Weaknesses of type CWE-427

897 results

Caminho de busca ou elemento não controlado

A aplicação procura por bibliotecas, configurações ou outros recursos em diretórios sem validar adequadamente quais caminhos ela está usando, permitindo que um atacante injete uma versão maliciosa em um local que será encontrado primeiro. Isso acontece porque a ordem ou composição do caminho de busca não é explicitamente controlada.

Example

Um programa Java com classpath que inclui o diretório atual (.) antes de caminhos do sistema; um atacante coloca uma classe maliciosa no diretório de trabalho e ela é carregada em vez da legítima. Ou um script que procura por um arquivo de configuração em múltiplas pastas sem especificar o caminho absoluto, sendo enganado por um arquivo plantado em /tmp.

How to mitigate

Use caminhos absolutos explícitos em vez de relativos; remova diretórios inseguros (como o atual) do caminho de busca; valide a origem e integridade de recursos carregados (checksums, assinaturas); implemente listas de permitidos para diretórios confiáveis.

CVE-2025-62776HIGHThe installer of WTW EAGLE (for Windows) 3.0.8.0 contains an issue with the DLL search path, which may lead to insecurely loading Dynamic LiEPSS 0.1%CVE-2025-64695HIGHUncontrolled search path element issue exists in the installer of LogStare Collector (for Windows). If exploited, arbitrary code may be execEPSS 0.1%CVE-2024-23907MEDIUMUncontrolled search path in some Intel(R) High Level Synthesis Compiler software before version 23.4 may allow an authenticated user to poteEPSS 0.1%CVE-2026-5064HIGHHP One Agent Software – Security UpdateEPSS 0.1%CVE-2025-53394HIGHParamount Macrium Reflect through 2025-06-26 allows attackers to execute arbitrary code with administrator privileges via a crafted .mrimgx EPSS 0.1%CVE-2025-64726HIGHExternal Control of System or Configuration Setting and Uncontrolled Search Path Element in sfwEPSS 0.1%CVE-2025-57624HIGHA DLL hijacking vulnerability in CYRISMA Agent before 444 allows local users to escalate privileges and execute arbitrary code via multiple EPSS 0.1%CVE-2025-1700HIGHA DLL hijacking vulnerability was reported in the Motorola Software Fix (Rescue and Smart Assistant) installer that could allow a local attaEPSS 0.1%CVE-2026-12003MEDIUMCPython >3.11 Insecure Input Validation resulting in privilege escalationEPSS 0.1%CVE-2025-13919MEDIUMComponent Object Model (COM) Hijacking in Symantec Endpoint Protection Windows ClientEPSS 0.1%CVE-2025-60749HIGHDLL Hijacking vulnerability in Trimble SketchUp desktop 2025 via crafted libcef.dll used by sketchup_webhelper.exe.EPSS 0.1%CVE-2025-14625MEDIUMQuartus® Prime Standard and Quartus® Prime Lite Security AdvisoryEPSS 0.1%CVE-2025-1729MEDIUMA DLL hijacking vulnerability was reported in TrackPoint Quick Menu software that, under certain conditions, could allow a local attacker toEPSS 0.1%CVE-2025-67450HIGHDue to insecure library loading in the Eaton UPS Companion software executable, an attacker with access to the software package could perfEPSS 0.1%CVE-2026-87530HIGHUncontrolled search path element in CredentialProvider in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to exeEPSS 0.1%CVE-2025-10089HIGHMalicious Code Execution Vulnerability in Setting and Operation Application for Lighting Control System MILCO.SEPSS 0.1%CVE-2024-28172MEDIUMUncontrolled search path for some Intel(R) Trace Analyzer and Collector software before version 2022.1 may allow an authenticated user to poEPSS 0.1%CVE-2024-28876MEDIUMUncontrolled search path for some Intel(R) MPI Library software before version 2021.12 may allow an authenticated user to potentially enableEPSS 0.1%CVE-2024-28953MEDIUMUncontrolled search path in some EMON software before version 11.44 may allow an authenticated user to potentially enable escalation of privEPSS 0.1%CVE-2024-8766MEDIUMLocal privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (WindoEPSS 0.1%