Weaknesses of type CWE-427
842 resultsCVE-2025-1223MEDIUMAn attacker can gain application privileges in order to perform limited modification and/or read arbitrary dataEPSS 0.2%CVE-2025-43950HIGHDPMAdirektPro 4.1.5 is vulnerable to DLL Hijacking. It happens by placing a malicious DLL in a directory (in the absence of a legitimate DLLEPSS 0.2%CVE-2025-27997HIGHAn issue in Blizzard Battle.net v2.40.0.15267 allows attackers to escalate privileges via placing a crafted shell script or executable into EPSS 0.2%CVE-2024-12530HIGHInsecure Dynamic-Link Library (DLL) Load vulnerabilityEPSS 0.2%CVE-2025-30167HIGHJupyter Core on Windows Has Uncontrolled Search Path Element Local Privilege Escalation VulnerabilityEPSS 0.2%CVE-2024-22376MEDIUMUncontrolled search path element in some installation software for Intel(R) Ethernet Adapter Driver Pack before version 28.3 may allow an auEPSS 0.2%CVE-2024-47196MEDIUMA vulnerability has been identified in ModelSim (All versions < V2025.2), Questa (All versions < V2025.2). vsimk.exe in affected applicationEPSS 0.2%CVE-2023-51710MEDIUMEMS SQL Manager 3.6.2 (build 55333) for Oracle allows DLL hijacking: a user can trigger the execution of arbitrary code every time the produEPSS 0.2%CVE-2024-47194MEDIUMA vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). vish2.exe in affected applicationEPSS 0.2%CVE-2024-47195MEDIUMA vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). gdb.exe in affected applications EPSS 0.2%CVE-2023-2355MEDIUMLocal privilege escalation due to a DLL hijacking vulnerability. The following products are affected: Acronis Snap Deploy (Windows) before bEPSS 0.2%CVE-2025-61161HIGHDLL hijacking vulnerability in Evope Collector 1.1.6.9.0 and related components load the wtsapi32.dll library from an uncontrolled search paEPSS 0.2%CVE-2025-9016HIGHMechrevo Control Center GX V2 Powershell Script Command uncontrolled search pathEPSS 0.2%CVE-2025-9000HIGHMechrevo Control Center GX V2 reg File uncontrolled search pathEPSS 0.2%CVE-2025-5471HIGHDylib Hijacking in Yandex TelemostEPSS 0.2%CVE-2025-4769HIGHCBEWIN Anytxt Searcher ATService.exe uncontrolled search pathEPSS 0.2%CVE-2025-11223HIGHInstaller of
Panasonic
AutoDownloader
version 1.2.8
contains an issue with the DLL search path, which may lead to loading
a craftEPSS 0.2%CVE-2024-23907MEDIUMUncontrolled search path in some Intel(R) High Level Synthesis Compiler software before version 23.4 may allow an authenticated user to poteEPSS 0.1%CVE-2022-43456MEDIUMUncontrolled search path in some Intel(R) RST software before versions 16.8.5.1014.5, 17.11.3.1010.2, 18.7.6.1011.2 and 19.5.2.1049.5 may alEPSS 0.1%CVE-2023-25944MEDIUMUncontrolled search path element in some Intel(R) VCUST Tool software downloaded before February 3nd 2023 may allow an authenticated user toEPSS 0.1%