Fallos del tipo CWE-427

896 resultados

Busca descontrolada em caminho ou elemento

Ocorre quando uma aplicação procura por um arquivo, biblioteca ou recurso em um caminho sem validação adequada, permitindo que um atacante injete ou substitua o alvo da busca. Um adversário pode colocar um arquivo malicioso em um diretório que será encontrado primeiro, ou manipular a ordem de busca, fazendo o programa executar código não autorizado.

Ejemplo

Um programa busca por uma DLL em C:\Windows\System32 e depois no diretório atual. Se o atacante colocar uma DLL maliciosa no diretório de trabalho, ela será carregada em vez da legítima. Ou um script shell procura por um binário em PATH sem caminho absoluto — um atacante cria uma versão maliciosa em um diretório que vem antes na busca.

Cómo mitigar

Use caminhos absolutos e canonicalizados em vez de busca por caminho; valide cada etapa da resolução antes de usar o recurso; configure permissões restritivas em diretórios de busca e remova diretórios modificáveis do PATH. Em tempo de execução, carregue apenas recursos de locais pré-definidos e confiáveis.

CVE-2024-23909MEDIUMUncontrolled search path in some Intel(R) FPGA SDK for OpenCL(TM) software technology may allow an authenticated user to potentially enable EPSS 0.1%CVE-2024-22184MEDIUMUncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition Design Software before version 24.1 may allow an authenticated user EPSS 0.1%CVE-2025-53394HIGHParamount Macrium Reflect through 2025-06-26 allows attackers to execute arbitrary code with administrator privileges via a crafted .mrimgx EPSS 0.1%CVE-2025-1700HIGHA DLL hijacking vulnerability was reported in the Motorola Software Fix (Rescue and Smart Assistant) installer that could allow a local attaEPSS 0.1%CVE-2025-57624HIGHA DLL hijacking vulnerability in CYRISMA Agent before 444 allows local users to escalate privileges and execute arbitrary code via multiple EPSS 0.1%CVE-2025-48506HIGHUncontrolled search paths in Vitis™ Unified installation path on local Windows machines could allow DLL injection into these install paths, EPSS 0.1%CVE-2025-64726HIGHExternal Control of System or Configuration Setting and Uncontrolled Search Path Element in sfwEPSS 0.1%CVE-2026-3091MEDIUMAn uncontrolled search path element vulnerability in Synology Presto Client before 2.1.3-0672 allows local users to read or write arbitrary EPSS 0.1%CVE-2026-12003MEDIUMCPython >3.11 Insecure Input Validation resulting in privilege escalationEPSS 0.1%CVE-2026-2713HIGHIBM Trusteer Rapport installer affected by uncontrolled search path element vulnerabilityEPSS 0.1%CVE-2025-14625MEDIUMQuartus® Prime Standard and Quartus® Prime Lite Security AdvisoryEPSS 0.1%CVE-2025-1729MEDIUMA DLL hijacking vulnerability was reported in TrackPoint Quick Menu software that, under certain conditions, could allow a local attacker toEPSS 0.1%CVE-2025-60749HIGHDLL Hijacking vulnerability in Trimble SketchUp desktop 2025 via crafted libcef.dll used by sketchup_webhelper.exe.EPSS 0.1%CVE-2025-67450HIGHDue to insecure library loading in the Eaton UPS Companion software executable, an attacker with access to the software package could perfEPSS 0.1%CVE-2026-25191HIGHThe installer of FinalCode Client provided by Digital Arts Inc. contains an issue with the DLL search path. If a user is directed to place aEPSS 0.1%CVE-2026-45004HIGHOpenClaw < 2026.4.23 - Arbitrary Code Execution via setup-api.js in Current Working DirectoryEPSS 0.1%CVE-2026-26306HIGHThe installer for OM Workspace (Windows Edition) Ver 2.4 and earlier insecurely loads Dynamic Link Libraries (DLLs), which could allow an atEPSS 0.1%CVE-2025-10089HIGHMalicious Code Execution Vulnerability in Setting and Operation Application for Lighting Control System MILCO.SEPSS 0.1%CVE-2024-28876MEDIUMUncontrolled search path for some Intel(R) MPI Library software before version 2021.12 may allow an authenticated user to potentially enableEPSS 0.1%CVE-2024-28172MEDIUMUncontrolled search path for some Intel(R) Trace Analyzer and Collector software before version 2022.1 may allow an authenticated user to poEPSS 0.1%