← Back
CWE-427

1,189 CVEs • Abstraction: Base

Uncontrolled Search Path Element

The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.

JSON object

Loading...

CVEs (1,189)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1360totalsecurity
1360 Total Security
Jun 17, 2026
Jul 21, 2020
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
In the version 12.1.0.1004 and below of 360 Total Security, when the main process of 360 Total Security calls GameChrome.exe, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hij...Show more
In the version 12.1.0.1004 and below of 360 Total Security, when the main process of 360 Total Security calls GameChrome.exe, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hijacking to bypass the hips could execute arbitrary code on the Local system.Show less
1360totalsecurity
1360 Total Security
Jun 17, 2026
Jul 21, 2020
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
In version 12.1.0.1004 and below of 360 Total Security,when TPI calls the browser process, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hijacking could execute arbitrary code...Show more
In version 12.1.0.1004 and below of 360 Total Security,when TPI calls the browser process, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hijacking could execute arbitrary code on the Local system.Show less
1Mozilla
1Firefox
Jun 17, 2026
Jul 9, 2020
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
When the Windows DLL "webauthn.dll" was missing from the Operating System, and a malicious one was placed in a folder in the user's %PATH%, Firefox may have loaded the DLL, leading to arbitrary code execution. *Note: Thi...Show more
When the Windows DLL "webauthn.dll" was missing from the Operating System, and a malicious one was placed in a folder in the user's %PATH%, Firefox may have loaded the DLL, leading to arbitrary code execution. *Note: This issue only affects the Windows operating system; other operating systems are unaffected.* This vulnerability affects Firefox < 78.Show less
1Huawei
1Hisuite
Jun 17, 2026
Jul 6, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
Earlier than HiSuite 10.1.0.500 have a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this DLL file of the attacker's choosi...Show more
Earlier than HiSuite 10.1.0.500 have a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this DLL file of the attacker's choosing.Show less
2Netapp
Python
2Python
Snapcenter
Jun 17, 2026
Jul 4, 2020
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
In Python 3.6 through 3.6.10, 3.7 through 3.7.8, 3.8 through 3.8.4rc1, and 3.9 through 3.9.0b4 on Windows, a Trojan horse python3.dll might be used in cases where CPython is embedded in a native application. This occurs...Show more
In Python 3.6 through 3.6.10, 3.7 through 3.7.8, 3.8 through 3.8.4rc1, and 3.9 through 3.9.0b4 on Windows, a Trojan horse python3.dll might be used in cases where CPython is embedded in a native application. This occurs because python3X.dll may use an invalid search path for python3.dll loading (after Py_SetPath has been used). NOTE: this issue CANNOT occur when using python.exe from a standard (non-embedded) Python installation on Windows.Show less
1Atlassian
2Jira Data Center
Jira Server
Jun 17, 2026
Jul 3, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to execute arbitrary code via a DLL hijacking vulnerability in Tomcat. The affected versions are before version 8.5.5, and from version 8....Show more
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to execute arbitrary code via a DLL hijacking vulnerability in Tomcat. The affected versions are before version 8.5.5, and from version 8.6.0 before 8.7.2.Show less
1Gitlab
1Gitlab Vscode Extension
Jun 17, 2026
Jun 22, 2020
N/A· v4
8.6 HIGH· v3
6.8 MEDIUM· v2
Client side code execution in gitlab-vscode-extension v2.2.0 allows attacker to execute code on user system
1Mattermost
1Mattermost Desktop
Jun 17, 2026
Jun 19, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An issue was discovered in Mattermost Desktop App before 4.3.0 on macOS. It allows dylib injection.
1Mids' Reborn Hero Designer Project
1Mids' Reborn Hero Designer
Jun 17, 2026
Jun 11, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
Mids' Reborn Hero Designer 2.6.0.7 has an elevation of privilege vulnerability due to default and insecure permissions being set for the installation folder. By default, the Authenticated Users group has Modify permissio...Show more
Mids' Reborn Hero Designer 2.6.0.7 has an elevation of privilege vulnerability due to default and insecure permissions being set for the installation folder. By default, the Authenticated Users group has Modify permissions to the installation folder. Because of this, any user on the system can replace binaries or plant malicious DLLs to obtain elevated, or different, privileges, depending on the context of the user that runs the application.Show less
1Siemens
4Simatic Pcs 7
Simatic Process Device ManagerSimatic Step 7+1 more
Jun 17, 2026
Jun 10, 2020
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3), SIMATIC PDM (All versions < V9.2), SIMATIC STEP 7 V5.X (All versions < V5.6 SP2 HF3), SI...Show more
A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3), SIMATIC PDM (All versions < V9.2), SIMATIC STEP 7 V5.X (All versions < V5.6 SP2 HF3), SINAMICS STARTER (containing STEP 7 OEM version) (All versions < V5.4 HF2). A DLL Hijacking vulnerability could allow a local attacker to execute code with elevated privileges. The security vulnerability could be exploited by an attacker with local access to the affected systems. Successful exploitation requires user privileges but no user interaction. The vulnerability could allow an attacker to compromise the availability of the system as well as to have access to confidential information.Show less
1Mcafee
1Agent
Jun 17, 2026
Jun 10, 2020
N/A· v4
7.3 HIGH· v3
4.4 MEDIUM· v2
DLL Search Order Hijacking vulnerability in McAfee Agent (MA) prior to 5.6.4 allows attackers with local access to execute arbitrary code via execution from a compromised folder.
1Apple
1Windows Migration Assistant
Jun 17, 2026
Jun 9, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
A dynamic library loading issue was addressed with improved path searching. This issue is fixed in Windows Migration Assistant 2.2.0.0 (v. 1A11). Running the installer in an untrusted directory may result in arbitrary co...Show more
A dynamic library loading issue was addressed with improved path searching. This issue is fixed in Windows Migration Assistant 2.2.0.0 (v. 1A11). Running the installer in an untrusted directory may result in arbitrary code execution.Show less
1Dell
4Dock Wd15 Firmware
Dock Wd19 FirmwarePrecision Dual Usb C Thunderbolt Dock Tb18dc Firmware+1 more
Jun 17, 2026
May 28, 2020
N/A· v4
6.0 MEDIUM· v3
2.6 LOW· v2
Dell Dock Firmware Update Utilities for Dell Client Consumer and Commercial docking stations contain an Arbitrary File Overwrite vulnerability. The vulnerability is limited to the Dell Dock Firmware Update Utilities duri...Show more
Dell Dock Firmware Update Utilities for Dell Client Consumer and Commercial docking stations contain an Arbitrary File Overwrite vulnerability. The vulnerability is limited to the Dell Dock Firmware Update Utilities during the time window while being executed by an administrator. During this time window, a locally authenticated low-privileged malicious user could exploit this vulnerability by tricking an administrator into overwriting arbitrary files via a symlink attack. The vulnerability does not affect the actual binary payload that the update utility delivers.Show less
1Kerberos Project
1Kerberos
Jun 17, 2026
May 16, 2020
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
The kerberos package before 1.0.0 for Node.js allows arbitrary code execution and privilege escalation via injection of malicious DLLs through use of the kerberos_sspi LoadLibrary() method, because of a DLL path search.
1Opto22
1Softpac Project
Jun 17, 2026
May 14, 2020
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC does not specify the path of multiple imported .dll files. Therefore, an attacker can replace them and execute code whenever the service starts.
2Fazecast
Schneider Electric
2Ecostruxure It Gateway
Jserialcomm
Jun 17, 2026
May 14, 2020
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
In Fazecast jSerialComm, Version 2.2.2 and prior, an uncontrolled search path element vulnerability could allow a malicious DLL file with the same name of any resident DLLs inside the software installation to execute arb...Show more
In Fazecast jSerialComm, Version 2.2.2 and prior, an uncontrolled search path element vulnerability could allow a malicious DLL file with the same name of any resident DLLs inside the software installation to execute arbitrary code.Show less
1Sap
1Business Client
Jun 17, 2026
May 12, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
SAP Business Client, version 7.0, allows an attacker after a successful social engineering attack to inject malicious code as a DLL file in untrusted directories that can be executed by the application, due to uncontroll...Show more
SAP Business Client, version 7.0, allows an attacker after a successful social engineering attack to inject malicious code as a DLL file in untrusted directories that can be executed by the application, due to uncontrolled search path element. An attacker could thereby control the behavior of the application.Show less
1Lg
1Bridge
Jun 17, 2026
Apr 29, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
An issue was discovered in LG Bridge before April 2019 on Windows. DLL Hijacking can occur.
1Plex
1Media Server
Jun 17, 2026
Apr 22, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Improper Input Validation in Plex Media Server on Windows allows a local, unauthenticated attacker to execute arbitrary Python code with SYSTEM privileges.
1Google
1Earth
Jun 17, 2026
Apr 21, 2020
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
Untrusted Search Path vulnerability in the windows installer of Google Earth Pro versions prior to 7.3.3 allows an attacker to insert malicious local files to execute unauthenticated remote code on the targeted system.