remote code execution (RCE) when executed. Another attack vector similar to CVE-2019-9491 was idenitfied and resolved in version 1.62.0.1228 of the tool.Show less
1Bitdefender
1Endpoint Security Tools
Jun 17, 2026
Jan 27, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions prior to 6.6.11.163 allows an attacker to load an arbitrary DLL file from the search path. This issu...Show more
An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions prior to 6.6.11.163 allows an attacker to load an arbitrary DLL file from the search path. This issue affects: Bitdefender EPSecurityService.exe versions prior to 6.6.11.163.Show less
1Bitdefender
1Total Security 2020
Jun 17, 2026
Jan 27, 2020
N/A· v4
6.5 MEDIUM· v3
4.4 MEDIUM· v2
An Untrusted Search Path vulnerability in bdserviceshost.exe as used in Bitdefender Total Security 2020 allows an attacker to execute arbitrary code. This issue does not affect: Bitdefender Total Security versions prior...Show more
An Untrusted Search Path vulnerability in bdserviceshost.exe as used in Bitdefender Total Security 2020 allows an attacker to execute arbitrary code. This issue does not affect: Bitdefender Total Security versions prior to 24.0.12.69.Show less
1Gonitro
1Nitropdf
Nov 21, 2024
Jan 14, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
Nitro PDF 8.5.0.26: A specially crafted DLL file can facilitate Arbitrary Code Execution
1Symantec
1Vip Access Desktop
Nov 21, 2024
Jan 8, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
A code-execution vulnerability exists during startup in jhi.dll and otpiha.dll in Symantec VIP Access Desktop before 2.2.2, which could let local malicious users execute arbitrary code.
1Ipa
1Stamp Workbench
Jun 17, 2026
Dec 26, 2019
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Untrusted search path vulnerability in STAMP Workbench installer all versions allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
1Malwarebytes
1Adwcleaner
Jun 17, 2026
Dec 23, 2019
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner before 8.0.1 could cause arbitrary code execution with SYSTEM privileges when a malicious DLL library is loaded by the product.
1Abb
1Pb610 Panel Builder 600
Jun 17, 2026
Dec 18, 2019
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier accept DLLs outside of the program directory, potentially allowing an attacker with access to the local file system the e...Show more
Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier accept DLLs outside of the program directory, potentially allowing an attacker with access to the local file system the execution of code in the application’s context.Show less
1Apple
2Itunes
Mac Os X
Jun 17, 2026
Dec 18, 2019
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
A dynamic library loading issue existed in iTunes setup. This was addressed with improved path searching. This issue is fixed in macOS Catalina 10.15.1, iTunes for Windows 12.10.2. Running the iTunes installer in an untr...Show more
A dynamic library loading issue existed in iTunes setup. This was addressed with improved path searching. This issue is fixed in macOS Catalina 10.15.1, iTunes for Windows 12.10.2. Running the iTunes installer in an untrusted directory may result in arbitrary code execution.Show less
1Intel
1Control Center I
Jun 17, 2026
Dec 16, 2019
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Unquoted service path in Control Center-I version 2.1.0.0 and earlier may allow an authenticated user to potentially enable escalation of privilege via local access.
1Ibm
1Db2 High Performance Unload Load
Jun 17, 2026
Dec 12, 2019
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
IBM DB2 High Performance Unload load for LUW 6.1 and 6.5 could allow a local attacker to execute arbitrary code on the system, caused by an untrusted search path vulnerability. By using a executable file, an attacker cou...Show more
IBM DB2 High Performance Unload load for LUW 6.1 and 6.5 could allow a local attacker to execute arbitrary code on the system, caused by an untrusted search path vulnerability. By using a executable file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 168298.Show less
1Trendmicro
4Antivirus + Security 2020
Internet Security 2020Maximum Security 2020+1 more
Jun 17, 2026
Dec 2, 2019
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
Trend Micro Security (Consumer) 2020 (v16.0.1221 and below) is affected by a DLL hijacking vulnerability that could allow an attacker to use a specific service as an execution and/or persistence mechanism which could exe...Show more
Trend Micro Security (Consumer) 2020 (v16.0.1221 and below) is affected by a DLL hijacking vulnerability that could allow an attacker to use a specific service as an execution and/or persistence mechanism which could execute a malicious program each time the service is started.Show less
1Eracent
1Epa Agent
Jun 17, 2026
Nov 22, 2019
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
An issue was discovered in Eracent EPA Agent through 10.2.26. The agent executable, when installed for non-root operations (scanning), can be used to start external programs with elevated permissions because of an Untrus...Show more
An issue was discovered in Eracent EPA Agent through 10.2.26. The agent executable, when installed for non-root operations (scanning), can be used to start external programs with elevated permissions because of an Untrusted Search Path.Show less
1Lenovo
1System Interface Foundation
Jun 17, 2026
Nov 20, 2019
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
A potential vulnerability was reported in Lenovo System Interface Foundation versions before v1.1.18.3 that could allow an administrative user to load an unsigned DLL.
1Code42
1Code42
Jun 17, 2026
Nov 19, 2019
N/A· v4
7.3 HIGH· v3
6.9 MEDIUM· v2
Code42 server through 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative attacker on the local server could create or modify a dynamic-link library (DLL). The Code42 service could...Show more
Code42 server through 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative attacker on the local server could create or modify a dynamic-link library (DLL). The Code42 service could then load it at runtime, and potentially execute arbitrary code at an elevated privilege on the local server.Show less
1Code42
1Code42
Jun 17, 2026
Nov 19, 2019
N/A· v4
7.3 HIGH· v3
6.9 MEDIUM· v2
Code42 app through version 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative attacker on the local machine could create or modify a dynamic-link library (DLL). The Code42 service...Show more
Code42 app through version 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative attacker on the local machine could create or modify a dynamic-link library (DLL). The Code42 service could then load it at runtime, and potentially execute arbitrary code at an elevated privilege on the local machine.Show less