Fallos del tipo CWE-427

895 resultados

Busca descontrolada em caminho ou elemento

Ocorre quando uma aplicação procura por um arquivo, biblioteca ou recurso em um caminho sem validação adequada, permitindo que um atacante injete ou substitua o alvo da busca. Um adversário pode colocar um arquivo malicioso em um diretório que será encontrado primeiro, ou manipular a ordem de busca, fazendo o programa executar código não autorizado.

Ejemplo

Um programa busca por uma DLL em C:\Windows\System32 e depois no diretório atual. Se o atacante colocar uma DLL maliciosa no diretório de trabalho, ela será carregada em vez da legítima. Ou um script shell procura por um binário em PATH sem caminho absoluto — um atacante cria uma versão maliciosa em um diretório que vem antes na busca.

Cómo mitigar

Use caminhos absolutos e canonicalizados em vez de busca por caminho; valide cada etapa da resolução antes de usar o recurso; configure permissões restritivas em diretórios de busca e remova diretórios modificáveis do PATH. Em tempo de execução, carregue apenas recursos de locais pré-definidos e confiáveis.

CVE-2023-24578MEDIUMMcAfee Total Protection prior to 16.0.49 allows attackers to elevate user privileges due to DLL sideloading. This could enable a user with lEPSS 0.3%CVE-2025-9267HIGHIn Seagate Toolkit on Windows a vulnerability exists in the Toolkit Installer prior to versions 2.35.0.6 where it attempts to load DLLs fromEPSS 0.3%CVE-2022-36924HIGHLocal Privilege Escalation in Zoom Rooms Installer for WindowsEPSS 0.3%CVE-2020-5324HIGHDell Client Consumer and Commercial Platforms contain an Arbitrary File Overwrite Vulnerability. The vulnerability is limited to the Dell FiEPSS 0.3%CVE-2026-3775HIGHFoxit PDF Editor/Reader Update Service Uncontrolled Search Path Element Local Privilege Escalation VulnerabilityEPSS 0.3%CVE-2023-4931MEDIUMUncontrolled search path element vulnerability in PleskEPSS 0.2%CVE-2022-28792MEDIUMDLL hijacking vulnerability in Gear IconX PC Manager prior to version 2.1.220405.51 allows attacker to execute arbitrary code. The patch addEPSS 0.2%CVE-2023-31361HIGHA DLL hijacking vulnerability in AMD Integrated Management Technology (AIM-T) Manageability Service could allow an attacker to achieve priviEPSS 0.2%CVE-2023-48677HIGHLocal privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Home Office (WindoEPSS 0.2%CVE-2020-25244HIGHA vulnerability has been identified in LOGO! Soft Comfort (All versions < V8.4). The software insecurely loads libraries which makes it vulnEPSS 0.2%CVE-2021-3042HIGHCortex XDR Agent: Improper Control of User-Controlled File Leads to Local Privilege EscalationEPSS 0.2%CVE-2021-3041HIGHCortex XDR Agent: Improper control of user-controlled file leads to local privilege escalationEPSS 0.2%CVE-2023-47113HIGHDLL Search Order Hijacking vulnerability in BleachBit for WindowsEPSS 0.2%CVE-2026-25655HIGHA vulnerability has been identified in SINEC NMS (All versions < V4.0 SP2). The affected application permits improper modification of a confEPSS 0.2%CVE-2026-25656HIGHA vulnerability has been identified in SINEC NMS (All versions < V4.0 SP3), User Management Component (UMC) (All versions < V2.15.2.1). The EPSS 0.2%CVE-2022-0192HIGHA DLL search path vulnerability was reported in Lenovo PCManager prior to version 4.0.40.2175 that could allow privilege escalation.EPSS 0.2%CVE-2021-3550HIGHA DLL search path vulnerability was reported in Lenovo PCManager, prior to version 3.0.500.5102, that could allow privilege escalation.EPSS 0.2%CVE-2023-22818HIGHMultiple DLL Search Order hijacking Vulnerabilities in SanDisk Security Installer for Windows EPSS 0.2%CVE-2022-1098HIGHDelta Electronics DIAEnergie Uncontrolledly Search Path ElementEPSS 0.2%CVE-2022-22736HIGHIf Firefox was installed to a world-writable directory, a local privilege escalation could occur when Firefox searched the current directoryEPSS 0.2%