Weaknesses of type CWE-427

897 results

Caminho de busca ou elemento não controlado

A aplicação procura por bibliotecas, configurações ou outros recursos em diretórios sem validar adequadamente quais caminhos ela está usando, permitindo que um atacante injete uma versão maliciosa em um local que será encontrado primeiro. Isso acontece porque a ordem ou composição do caminho de busca não é explicitamente controlada.

Example

Um programa Java com classpath que inclui o diretório atual (.) antes de caminhos do sistema; um atacante coloca uma classe maliciosa no diretório de trabalho e ela é carregada em vez da legítima. Ou um script que procura por um arquivo de configuração em múltiplas pastas sem especificar o caminho absoluto, sendo enganado por um arquivo plantado em /tmp.

How to mitigate

Use caminhos absolutos explícitos em vez de relativos; remova diretórios inseguros (como o atual) do caminho de busca; valide a origem e integridade de recursos carregados (checksums, assinaturas); implemente listas de permitidos para diretórios confiáveis.

CVE-2025-14498HIGHTradingView Desktop Electron Uncontrolled Search Path Local Privilege Escalation VulnerabilityEPSS 0.2%CVE-2025-55671HIGHUncontrolled search path element issue exists in TkEasyGUI versions prior to v1.0.22. If this vulnerability is exploited, arbitrary code mayEPSS 0.2%CVE-2025-1223MEDIUMAn attacker can gain application privileges in order to perform limited modification and/or read arbitrary dataEPSS 0.2%CVE-2026-2538HIGHFlos Freeware Notepad2 Msimg32.dll uncontrolled search pathEPSS 0.2%CVE-2023-32272HIGHUncontrolled search path in some Intel NUC Pro Software Suite Configuration Tool software installers before version 3.0.0.6 may allow an autEPSS 0.2%CVE-2026-34488HIGHIP Setting Software contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries. As a result, arEPSS 0.2%CVE-2025-10549MEDIUMDLL Hijacking in EfficientLab Controlio Leads to Local Privilege EscalationEPSS 0.2%CVE-2024-38387MEDIUMUncontrolled search path in the Intel(R) Graphics Driver installers for versions 15.40 and 15.45 may allow an authenticated user to potentiaEPSS 0.2%CVE-2026-21770MEDIUMHCL Traveler for Microsoft Outlook (HTMO) is susceptible to DLL hijackingEPSS 0.2%CVE-2022-27638MEDIUMUncontrolled search path element in the Intel(R) Advanced Link Analyzer Pro before version 22.2 and Standard edition software before versionEPSS 0.2%CVE-2025-11223HIGHInstaller of Panasonic AutoDownloader version 1.2.8 contains an issue with the DLL search path, which may lead to loading a craftEPSS 0.2%CVE-2021-33064MEDIUMUncontrolled search path in the software installer for Intel(R) System Studio for all versions, may allow an authenticated user to potentialEPSS 0.2%CVE-2025-57781HIGHThe installers of DENSO TEN drive recorder viewer contain an issue with the DLL search path, which may lead to insecurely loading Dynamic LiEPSS 0.2%CVE-2025-40827HIGHA vulnerability has been identified in Siemens Software Center (All versions < V3.5), Solid Edge SE2025 (All versions < V225.0 Update 10). TEPSS 0.2%CVE-2022-30548MEDIUMUncontrolled search path element in the Intel(R) Glorp software may allow an authenticated user to potentially enable escalation of privilegEPSS 0.2%CVE-2026-2713HIGHIBM Trusteer Rapport installer affected by uncontrolled search path element vulnerabilityEPSS 0.2%CVE-2026-28700MEDIUMUncontrolled search path for some EquiTriton before version f5ddbb5 within Ring 3: User Applications may allow an escalation of privilege. UEPSS 0.2%CVE-2025-49158MEDIUMAn uncontrolled search path vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalation privileges oEPSS 0.2%CVE-2026-32788MEDIUMUncontrolled search path for some Approximate Bayesian Inference Framework before version on commit #484c949 within Ring 3: User ApplicationEPSS 0.2%CVE-2025-2272HIGHPrivilege Escalation and Arbitrary code execution in F1E EndpointEPSS 0.2%