Fallos del tipo CWE-427

896 resultados

Busca descontrolada em caminho ou elemento

Ocorre quando uma aplicação procura por um arquivo, biblioteca ou recurso em um caminho sem validação adequada, permitindo que um atacante injete ou substitua o alvo da busca. Um adversário pode colocar um arquivo malicioso em um diretório que será encontrado primeiro, ou manipular a ordem de busca, fazendo o programa executar código não autorizado.

Ejemplo

Um programa busca por uma DLL em C:\Windows\System32 e depois no diretório atual. Se o atacante colocar uma DLL maliciosa no diretório de trabalho, ela será carregada em vez da legítima. Ou um script shell procura por um binário em PATH sem caminho absoluto — um atacante cria uma versão maliciosa em um diretório que vem antes na busca.

Cómo mitigar

Use caminhos absolutos e canonicalizados em vez de busca por caminho; valide cada etapa da resolução antes de usar o recurso; configure permissões restritivas em diretórios de busca e remova diretórios modificáveis do PATH. Em tempo de execução, carregue apenas recursos de locais pré-definidos e confiáveis.

CVE-2024-39365MEDIUMUncontrolled search path for the FPGA Support Package for the Intel(R) oneAPI DPC++/C++ Compiler software for Windows before version 2024.2 EPSS 0.2%CVE-2024-37142HIGHDell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker could potentially eEPSS 0.2%CVE-2024-32938MEDIUMUncontrolled search path for some Intel(R) MPI Library for Windows software before version 2021.13 may allow an authenticated user to potentEPSS 0.2%CVE-2024-32857HIGHDell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker could potentially EPSS 0.2%CVE-2024-39284MEDIUMUncontrolled search path for some Intel(R) Advisor software before version 2024.2 may allow an authenticated user to potentially enable escaEPSS 0.2%CVE-2025-11761HIGHHP Client Management Script Library – Security UpdateEPSS 0.2%CVE-2024-36291MEDIUMUncontrolled search path for some Intel(R) Chipset Software Installation Utility before version 10.1.19867.8574 may allow an authenticated uEPSS 0.2%CVE-2024-24852MEDIUMUncontrolled search path in some Intel(R) Ethernet Adapter Complete Driver Pack install before versions 29.1 may allow an authenticated userEPSS 0.2%CVE-2023-29504MEDIUMUncontrolled search path element in some Intel(R) RealSense(TM) Dynamic Calibration software before version 2.13.1.0 may allow an authenticaEPSS 0.2%CVE-2024-21830MEDIUMUncontrolled search path in some Intel(R) VPL software before version 2023.4.0 may allow an authenticated user to potentially enable escalatEPSS 0.2%CVE-2024-36280MEDIUMUncontrolled search path for some Intel(R) High Level Synthesis Compiler software before version 24.2 may allow an authenticated user to potEPSS 0.2%CVE-2023-51711HIGHAn issue was discovered in Regify Regipay Client for Windows version 4.5.1.0 allows DLL hijacking: a user can trigger the execution of arbitEPSS 0.2%CVE-2024-39813MEDIUMUncontrolled search path for some EPCT software before version 1.42.8.0 may allow an authenticated user to potentially enable escalation of EPSS 0.2%CVE-2023-43751MEDIUMUncontrolled search path in Intel(R) Graphics Command Center Service bundled in some Intel(R) Graphics Windows DCH driver software before veEPSS 0.2%CVE-2021-31853HIGHMDE DLL Search Order Hijacking vulnerabilityEPSS 0.2%CVE-2023-41929HIGHA DLL hijacking vulnerability in Samsung Memory Card & UFD Authentication Utility PC Software before 1.0.1 could allow a local attacker to eEPSS 0.2%CVE-2023-3091HIGHCaptura CRYPTBASE.dll uncontrolled search pathEPSS 0.2%CVE-2023-22283MEDIUMBIG-IP Edge Client for Windows vulnerabilityEPSS 0.2%CVE-2022-0483—Local privilege escalation due to insecure folder permissionsEPSS 0.2%CVE-2024-21777MEDIUMUncontrolled search path in some Intel(R) Quartus(R) Prime Pro Edition Design software before version 23.4 may allow an authenticated user tEPSS 0.2%