Weaknesses of type CWE-427

897 results

Caminho de busca ou elemento não controlado

A aplicação procura por bibliotecas, configurações ou outros recursos em diretórios sem validar adequadamente quais caminhos ela está usando, permitindo que um atacante injete uma versão maliciosa em um local que será encontrado primeiro. Isso acontece porque a ordem ou composição do caminho de busca não é explicitamente controlada.

Example

Um programa Java com classpath que inclui o diretório atual (.) antes de caminhos do sistema; um atacante coloca uma classe maliciosa no diretório de trabalho e ela é carregada em vez da legítima. Ou um script que procura por um arquivo de configuração em múltiplas pastas sem especificar o caminho absoluto, sendo enganado por um arquivo plantado em /tmp.

How to mitigate

Use caminhos absolutos explícitos em vez de relativos; remova diretórios inseguros (como o atual) do caminho de busca; valide a origem e integridade de recursos carregados (checksums, assinaturas); implemente listas de permitidos para diretórios confiáveis.

CVE-2025-9016HIGHMechrevo Control Center GX V2 Powershell Script Command uncontrolled search pathEPSS 0.2%CVE-2025-9000HIGHMechrevo Control Center GX V2 reg File uncontrolled search pathEPSS 0.2%CVE-2026-7279HIGHeMPIA Technology|AVACAST - DLL HijackingEPSS 0.2%CVE-2025-11772MEDIUMCo-Installer Privilege EscalationEPSS 0.2%CVE-2025-9201HIGHA potential DLL hijacking vulnerability was discovered in Lenovo Browser during an internal security assessment that could allow a local useEPSS 0.2%CVE-2026-53813HIGHOpenClaw < 2026.4.25 - Arbitrary Artifact Loading via Fake Package Root ResolutionEPSS 0.2%CVE-2025-49148HIGHClipShare Server Allows Local Privilege Escalation via DLL HijackingEPSS 0.2%CVE-2025-64995MEDIUMPrivilege Escalation via Process Hijacking in 1E-Exchange-NomadClientHealth-ConfigureGeneralSetting instructionEPSS 0.2%CVE-2024-2208HIGHSound Research SECOMN64 Escalation of PrivilegeEPSS 0.2%CVE-2026-21408MEDIUMbeat-access for Windows version 3.0.3 and prior contains an issue with the DLL search path, which may lead to insecurely loading Dynamic LinEPSS 0.2%CVE-2024-55543HIGHLocal privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) beforEPSS 0.2%CVE-2024-55540MEDIUMLocal privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) beforEPSS 0.2%CVE-2026-41567HIGHDocker: `PUT /containers/{id}/archive` executes container binary on the hostEPSS 0.2%CVE-2026-4134HIGHDuring an internal security assessment, a potential vulnerability was discovered in Lenovo Software Fix, that during installation could alloEPSS 0.2%CVE-2024-28881MEDIUMUncontrolled search path for some Intel(R) Fortran Compiler Classic software before version 2021.13 may allow an authenticated user to potenEPSS 0.2%CVE-2025-53395HIGHParamount Macrium Reflect through 2025-06-26 allows local attackers to execute arbitrary code with administrator privileges via a crafted .mEPSS 0.2%CVE-2022-27187MEDIUMUncontrolled search path element in the Intel(R) Quartus Prime Standard edition software before version 21.1 Patch 0.02std may allow an authEPSS 0.2%CVE-2024-26017MEDIUMUncontrolled search path in some Intel(R) Rendering Toolkit software before version 2024.1.0 may allow an authenticated user to potentially EPSS 0.2%CVE-2025-55671HIGHUncontrolled search path element issue exists in TkEasyGUI versions prior to v1.0.22. If this vulnerability is exploited, arbitrary code mayEPSS 0.2%CVE-2025-14406HIGHSoda PDF Desktop Uncontrolled Search Path Element Local Privilege Escalation VulnerabilityEPSS 0.2%