Weaknesses of type CWE-427

897 results

Caminho de busca ou elemento não controlado

A aplicação procura por bibliotecas, configurações ou outros recursos em diretórios sem validar adequadamente quais caminhos ela está usando, permitindo que um atacante injete uma versão maliciosa em um local que será encontrado primeiro. Isso acontece porque a ordem ou composição do caminho de busca não é explicitamente controlada.

Example

Um programa Java com classpath que inclui o diretório atual (.) antes de caminhos do sistema; um atacante coloca uma classe maliciosa no diretório de trabalho e ela é carregada em vez da legítima. Ou um script que procura por um arquivo de configuração em múltiplas pastas sem especificar o caminho absoluto, sendo enganado por um arquivo plantado em /tmp.

How to mitigate

Use caminhos absolutos explícitos em vez de relativos; remova diretórios inseguros (como o atual) do caminho de busca; valide a origem e integridade de recursos carregados (checksums, assinaturas); implemente listas de permitidos para diretórios confiáveis.

CVE-2023-53937HIGHHubstaff 1.6.14 DLL Search Order Hijacking via wow64log LibraryEPSS 0.2%CVE-2022-31694HIGHInstallBuilder Qt installers built with versions previous to 22.10 try to load DLLs from the installer binary parent directory when displayiEPSS 0.2%CVE-2026-18656HIGHExecutable Resolution from Untrusted Project Directory in Kiro IDE on WindowsEPSS 0.2%CVE-2022-43722HIGHA vulnerability has been identified in SICAM PAS/PQS (All versions < V7.0). Affected software does not properly secure a folder containing lEPSS 0.2%CVE-2022-30697—Local privilege escalation due to insecure folder permissionsEPSS 0.2%CVE-2021-42743HIGHLocal privilege escalation via a default path in Splunk Enterprise WindowsEPSS 0.2%CVE-2025-35471HIGHconda-forge openssl-feedstock writable OPENSSLDIREPSS 0.2%CVE-2025-2769HIGHBdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation VulnerabilityEPSS 0.2%CVE-2021-38410HIGHAVEVA PCS Portal Uncontrolled Search Path ElementEPSS 0.2%CVE-2025-2768HIGHBdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation VulnerabilityEPSS 0.2%CVE-2023-25005HIGHA maliciously crafted DLL file can be forced to read beyond allocated boundaries in Autodesk InfraWorks 2023, and 2021 when parsing the DLL EPSS 0.2%CVE-2023-28140MEDIUMExecutable HijackingEPSS 0.2%CVE-2022-23401—The following Yokogawa Electric products contain insecure DLL loading issues. CENTUM CS 3000 versions from R3.08.10 to R3.09.00, CENTUM VP vEPSS 0.2%CVE-2021-41544HIGHA vulnerability has been identified in Siemens Software Center (All versions < V3.0). A DLL Hijacking vulnerability could allow a local attaEPSS 0.2%CVE-2023-3078HIGHAn uncontrolled search path vulnerability was reported in the Lenovo Universal Device Client (UDC) that could allow an attacker with local aEPSS 0.2%CVE-2022-36314MEDIUMWhen opening a Windows shortcut from the local filesystem, an attacker could supply a remote path that would lead to unexpected network requEPSS 0.2%CVE-2025-10198HIGHLizardBytes Sunshine for Windows contains a DLL search-order hijacking vulnerabilityEPSS 0.2%CVE-2025-5981MEDIUMArbitrary File write in OSV-SCALIBREPSS 0.2%CVE-2023-22358HIGHBIG-IP Edge Client for Windows vulnerabilityEPSS 0.2%CVE-2022-26374HIGHUncontrolled search path in the installation binaries for Intel(R) SEAPI all versions may allow an authenticated user to potentially enable EPSS 0.2%