Weaknesses of type CWE-427

897 results

Caminho de busca ou elemento não controlado

A aplicação procura por bibliotecas, configurações ou outros recursos em diretórios sem validar adequadamente quais caminhos ela está usando, permitindo que um atacante injete uma versão maliciosa em um local que será encontrado primeiro. Isso acontece porque a ordem ou composição do caminho de busca não é explicitamente controlada.

Example

Um programa Java com classpath que inclui o diretório atual (.) antes de caminhos do sistema; um atacante coloca uma classe maliciosa no diretório de trabalho e ela é carregada em vez da legítima. Ou um script que procura por um arquivo de configuração em múltiplas pastas sem especificar o caminho absoluto, sendo enganado por um arquivo plantado em /tmp.

How to mitigate

Use caminhos absolutos explícitos em vez de relativos; remova diretórios inseguros (como o atual) do caminho de busca; valide a origem e integridade de recursos carregados (checksums, assinaturas); implemente listas de permitidos para diretórios confiáveis.

CVE-2026-42171HIGHNSIS (Nullsoft Scriptable Install System) 3.06.1 before 3.12 sometimes uses the Low IL temp directory when executing as SYSTEM, allowing locEPSS 0.2%CVE-2021-44206—Local privilege escalation due to DLL hijacking vulnerability in Acronis Media Builder serviceEPSS 0.2%CVE-2023-34350MEDIUMUncontrolled search path element in some Intel(R) XTU software before version 7.12.0.15 may allow an authenticated user to potentially enablEPSS 0.2%CVE-2025-23358HIGHNVIDIA NVApp for Windows contains a vulnerability in the installer, where a local attacker can cause a search path element issue. A successfEPSS 0.2%CVE-2021-44205—Local privilege escalation due to DLL hijacking vulnerabilityEPSS 0.2%CVE-2023-29445HIGHUncontrolled Search Path Element in PTC's Kepware KEPServerEXEPSS 0.2%CVE-2024-39708HIGHAn issue was discovered in the Agent in Delinea Privilege Manager (formerly Thycotic Privilege Manager) before 12.0.1096 on Windows. SometimEPSS 0.2%CVE-2026-18657HIGHExecutable Resolution from Untrusted Project Directory in Kiro CLI on WindowsEPSS 0.2%CVE-2021-44199—DLL hijacking could lead to denial of serviceEPSS 0.2%CVE-2023-25147MEDIUMAn issue in the Trend Micro Apex One agent could allow an attacker who has previously acquired administrative rights via other means to bypaEPSS 0.2%CVE-2020-25502HIGHCybereason EDR version 19.1.282 and above, 19.2.182 and above, 20.1.343 and above, and 20.2.X and above has a DLL hijacking vulnerability, wEPSS 0.2%CVE-2020-23438HIGHWondershare filmora 9.2.11 is affected by Trojan Dll hijacking leading to privilege escalation.EPSS 0.2%CVE-2024-7325HIGHIObit Driver Booster BPL VCL120.BPL uncontrolled search pathEPSS 0.2%CVE-2021-38420HIGHDelta Electronics DIALinkEPSS 0.2%CVE-2022-43440HIGHPrivilege escalation via manipulated unixcat executableEPSS 0.2%CVE-2022-0015HIGHCortex XDR Agent: An Uncontrolled Search Path Element Leads to Local Privilege Escalation (PE) VulnerabilityEPSS 0.2%CVE-2022-39846MEDIUMDLL hijacking vulnerability in Smart Switch PC prior to version 4.3.22083_3 allows attacker to execute arbitrary code.EPSS 0.2%CVE-2022-43751HIGHMcAfee Total Protection prior to version 16.0.49 contains an uncontrolled search path element vulnerability due to the use of a variable poiEPSS 0.2%CVE-2024-9498HIGHUncontrolled search path can lead to DLL hijacking in USBXpress SDK installerEPSS 0.2%CVE-2026-48272HIGHCreative Cloud Desktop | Uncontrolled Search Path Element (CWE-427)EPSS 0.2%