Falhas do tipo CWE-427

897 resultados

Caminho de busca ou elemento não controlado

A aplicação procura por um recurso (arquivo, biblioteca, módulo) em múltiplos diretórios sem validar ou controlar a ordem de busca, permitindo que um atacante injete um arquivo malicioso em um caminho que será verificado primeiro. Isso leva a execução de código não autorizado ou bypass de controles de segurança.

Exemplo

Um programa em C carrega uma biblioteca dinâmica (DLL no Windows ou SO no Linux) procurando em diretórios listados em uma variável de ambiente. Se o atacante conseguir escrever um arquivo malicioso com o mesmo nome em um diretório anterior da busca (como o diretório atual), a aplicação carrega a versão maliciosa sem questionar.

Como mitigar

Use caminhos absolutos e hardcoded para recursos críticos; nunca confie em variáveis de ambiente para localizá-los. Valide hash ou assinatura digital de bibliotecas carregadas e restrinja permissões de escrita nos diretórios de busca apenas ao administrador.

CVE-2026-87530HIGHUncontrolled search path element in CredentialProvider in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to exeEPSS 0.1%CVE-2025-13152HIGHA potential DLL hijacking vulnerability was reported in Lenovo One Client during an internal security assessment that could allow a local auEPSS 0.1%CVE-2025-20106MEDIUMUncontrolled search path in some software installer for some VTune(TM) Profiler software and Intel(R) oneAPI Base Toolkits before version 20EPSS 0.1%CVE-2025-21093MEDIUMUncontrolled search path element for some Intel(R) Driver &amp; Support Assistant Tool software before version 24.6.49.8 may allow an authenEPSS 0.1%CVE-2026-21420HIGHDell Repository Manager (DRM), versions prior to 3.4.8, contains an Uncontrolled Search Path Element vulnerability. A low privileged attackeEPSS 0.1%CVE-2025-30506MEDIUMUncontrolled search path for some Intel Driver and Support Assistant before version 25.2 within Ring 3: User Applications may allow an escalEPSS 0.1%CVE-2026-50100HIGHMultiple printer drivers provided by Ricoh Company, Ltd. and KONICA MINOLTA JAPAN, INC. contain a privilege escalation vulnerability. If thiEPSS 0.1%CVE-2026-8637HIGHA potential uncontrolled search path vulnerability was reported in the LanSchool Classic client application that could allow a local authentEPSS 0.1%CVE-2025-57836HIGHAn issue was discovered in Samsung Magician 6.3.0 through 8.3.2 on Windows. The installer creates a temporary folder with weak permissions dEPSS 0.1%CVE-2026-41373MEDIUMOpenClaw < 2026.3.31 - Compiler Binary Substitution via Environment Variable Override in Host Execution PolicyEPSS 0.1%CVE-2025-14821HIGHLibssh: libssh: insecure default configuration leads to local man-in-the-middle attacks on windowsEPSS 0.1%CVE-2025-20627MEDIUMUncontrolled search path for some Intel(R) oneAPI DPC++/C++ Compiler software before version 2025.0.1 may allow an authenticated user to potEPSS 0.1%CVE-2025-20017MEDIUMUncontrolled search path for some Intel(R) oneAPI Toolkit and component software installers may allow an authenticated user to potentially eEPSS 0.1%CVE-2025-20048MEDIUMUncontrolled search path for the Intel(R) Trace Analyzer and Collector software all verions may allow an authenticated user to potentially eEPSS 0.1%CVE-2025-22838MEDIUMUncontrolled search path for some Intel(R) RealSense(TM) Dynamic Calibrator software before version 2.14.2.0 may allow an authenticated userEPSS 0.1%CVE-2025-24923MEDIUMUncontrolled search path in some Intel(R) AI for Enterprise Retrieval-augmented Generation software may allow an authenticated user to potenEPSS 0.1%CVE-2026-56795HIGHDell Server Update Utility, versions prior to 26.07.01, contains an Uncontrolled Search Path Element vulnerability. A low privileged attackeEPSS 0.1%CVE-2026-45221HIGHKonga < 2.1.0 Privilege Escalation via Hardcoded OpenSSL PathEPSS 0.1%CVE-2026-6788HIGHUncontrolled search path in PluginLauncher allows SYSTEM code execution in WatchGuard AgentEPSS 0.1%CVE-2026-5397HIGHVulnerability Related to an Uncontrolled Search Path Element in a UPS Management ApplicationEPSS 0.1%