Fallos del tipo CWE-428

356 resultados

Caminho de busca sem aspas ou elemento não delimitado

Ocorre quando um aplicativo executa um programa ou carrega uma biblioteca usando um caminho sem aspas ou delimitação adequada, permitindo que espaços ou caracteres especiais no caminho sejam interpretados como separadores. Um atacante pode explorar isso colocando um executável malicioso em um diretório com nome parcial que coincida com a busca (ex: 'C:\Program Files\' interpretado como 'C:\Program\'), fazendo o sistema executar código não autorizado.

Ejemplo

Um serviço Windows tenta executar 'C:\Program Files\MeuApp\service.exe' mas o caminho não está entre aspas. O sistema busca primeiro por 'C:\Program.exe', depois 'C:\Program Files\MeuApp\service.exe'. Um atacante cria 'C:\Program.exe' malicioso e consegue executá-lo com privilégios do serviço.

Cómo mitigar

Sempre delimite caminhos com aspas duplas ao executar programas ou carregar bibliotecas dinâmicas. Use APIs que validem caminhos explicitamente, evite concatenação de strings para construir paths, e mantenha diretórios sensíveis com permissões restritivas para impedir criação de arquivos não autorizados.

CVE-2025-66461HIGHFULLBACK Manager Pro provided by GS Yuasa International Ltd. registers two Windows services with unquoted file paths. A user may execute arEPSS 0.2%CVE-2022-50920HIGHSandboxie-Plus 5.50.2 - 'Service SbieSvc' Unquoted Service PathEPSS 0.2%CVE-2022-50904HIGHWondershare UBackit 2.0.5 - 'wsbackup' Unquoted Service PathEPSS 0.2%CVE-2022-50913HIGHTCQ - 'ITeCProteccioAppServer.exe' Unquoted Service PathEPSS 0.2%CVE-2019-25231HIGHdevolo dLAN Cockpit 4.3.1 Unquoted Service Path Privilege EscalationEPSS 0.2%CVE-2016-20060HIGHHotspot Shield 6.0.3 Unquoted Service Path Privilege EscalationEPSS 0.2%CVE-2025-5191HIGHUnquoted Search Path Vulnerability in the Utility for Industrial Computers (Windows)EPSS 0.1%CVE-2020-24682HIGHAutomation Studio and PVI Multiple unquoted service path vulnerabilitiesEPSS 0.1%CVE-2026-57223HIGHSuricata windows: unquoted LocalSystem service ImagePath can allow local privilege escalationEPSS 0.1%CVE-2021-47869HIGHBRAdmin Professional 3.75 - 'BRA_Scheduler' Unquoted Service PathEPSS 0.1%CVE-2021-47886HIGHPingzapper 2.3.1 - 'PingzapperSvc' Unquoted Service PathEPSS 0.1%CVE-2025-9818MEDIUMVulnerability caused by unquoted file paths of Windows services registered by the Uninterruptible Power Supply (UPS) management applicationEPSS 0.1%CVE-2021-47867HIGHWIN-PACK PRO 4.8 - 'ScheduleService' Unquoted Service PathEPSS 0.1%CVE-2021-47862HIGHHi-Rez Studios 5.1.6.3 - 'HiPatchService' Unquoted Service PathEPSS 0.1%CVE-2021-47887HIGHPrint Job Accounting 4.4.10 - 'OkiJaSvc' Unquoted Service PathEPSS 0.1%CVE-2021-47878HIGHeBeam Education Suite 2.5.0.9 - 'eBeam Device Service' Unquoted Service PathEPSS 0.1%CVE-2021-47879HIGHeBeam Interactive Suite 3.6 - 'eBeam Stylus Driver' Unquoted Service PathEPSS 0.1%CVE-2021-47883HIGHSandboxie Plus v0.7.2 - 'SbieSvc' Unquoted Service PathEPSS 0.1%CVE-2021-47861HIGHEvent Log Explorer 4.9.3 - 'ElodeaEventCollectorService' Unquoted Service PathEPSS 0.1%CVE-2021-47864HIGHOSAS Traverse Extension 11 - 'travextensionhostsvc' Unquoted Service PathEPSS 0.1%