Weaknesses of type CWE-427

897 results

Caminho de busca ou elemento não controlado

A aplicação procura por bibliotecas, configurações ou outros recursos em diretórios sem validar adequadamente quais caminhos ela está usando, permitindo que um atacante injete uma versão maliciosa em um local que será encontrado primeiro. Isso acontece porque a ordem ou composição do caminho de busca não é explicitamente controlada.

Example

Um programa Java com classpath que inclui o diretório atual (.) antes de caminhos do sistema; um atacante coloca uma classe maliciosa no diretório de trabalho e ela é carregada em vez da legítima. Ou um script que procura por um arquivo de configuração em múltiplas pastas sem especificar o caminho absoluto, sendo enganado por um arquivo plantado em /tmp.

How to mitigate

Use caminhos absolutos explícitos em vez de relativos; remova diretórios inseguros (como o atual) do caminho de busca; valide a origem e integridade de recursos carregados (checksums, assinaturas); implemente listas de permitidos para diretórios confiáveis.

CVE-2023-22355MEDIUMUncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.0.251 may allow an authenticatEPSS 0.2%CVE-2023-45743MEDIUMUncontrolled search path in some Intel(R) DSA software uninstallers before version 23.4.39.10 may allow an authenticated user to potentiallyEPSS 0.2%CVE-2023-33874MEDIUMUncontrolled search path in some Intel(R) NUC 12 Pro Kits & Mini PCs - NUC12WS Intel(R) HID Event Filter Driver installation software beforeEPSS 0.2%CVE-2025-71178HIGHCrucial Storage Executive < 11.08.082025.00 Installer DLL Preloading LPEEPSS 0.2%CVE-2025-30033HIGHThe affected setup component is vulnerable to DLL hijacking. This could allow an attacker to execute arbitrary code when a legitimate user iEPSS 0.2%CVE-2026-40031HIGHMemProcFS < 5.17 DLL/Shared Library HijackingEPSS 0.2%CVE-2026-45004HIGHOpenClaw < 2026.4.23 - Arbitrary Code Execution via setup-api.js in Current Working DirectoryEPSS 0.2%CVE-2023-39374HIGH ForeScout NAC SecureConnector – CWE-427: Uncontrolled Search Path ElementEPSS 0.2%CVE-2024-29223MEDIUMUncontrolled search path for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow an authenticated user to potentialEPSS 0.2%CVE-2023-35192MEDIUMUncontrolled search path in some Intel(R) GPA Framework software before version 2023.3 may allow an authenticated user to potentially enableEPSS 0.2%CVE-2023-34430MEDIUMUncontrolled search path in some Intel Battery Life Diagnostic Tool software before version 2.2.1 may allow an authenticated user to potentiEPSS 0.2%CVE-2022-45422HIGHWhen LG SmartShare is installed, local privilege escalation is possible through DLL Hijacking attack. The LG ID is LVE-HOT-220005.EPSS 0.2%CVE-2023-41961MEDIUMUncontrolled search path in some Intel(R) GPA software before version 2023.3 may allow an authenticated user to potentially enable escalatioEPSS 0.2%CVE-2024-37127HIGHDell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker could potentially eEPSS 0.2%CVE-2026-28704HIGHEmocheck insecurely loads Dynamic Link Libraries (DLLs). If a crafted DLL file is placed to the same directory, an arbitrary code may be exeEPSS 0.2%CVE-2024-49592MEDIUMTrial installer for McAfee Total Protection (legacy trial installer software) 16.0.53 allows local privilege escalation because of an UncontEPSS 0.2%CVE-2026-44406MEDIUMDLL Hijacking Vulnerability in ZTE Cloud PC Client uSmartviewEPSS 0.2%CVE-2024-20430HIGHCisco Meraki Systems Manager Agent for Windows Privilege Escalation VulnerabilityEPSS 0.2%CVE-2024-30117LOWHCL BigFix Platform is affected by a DLL Hijack vulnerabilityEPSS 0.2%CVE-2024-22450HIGHDell Alienware Command Center, versions prior to 6.2.7.0, contain an uncontrolled search path element vulnerability. A local malicious user EPSS 0.2%