Falhas do tipo CWE-427

842 resultados
CVE-2024-49592MEDIUMTrial installer for McAfee Total Protection (legacy trial installer software) 16.0.53 allows local privilege escalation because of an UncontEPSS 0.2%CVE-2022-41796HIGHUntrusted search path vulnerability in the installer of Content Transfer (for Windows) Ver.1.3 and prior allows an attacker to gain privilegEPSS 0.2%CVE-2023-35192MEDIUMUncontrolled search path in some Intel(R) GPA Framework software before version 2023.3 may allow an authenticated user to potentially enableEPSS 0.2%CVE-2023-34430MEDIUMUncontrolled search path in some Intel Battery Life Diagnostic Tool software before version 2.2.1 may allow an authenticated user to potentiEPSS 0.2%CVE-2023-41961MEDIUMUncontrolled search path in some Intel(R) GPA software before version 2023.3 may allow an authenticated user to potentially enable escalatioEPSS 0.2%CVE-2024-37127HIGHDell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker could potentially eEPSS 0.2%CVE-2024-22450HIGHDell Alienware Command Center, versions prior to 6.2.7.0, contain an uncontrolled search path element vulnerability. A local malicious user EPSS 0.2%CVE-2025-1131HIGHAsterisk Unsafe Shell Sourcing in safe_asterisk Leads to Local Privilege EscalationEPSS 0.2%CVE-2024-20430HIGHCisco Meraki Systems Manager Agent for Windows Privilege Escalation VulnerabilityEPSS 0.2%CVE-2024-32857HIGHDell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker could potentially EPSS 0.2%CVE-2024-37142HIGHDell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker could potentially eEPSS 0.2%CVE-2023-51711HIGHAn issue was discovered in Regify Regipay Client for Windows version 4.5.1.0 allows DLL hijacking: a user can trigger the execution of arbitEPSS 0.2%CVE-2025-43553HIGHSubstance3D - Modeler | Uncontrolled Search Path Element (CWE-427)EPSS 0.2%CVE-2023-29504MEDIUMUncontrolled search path element in some Intel(R) RealSense(TM) Dynamic Calibration software before version 2.13.1.0 may allow an authenticaEPSS 0.2%CVE-2023-43751MEDIUMUncontrolled search path in Intel(R) Graphics Command Center Service bundled in some Intel(R) Graphics Windows DCH driver software before veEPSS 0.2%CVE-2025-32780HIGHBleachBit for Windows Has DLL Untrusted Path VulnerabilityEPSS 0.2%CVE-2024-30117LOWHCL BigFix Platform is affected by a DLL Hijack vulnerabilityEPSS 0.2%CVE-2022-45422HIGHWhen LG SmartShare is installed, local privilege escalation is possible through DLL Hijacking attack. The LG ID is LVE-HOT-220005.EPSS 0.2%CVE-2023-32646MEDIUMUncontrolled search path element in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enaEPSS 0.2%CVE-2024-10068HIGHOpenSight Software FlashFXP FlashFXP.exe uncontrolled search pathEPSS 0.2%