CWE-427
1,189 CVEs • Abstraction: Base
Uncontrolled Search Path Element
The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.
CVEs (1,189)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1360totalsecurity 1360 Total Security Jun 17, 2026 Jul 21, 2020 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 In the version 12.1.0.1004 and below of 360 Total Security, when the main process of 360 Total Security calls GameChrome.exe, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hij...Show more |
1360totalsecurity 1360 Total Security Jun 17, 2026 Jul 21, 2020 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 In version 12.1.0.1004 and below of 360 Total Security,when TPI calls the browser process, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hijacking could execute arbitrary code...Show more |
When the Windows DLL "webauthn.dll" was missing from the Operating System, and a malicious one was placed in a folder in the user's %PATH%, Firefox may have loaded the DLL, leading to arbitrary code execution. *Note: Thi...Show more |
Earlier than HiSuite 10.1.0.500 have a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this DLL file of the attacker's choosi...Show more |
2Netapp Python2Python SnapcenterJun 17, 2026 Jul 4, 2020 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 In Python 3.6 through 3.6.10, 3.7 through 3.7.8, 3.8 through 3.8.4rc1, and 3.9 through 3.9.0b4 on Windows, a Trojan horse python3.dll might be used in cases where CPython is embedded in a native application. This occurs...Show more |
1Atlassian 2Jira Data Center Jira ServerJun 17, 2026 Jul 3, 2020 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 Affected versions of Atlassian Jira Server and Data Center allow remote attackers to execute arbitrary code via a DLL hijacking vulnerability in Tomcat. The affected versions are before version 8.5.5, and from version 8....Show more |
1Gitlab 1Gitlab Vscode Extension Jun 17, 2026 Jun 22, 2020 N/A· v4 8.6 HIGH· v3 6.8 MEDIUM· v2 Client side code execution in gitlab-vscode-extension v2.2.0 allows attacker to execute code on user system |
1Mattermost 1Mattermost Desktop Jun 17, 2026 Jun 19, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in Mattermost Desktop App before 4.3.0 on macOS. It allows dylib injection. |
1Mids' Reborn Hero Designer Project 1Mids' Reborn Hero Designer Jun 17, 2026 Jun 11, 2020 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 Mids' Reborn Hero Designer 2.6.0.7 has an elevation of privilege vulnerability due to default and insecure permissions being set for the installation folder. By default, the Authenticated Users group has Modify permissio...Show more |
1Siemens 4Simatic Pcs 7 Simatic Process Device ManagerSimatic Step 7+1 moreJun 17, 2026 Jun 10, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3), SIMATIC PDM (All versions < V9.2), SIMATIC STEP 7 V5.X (All versions < V5.6 SP2 HF3), SI...Show more |
DLL Search Order Hijacking vulnerability in McAfee Agent (MA) prior to 5.6.4 allows attackers with local access to execute arbitrary code via execution from a compromised folder. |
1Apple 1Windows Migration Assistant Jun 17, 2026 Jun 9, 2020 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 A dynamic library loading issue was addressed with improved path searching. This issue is fixed in Windows Migration Assistant 2.2.0.0 (v. 1A11). Running the installer in an untrusted directory may result in arbitrary co...Show more |
1Dell 4Dock Wd15 Firmware Dock Wd19 FirmwarePrecision Dual Usb C Thunderbolt Dock Tb18dc Firmware+1 moreJun 17, 2026 May 28, 2020 N/A· v4 6.0 MEDIUM· v3 2.6 LOW· v2 Dell Dock Firmware Update Utilities for Dell Client Consumer and Commercial docking stations contain an Arbitrary File Overwrite vulnerability. The vulnerability is limited to the Dell Dock Firmware Update Utilities duri...Show more |
The kerberos package before 1.0.0 for Node.js allows arbitrary code execution and privilege escalation via injection of malicious DLLs through use of the kerberos_sspi LoadLibrary() method, because of a DLL path search. |
Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC does not specify the path of multiple imported .dll files. Therefore, an attacker can replace them and execute code whenever the service starts. |
2Fazecast Schneider Electric2Ecostruxure It Gateway JserialcommJun 17, 2026 May 14, 2020 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 In Fazecast jSerialComm, Version 2.2.2 and prior, an uncontrolled search path element vulnerability could allow a malicious DLL file with the same name of any resident DLLs inside the software installation to execute arb...Show more |
SAP Business Client, version 7.0, allows an attacker after a successful social engineering attack to inject malicious code as a DLL file in untrusted directories that can be executed by the application, due to uncontroll...Show more |
An issue was discovered in LG Bridge before April 2019 on Windows. DLL Hijacking can occur. |
Improper Input Validation in Plex Media Server on Windows allows a local, unauthenticated attacker to execute arbitrary Python code with SYSTEM privileges. |
Untrusted Search Path vulnerability in the windows installer of Google Earth Pro versions prior to 7.3.3 allows an attacker to insert malicious local files to execute unauthenticated remote code on the targeted system. |