Fallos del tipo CWE-427

896 resultados

Busca descontrolada em caminho ou elemento

Ocorre quando uma aplicação procura por um arquivo, biblioteca ou recurso em um caminho sem validação adequada, permitindo que um atacante injete ou substitua o alvo da busca. Um adversário pode colocar um arquivo malicioso em um diretório que será encontrado primeiro, ou manipular a ordem de busca, fazendo o programa executar código não autorizado.

Ejemplo

Um programa busca por uma DLL em C:\Windows\System32 e depois no diretório atual. Se o atacante colocar uma DLL maliciosa no diretório de trabalho, ela será carregada em vez da legítima. Ou um script shell procura por um binário em PATH sem caminho absoluto — um atacante cria uma versão maliciosa em um diretório que vem antes na busca.

Cómo mitigar

Use caminhos absolutos e canonicalizados em vez de busca por caminho; valide cada etapa da resolução antes de usar o recurso; configure permissões restritivas em diretórios de busca e remova diretórios modificáveis do PATH. Em tempo de execução, carregue apenas recursos de locais pré-definidos e confiáveis.

CVE-2025-34423HIGHMailEnable < 10.54 DLL Hijacking via Unsafe Loading of MEAIAU.DLLEPSS 0.2%CVE-2025-11772MEDIUMCo-Installer Privilege EscalationEPSS 0.2%CVE-2025-9000HIGHMechrevo Control Center GX V2 reg File uncontrolled search pathEPSS 0.2%CVE-2024-33672HIGHAn issue was discovered in Veritas NetBackup before 10.4. The Multi-Threaded Agent used in NetBackup can be leveraged to perform arbitrary fEPSS 0.2%CVE-2025-9016HIGHMechrevo Control Center GX V2 Powershell Script Command uncontrolled search pathEPSS 0.2%CVE-2025-34419HIGHMailEnable < 10.54 DLL Hijacking via Unsafe Loading of MEAISM.DLLEPSS 0.2%CVE-2025-34418HIGHMailEnable < 10.54 DLL Hijacking via Unsafe Loading of MEAIMF.DLLEPSS 0.2%CVE-2024-2637HIGHInsecure Loading of Code in B&R ProductsEPSS 0.2%CVE-2026-91803HIGHSecurity Vulnerability Report – Foxit PDF Editor/Reader Updater DLL Search Path HijackingEPSS 0.2%CVE-2025-9201HIGHA potential DLL hijacking vulnerability was discovered in Lenovo Browser during an internal security assessment that could allow a local useEPSS 0.2%CVE-2025-49148HIGHClipShare Server Allows Local Privilege Escalation via DLL HijackingEPSS 0.2%CVE-2024-55543HIGHLocal privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) beforEPSS 0.2%CVE-2026-3787HIGHUltraVNC Windows Service cryptbase.dll uncontrolled search pathEPSS 0.2%CVE-2024-2208HIGHSound Research SECOMN64 Escalation of PrivilegeEPSS 0.2%CVE-2026-26050HIGHThe installer for ジョブログ集計/分析ソフトウェア RICOHジョブログ集計ツール versions prior to Ver.1.3.7 contains an issue with the DLL search path, which may lead toEPSS 0.2%CVE-2025-64995MEDIUMPrivilege Escalation via Process Hijacking in 1E-Exchange-NomadClientHealth-ConfigureGeneralSetting instructionEPSS 0.2%CVE-2026-50773HIGHAn issue in CGM Germany - CompuGroup Medical CGM ISIS MED 2510.1.0.20 allows a remote attacker to execute arbtirary code via a crafted .dll EPSS 0.2%CVE-2022-27187MEDIUMUncontrolled search path element in the Intel(R) Quartus Prime Standard edition software before version 21.1 Patch 0.02std may allow an authEPSS 0.2%CVE-2024-26017MEDIUMUncontrolled search path in some Intel(R) Rendering Toolkit software before version 2024.1.0 may allow an authenticated user to potentially EPSS 0.2%CVE-2025-53395HIGHParamount Macrium Reflect through 2025-06-26 allows local attackers to execute arbitrary code with administrator privileges via a crafted .mEPSS 0.2%