Fallos del tipo CWE-427

895 resultados

Busca descontrolada em caminho ou elemento

Ocorre quando uma aplicação procura por um arquivo, biblioteca ou recurso em um caminho sem validação adequada, permitindo que um atacante injete ou substitua o alvo da busca. Um adversário pode colocar um arquivo malicioso em um diretório que será encontrado primeiro, ou manipular a ordem de busca, fazendo o programa executar código não autorizado.

Ejemplo

Um programa busca por uma DLL em C:\Windows\System32 e depois no diretório atual. Se o atacante colocar uma DLL maliciosa no diretório de trabalho, ela será carregada em vez da legítima. Ou um script shell procura por um binário em PATH sem caminho absoluto — um atacante cria uma versão maliciosa em um diretório que vem antes na busca.

Cómo mitigar

Use caminhos absolutos e canonicalizados em vez de busca por caminho; valide cada etapa da resolução antes de usar o recurso; configure permissões restritivas em diretórios de busca e remova diretórios modificáveis do PATH. Em tempo de execução, carregue apenas recursos de locais pré-definidos e confiáveis.

CVE-2020-6021—Check Point Endpoint Security Client for Windows before version E84.20 allows write access to the directory from which the installation repaEPSS 0.3%CVE-2023-6891MEDIUMPeaZip Library dragdropfilesdll.dll uncontrolled search pathEPSS 0.3%CVE-2025-32917MEDIUMPrivilege escalation in jar_signatureEPSS 0.3%CVE-2022-48422HIGHONLYOFFICE Docs through 7.3 on certain Linux distributions allows local users to gain privileges via a Trojan horse libgcc_s.so.1 in the curEPSS 0.3%CVE-2024-7834HIGHLocal privilege escalation in OverwolfEPSS 0.3%CVE-2024-39613MEDIUMRCE in desktop app in Windows by local attackerEPSS 0.3%CVE-2024-34116HIGHAdobe Creative Cloud App Install Arbitrary Folder Delete Vulnerability can be abuse to Privilege EscalationEPSS 0.3%CVE-2026-25129MEDIUMPsySH has Local Privilege Escalation via CWD .psysh.php auto-loadEPSS 0.3%CVE-2025-5480HIGHAction1 Uncontrolled Search Path Element Local Privilege Escalation VulnerabilityEPSS 0.3%CVE-2022-28714HIGHOn F5 BIG-IP APM 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prEPSS 0.3%CVE-2020-5316HIGHDell SupportAssist for Business PCs versions 2.0, 2.0.1, 2.0.2, 2.1, 2.1.1, 2.1.2, 2.1.3 and Dell SupportAssist for Home PCs version 2.0, 2.EPSS 0.3%CVE-2023-44220—SonicWall NetExtender Windows (32-bit and 64-bit) client 10.2.336 and earlier versions have a DLL Search Order Hijacking vulnerability in thEPSS 0.3%CVE-2019-3745MEDIUMThe vulnerability is limited to the installers of Dell Encryption Enterprise versions prior to 10.4.0 and Dell Endpoint Security Suite EnterEPSS 0.3%CVE-2025-5180HIGHWondershare Filmora Installer NFWCHK.exe uncontrolled search pathEPSS 0.3%CVE-2025-23177HIGHRibbon Communications - CWE-427: Uncontrolled Search Path ElementEPSS 0.3%CVE-2026-2361HIGHImproper search_path protection in PostgreSQL Anonymizer 2.5 allows any user with create privilege to gain superuser privilegesEPSS 0.3%CVE-2020-7358MEDIUMCode Injection in Rapid7 AppSpider Pro InstallerEPSS 0.3%CVE-2024-7244HIGHPanda Security Dome VPN DLL Hijacking Local Privilege Escalation VulnerabilityEPSS 0.3%CVE-2025-21127HIGHPhotoshop Desktop | Uncontrolled Search Path Element (CWE-427)EPSS 0.3%CVE-2021-21545HIGHDell Peripheral Manager 1.3.1 or greater contains remediation for a local privilege escalation vulnerability that could be potentially exploEPSS 0.3%