Weaknesses of type CWE-427

897 results

Caminho de busca ou elemento não controlado

A aplicação procura por bibliotecas, configurações ou outros recursos em diretórios sem validar adequadamente quais caminhos ela está usando, permitindo que um atacante injete uma versão maliciosa em um local que será encontrado primeiro. Isso acontece porque a ordem ou composição do caminho de busca não é explicitamente controlada.

Example

Um programa Java com classpath que inclui o diretório atual (.) antes de caminhos do sistema; um atacante coloca uma classe maliciosa no diretório de trabalho e ela é carregada em vez da legítima. Ou um script que procura por um arquivo de configuração em múltiplas pastas sem especificar o caminho absoluto, sendo enganado por um arquivo plantado em /tmp.

How to mitigate

Use caminhos absolutos explícitos em vez de relativos; remova diretórios inseguros (como o atual) do caminho de busca; valide a origem e integridade de recursos carregados (checksums, assinaturas); implemente listas de permitidos para diretórios confiáveis.

CVE-2026-2040HIGHPDF-XChange Editor TrackerUpdate Uncontrolled Search Path Element Local Privilege Escalation VulnerabilityEPSS 0.3%CVE-2022-40978HIGHThe installer of JetBrains IntelliJ IDEA before 2022.2.2 was vulnerable to EXE search order hijackingEPSS 0.3%CVE-2025-32919HIGHPrivilege Escalation in Windows License plugin for Checkmk Windows AgentEPSS 0.3%CVE-2023-37490HIGHBinary hijack in SAP BusinessObjects Business Intelligence (Installer)EPSS 0.3%CVE-2024-44107HIGHDLL hijacking in the management console of Ivanti Workspace Control before version 2025.2 (10.19.0.0) allows a local authenticated attacker EPSS 0.3%CVE-2022-21807HIGHUncontrolled search path elements in the Intel(R) VTune(TM) Profiler software before version 2022.2.0 may allow an authenticated user to potEPSS 0.3%CVE-2023-5463HIGHXINJE XDPPro cfgmgr32.dll uncontrolled search pathEPSS 0.3%CVE-2023-28596HIGHLocal Privilege Escalation in Zoom for macOS InstallersEPSS 0.3%CVE-2020-5357HIGHDell Dock Firmware Update Utilities for Dell Client Consumer and Commercial docking stations contain an Arbitrary File Overwrite vulnerabiliEPSS 0.3%CVE-2021-44463HIGHEmerson DeltaV Uncontrolled Search Path ElementEPSS 0.3%CVE-2021-38416HIGHDelta Electronics DIALinkEPSS 0.3%CVE-2026-2492HIGHTensorFlow HDF5 Library Uncontrolled Search Path Element Local Privilege Escalation VulnerabilityEPSS 0.3%CVE-2025-59887HIGHImproper authentication of library files in the Eaton UPS Companion software installer could lead to arbitrary code execution of an attackerEPSS 0.3%CVE-2021-3464HIGHA DLL search path vulnerability was reported in Lenovo PCManager, prior to version 3.0.400.3252, that could allow privilege escalation.EPSS 0.3%CVE-2023-4770MEDIUMUncontrolled Search Path Element Vulnerability in 4D and 4D Windows ServerEPSS 0.3%CVE-2025-53000HIGHnbconvert has an uncontrolled search path that leads to unauthorized code execution on WindowsEPSS 0.3%CVE-2024-1182HIGHUncontrolled Search Path Element vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS SuitEPSS 0.3%CVE-2023-6235HIGHArbitrary code execution in Duet DisplayEPSS 0.3%CVE-2024-25050HIGHIBM i privilege escalationEPSS 0.3%CVE-2024-38330HIGHIBM i privilege escalationEPSS 0.3%