Weaknesses of type CWE-427

897 results

Caminho de busca ou elemento não controlado

A aplicação procura por bibliotecas, configurações ou outros recursos em diretórios sem validar adequadamente quais caminhos ela está usando, permitindo que um atacante injete uma versão maliciosa em um local que será encontrado primeiro. Isso acontece porque a ordem ou composição do caminho de busca não é explicitamente controlada.

Example

Um programa Java com classpath que inclui o diretório atual (.) antes de caminhos do sistema; um atacante coloca uma classe maliciosa no diretório de trabalho e ela é carregada em vez da legítima. Ou um script que procura por um arquivo de configuração em múltiplas pastas sem especificar o caminho absoluto, sendo enganado por um arquivo plantado em /tmp.

How to mitigate

Use caminhos absolutos explícitos em vez de relativos; remova diretórios inseguros (como o atual) do caminho de busca; valide a origem e integridade de recursos carregados (checksums, assinaturas); implemente listas de permitidos para diretórios confiáveis.

CVE-2024-45405MEDIUMgix-path improperly resolves configuration path reported by GitEPSS 0.3%CVE-2025-65118CRITICALAVEVA Process Optimization Uncontrolled Search Path ElementEPSS 0.3%CVE-2022-42945HIGHDWG TrueViewTM 2023 version has a DLL Search Order Hijacking vulnerability. Successful exploitation by a malicious attacker could result in EPSS 0.3%CVE-2023-0898MEDIUMUncontrolled Search Path Element in GE MiCOM S1 AgileEPSS 0.3%CVE-2021-44198—DLL hijacking could lead to local privilege escalationEPSS 0.3%CVE-2023-24578MEDIUMMcAfee Total Protection prior to 16.0.49 allows attackers to elevate user privileges due to DLL sideloading. This could enable a user with lEPSS 0.3%CVE-2025-9267HIGHIn Seagate Toolkit on Windows a vulnerability exists in the Toolkit Installer prior to versions 2.35.0.6 where it attempts to load DLLs fromEPSS 0.3%CVE-2020-5324HIGHDell Client Consumer and Commercial Platforms contain an Arbitrary File Overwrite Vulnerability. The vulnerability is limited to the Dell FiEPSS 0.3%CVE-2022-36924HIGHLocal Privilege Escalation in Zoom Rooms Installer for WindowsEPSS 0.3%CVE-2022-28792MEDIUMDLL hijacking vulnerability in Gear IconX PC Manager prior to version 2.1.220405.51 allows attacker to execute arbitrary code. The patch addEPSS 0.2%CVE-2023-4931MEDIUMUncontrolled search path element vulnerability in PleskEPSS 0.2%CVE-2023-31361HIGHA DLL hijacking vulnerability in AMD Integrated Management Technology (AIM-T) Manageability Service could allow an attacker to achieve priviEPSS 0.2%CVE-2023-48677HIGHLocal privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Home Office (WindoEPSS 0.2%CVE-2020-25244HIGHA vulnerability has been identified in LOGO! Soft Comfort (All versions < V8.4). The software insecurely loads libraries which makes it vulnEPSS 0.2%CVE-2021-3041HIGHCortex XDR Agent: Improper control of user-controlled file leads to local privilege escalationEPSS 0.2%CVE-2021-3042HIGHCortex XDR Agent: Improper Control of User-Controlled File Leads to Local Privilege EscalationEPSS 0.2%CVE-2023-47113HIGHDLL Search Order Hijacking vulnerability in BleachBit for WindowsEPSS 0.2%CVE-2022-0192HIGHA DLL search path vulnerability was reported in Lenovo PCManager prior to version 4.0.40.2175 that could allow privilege escalation.EPSS 0.2%CVE-2021-3550HIGHA DLL search path vulnerability was reported in Lenovo PCManager, prior to version 3.0.500.5102, that could allow privilege escalation.EPSS 0.2%CVE-2023-22818HIGHMultiple DLL Search Order hijacking Vulnerabilities in SanDisk Security Installer for Windows EPSS 0.2%