Weaknesses of type CWE-427

897 results

Caminho de busca ou elemento não controlado

A aplicação procura por bibliotecas, configurações ou outros recursos em diretórios sem validar adequadamente quais caminhos ela está usando, permitindo que um atacante injete uma versão maliciosa em um local que será encontrado primeiro. Isso acontece porque a ordem ou composição do caminho de busca não é explicitamente controlada.

Example

Um programa Java com classpath que inclui o diretório atual (.) antes de caminhos do sistema; um atacante coloca uma classe maliciosa no diretório de trabalho e ela é carregada em vez da legítima. Ou um script que procura por um arquivo de configuração em múltiplas pastas sem especificar o caminho absoluto, sendo enganado por um arquivo plantado em /tmp.

How to mitigate

Use caminhos absolutos explícitos em vez de relativos; remova diretórios inseguros (como o atual) do caminho de busca; valide a origem e integridade de recursos carregados (checksums, assinaturas); implemente listas de permitidos para diretórios confiáveis.

CVE-2020-6021—Check Point Endpoint Security Client for Windows before version E84.20 allows write access to the directory from which the installation repaEPSS 0.3%CVE-2023-6891MEDIUMPeaZip Library dragdropfilesdll.dll uncontrolled search pathEPSS 0.3%CVE-2025-32917MEDIUMPrivilege escalation in jar_signatureEPSS 0.3%CVE-2022-48422HIGHONLYOFFICE Docs through 7.3 on certain Linux distributions allows local users to gain privileges via a Trojan horse libgcc_s.so.1 in the curEPSS 0.3%CVE-2024-7834HIGHLocal privilege escalation in OverwolfEPSS 0.3%CVE-2024-39613MEDIUMRCE in desktop app in Windows by local attackerEPSS 0.3%CVE-2024-34116HIGHAdobe Creative Cloud App Install Arbitrary Folder Delete Vulnerability can be abuse to Privilege EscalationEPSS 0.3%CVE-2026-25129MEDIUMPsySH has Local Privilege Escalation via CWD .psysh.php auto-loadEPSS 0.3%CVE-2025-5480HIGHAction1 Uncontrolled Search Path Element Local Privilege Escalation VulnerabilityEPSS 0.3%CVE-2022-28714HIGHOn F5 BIG-IP APM 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prEPSS 0.3%CVE-2020-5316HIGHDell SupportAssist for Business PCs versions 2.0, 2.0.1, 2.0.2, 2.1, 2.1.1, 2.1.2, 2.1.3 and Dell SupportAssist for Home PCs version 2.0, 2.EPSS 0.3%CVE-2023-44220—SonicWall NetExtender Windows (32-bit and 64-bit) client 10.2.336 and earlier versions have a DLL Search Order Hijacking vulnerability in thEPSS 0.3%CVE-2019-3745MEDIUMThe vulnerability is limited to the installers of Dell Encryption Enterprise versions prior to 10.4.0 and Dell Endpoint Security Suite EnterEPSS 0.3%CVE-2025-5180HIGHWondershare Filmora Installer NFWCHK.exe uncontrolled search pathEPSS 0.3%CVE-2025-23177HIGHRibbon Communications - CWE-427: Uncontrolled Search Path ElementEPSS 0.3%CVE-2026-2361HIGHImproper search_path protection in PostgreSQL Anonymizer 2.5 allows any user with create privilege to gain superuser privilegesEPSS 0.3%CVE-2020-7358MEDIUMCode Injection in Rapid7 AppSpider Pro InstallerEPSS 0.3%CVE-2024-7244HIGHPanda Security Dome VPN DLL Hijacking Local Privilege Escalation VulnerabilityEPSS 0.3%CVE-2025-21127HIGHPhotoshop Desktop | Uncontrolled Search Path Element (CWE-427)EPSS 0.3%CVE-2025-49487MEDIUMAn uncontrolled search path vulnerability in the Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an attacEPSS 0.3%