Falhas do tipo CWE-427

842 resultados
CVE-2026-30896HIGHThe installer for Qsee Client versions 1.0.1 and prior insecurely load Dynamic Link Libraries (DLLs). When a user is directed to place some EPSS 0.2%CVE-2022-27187MEDIUMUncontrolled search path element in the Intel(R) Quartus Prime Standard edition software before version 21.1 Patch 0.02std may allow an authEPSS 0.2%CVE-2024-38668MEDIUMUncontrolled search path for some Intel(R) Quartus(R) Prime Standard Edition software for Windows before version 23.1.1 may allow an authentEPSS 0.2%CVE-2026-28704HIGHEmocheck insecurely loads Dynamic Link Libraries (DLLs). If a crafted DLL file is placed to the same directory, an arbitrary code may be exeEPSS 0.2%CVE-2026-26050HIGHThe installer for ジョブログ集計/分析ソフトウェア RICOHジョブログ集計ツール versions prior to Ver.1.3.7 contains an issue with the DLL search path, which may lead toEPSS 0.2%CVE-2024-38383MEDIUMUncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition software for Windows before version 24.2 may allow an authenticated EPSS 0.2%CVE-2025-11940HIGHLibreWolf Installer setup.nsi uncontrolled search pathEPSS 0.2%CVE-2025-4532HIGHShanghai Bairui Information Technology SunloginClient sunlogin_guard.exe uncontrolled search pathEPSS 0.2%CVE-2025-33229HIGHNVIDIA Nsight Visual Studio for Windows contains a vulnerability in Nsight Monitor where an attacker can execute arbitrary code with the samEPSS 0.2%CVE-2025-53395HIGHParamount Macrium Reflect through 2025-06-26 allows local attackers to execute arbitrary code with administrator privileges via a crafted .mEPSS 0.2%CVE-2025-34396HIGHMailEnable < 10.54 DLL Hijacking via Unsafe Loading of MEAINFY.DLLEPSS 0.2%CVE-2026-2538HIGHFlos Freeware Notepad2 Msimg32.dll uncontrolled search pathEPSS 0.2%CVE-2021-33064MEDIUMUncontrolled search path in the software installer for Intel(R) System Studio for all versions, may allow an authenticated user to potentialEPSS 0.2%CVE-2025-26859HIGHRemoteView PC Application Console versions prior to 6.0.2 contain an uncontrolled search path element vulnerability. If a crafted DLL is plaEPSS 0.2%CVE-2025-26861HIGHRemoteCall Remote Support Program (for Operator) versions prior to 5.3.0 contain an uncontrolled search path element vulnerability. If a craEPSS 0.2%CVE-2025-10213HIGHDLL search path hijacking vulnerabilityEPSS 0.2%CVE-2025-4272HIGHMechrevo Control Console GCUService csCAPI.dll uncontrolled search pathEPSS 0.2%CVE-2022-27638MEDIUMUncontrolled search path element in the Intel(R) Advanced Link Analyzer Pro before version 22.2 and Standard edition software before versionEPSS 0.2%CVE-2025-10215HIGHDLL search path hijacking vulnerabilityEPSS 0.2%CVE-2023-31197MEDIUMUncontrolled search path in the Intel(R) Trace Analyzer and Collector before version 2020 update 3 may allow an authenticated user to potentEPSS 0.2%