Fallos del tipo CWE-427

897 resultados

Busca descontrolada em caminho ou elemento

Ocorre quando uma aplicação procura por um arquivo, biblioteca ou recurso em um caminho sem validação adequada, permitindo que um atacante injete ou substitua o alvo da busca. Um adversário pode colocar um arquivo malicioso em um diretório que será encontrado primeiro, ou manipular a ordem de busca, fazendo o programa executar código não autorizado.

Ejemplo

Um programa busca por uma DLL em C:\Windows\System32 e depois no diretório atual. Se o atacante colocar uma DLL maliciosa no diretório de trabalho, ela será carregada em vez da legítima. Ou um script shell procura por um binário em PATH sem caminho absoluto — um atacante cria uma versão maliciosa em um diretório que vem antes na busca.

Cómo mitigar

Use caminhos absolutos e canonicalizados em vez de busca por caminho; valide cada etapa da resolução antes de usar o recurso; configure permissões restritivas em diretórios de busca e remova diretórios modificáveis do PATH. Em tempo de execução, carregue apenas recursos de locais pré-definidos e confiáveis.

CVE-2026-87530HIGHUncontrolled search path element in CredentialProvider in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to exeEPSS 0.1%CVE-2025-13152HIGHA potential DLL hijacking vulnerability was reported in Lenovo One Client during an internal security assessment that could allow a local auEPSS 0.1%CVE-2025-20106MEDIUMUncontrolled search path in some software installer for some VTune(TM) Profiler software and Intel(R) oneAPI Base Toolkits before version 20EPSS 0.1%CVE-2025-21093MEDIUMUncontrolled search path element for some Intel(R) Driver &amp; Support Assistant Tool software before version 24.6.49.8 may allow an authenEPSS 0.1%CVE-2026-21420HIGHDell Repository Manager (DRM), versions prior to 3.4.8, contains an Uncontrolled Search Path Element vulnerability. A low privileged attackeEPSS 0.1%CVE-2025-30506MEDIUMUncontrolled search path for some Intel Driver and Support Assistant before version 25.2 within Ring 3: User Applications may allow an escalEPSS 0.1%CVE-2026-50100HIGHMultiple printer drivers provided by Ricoh Company, Ltd. and KONICA MINOLTA JAPAN, INC. contain a privilege escalation vulnerability. If thiEPSS 0.1%CVE-2026-8637HIGHA potential uncontrolled search path vulnerability was reported in the LanSchool Classic client application that could allow a local authentEPSS 0.1%CVE-2025-57836HIGHAn issue was discovered in Samsung Magician 6.3.0 through 8.3.2 on Windows. The installer creates a temporary folder with weak permissions dEPSS 0.1%CVE-2026-41373MEDIUMOpenClaw < 2026.3.31 - Compiler Binary Substitution via Environment Variable Override in Host Execution PolicyEPSS 0.1%CVE-2025-14821HIGHLibssh: libssh: insecure default configuration leads to local man-in-the-middle attacks on windowsEPSS 0.1%CVE-2025-20627MEDIUMUncontrolled search path for some Intel(R) oneAPI DPC++/C++ Compiler software before version 2025.0.1 may allow an authenticated user to potEPSS 0.1%CVE-2025-20017MEDIUMUncontrolled search path for some Intel(R) oneAPI Toolkit and component software installers may allow an authenticated user to potentially eEPSS 0.1%CVE-2025-20048MEDIUMUncontrolled search path for the Intel(R) Trace Analyzer and Collector software all verions may allow an authenticated user to potentially eEPSS 0.1%CVE-2025-22838MEDIUMUncontrolled search path for some Intel(R) RealSense(TM) Dynamic Calibrator software before version 2.14.2.0 may allow an authenticated userEPSS 0.1%CVE-2025-24923MEDIUMUncontrolled search path in some Intel(R) AI for Enterprise Retrieval-augmented Generation software may allow an authenticated user to potenEPSS 0.1%CVE-2026-56795HIGHDell Server Update Utility, versions prior to 26.07.01, contains an Uncontrolled Search Path Element vulnerability. A low privileged attackeEPSS 0.1%CVE-2026-45221HIGHKonga < 2.1.0 Privilege Escalation via Hardcoded OpenSSL PathEPSS 0.1%CVE-2026-6788HIGHUncontrolled search path in PluginLauncher allows SYSTEM code execution in WatchGuard AgentEPSS 0.1%CVE-2026-5397HIGHVulnerability Related to an Uncontrolled Search Path Element in a UPS Management ApplicationEPSS 0.1%