Weaknesses of type CWE-427

897 results

Caminho de busca ou elemento não controlado

A aplicação procura por bibliotecas, configurações ou outros recursos em diretórios sem validar adequadamente quais caminhos ela está usando, permitindo que um atacante injete uma versão maliciosa em um local que será encontrado primeiro. Isso acontece porque a ordem ou composição do caminho de busca não é explicitamente controlada.

Example

Um programa Java com classpath que inclui o diretório atual (.) antes de caminhos do sistema; um atacante coloca uma classe maliciosa no diretório de trabalho e ela é carregada em vez da legítima. Ou um script que procura por um arquivo de configuração em múltiplas pastas sem especificar o caminho absoluto, sendo enganado por um arquivo plantado em /tmp.

How to mitigate

Use caminhos absolutos explícitos em vez de relativos; remova diretórios inseguros (como o atual) do caminho de busca; valide a origem e integridade de recursos carregados (checksums, assinaturas); implemente listas de permitidos para diretórios confiáveis.

CVE-2023-28823MEDIUMUncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow an authenticatEPSS 0.2%CVE-2022-34848MEDIUMUncontrolled search path for the Intel(R) NUC Pro Software Suite before version 2.0.0.3 may allow an authenticated user to potentially enablEPSS 0.2%CVE-2022-41998MEDIUMUncontrolled search path in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation ofEPSS 0.2%CVE-2022-44744LOWLocal privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Home Office (WindoEPSS 0.2%CVE-2024-34016MEDIUMLocal privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (WindoEPSS 0.2%CVE-2026-9593HIGHiDTM FDI Unauthorized Debug Interface EnablementEPSS 0.2%CVE-2024-45246HIGHDiebold Nixdorf – CWE-427: Uncontrolled Search Path ElementEPSS 0.2%CVE-2022-43474MEDIUMUncontrolled search path for the DSP Builder software installer before version 22.4 for Intel(R) FPGAs Pro Edition may allow an authenticateEPSS 0.2%CVE-2022-41628MEDIUMUncontrolled search path element in the HotKey Services for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.1EPSS 0.2%CVE-2022-41982MEDIUMUncontrolled search path element in the Intel(R) VTune(TM) Profiler software before version 2023.0 may allow an authenticated user to potentEPSS 0.2%CVE-2025-10214HIGHDLL search path hijacking vulnerabilityEPSS 0.2%CVE-2023-24016MEDIUMUncontrolled search path element in some Intel(R) Quartus(R) Prime Pro and Standard edition software for linux may allow an authenticated usEPSS 0.2%CVE-2025-11772MEDIUMCo-Installer Privilege EscalationEPSS 0.2%CVE-2025-9000HIGHMechrevo Control Center GX V2 reg File uncontrolled search pathEPSS 0.2%CVE-2025-34418HIGHMailEnable < 10.54 DLL Hijacking via Unsafe Loading of MEAIMF.DLLEPSS 0.2%CVE-2024-2637HIGHInsecure Loading of Code in B&R ProductsEPSS 0.2%CVE-2025-34424HIGHMailEnable < 10.54 DLL Hijacking via Unsafe Loading of MEAIDP.DLLEPSS 0.2%CVE-2026-9169HIGHLUCID Vision Labs: DLL Search Order Hijacking in Arena SDK 1.0.80.49 on WindowsEPSS 0.2%CVE-2026-7279HIGHeMPIA Technology|AVACAST - DLL HijackingEPSS 0.2%CVE-2024-33672HIGHAn issue was discovered in Veritas NetBackup before 10.4. The Multi-Threaded Agent used in NetBackup can be leveraged to perform arbitrary fEPSS 0.2%