Falhas do tipo CWE-428

355 resultados

Caminho de busca sem aspas ou elemento desprotegido

Ocorre quando um programa busca executar um arquivo ou carregar uma biblioteca sem aspas no caminho, ou sem validar o local exato. Um atacante coloca um arquivo malicioso em um diretório anterior da busca, forçando o programa a executar o arquivo dele em vez do legítimo.

Exemplo

Um instalador Windows tenta executar 'C:\Program Files\Aplicacao\bin\tool.exe' sem aspas. Se o caminho contém espaço e o programa busca executáveis também em diretórios do sistema, um atacante cria 'C:\Program.exe' que será carregado antes.

Como mitigar

Use caminhos absolutos com aspas duplas em toda chamada de programa ou biblioteca (ex: '"C:\\Caminho Completo\\arquivo.exe"'). Valide e normalize todos os caminhos dinâmicos antes de usar, rejeitando qualquer que não corresponda exatamente ao esperado.

CVE-2024-58288HIGHGenexus Protection Server 9.7.2.10 Unquoted Service Path Privilege EscalationEPSS 0.4%CVE-2020-7581A vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2), Opcenter Execution Foundation (All versions < V3.2EPSS 0.4%CVE-2020-8337An unquoted search path vulnerability was reported in versions prior to 1.0.83.0 of the Synaptics Smart Audio UWP app associated with the DCEPSS 0.4%CVE-2017-14030An issue was discovered in Moxa MXview v2.8 and prior. The unquoted service path escalation vulnerability could allow an authorized user witEPSS 0.4%CVE-2020-1988MEDIUMGlobal Protect Agent: Local privilege escalation due to an unquoted search path vulnerabilityEPSS 0.4%CVE-2020-8327HIGHA privilege escalation vulnerability was reported in LenovoBatteryGaugePackage for Lenovo System Interface Foundation bundled in Lenovo VantEPSS 0.4%CVE-2019-25269HIGHAmiti Antivirus 25.0.640 - Unquoted Service Path VulnerabilityEPSS 0.3%CVE-2019-25271HIGHNETGATE Data Backup 3.0.620 - 'NGDatBckpSrv' Unquoted Service PathEPSS 0.3%CVE-2023-2417MEDIUMks-soft Advanced Host Monitor rma_active.exe unquoted search pathEPSS 0.3%CVE-2024-9325HIGHIntelbras InControl incontrol-service-watchdog.exe unquoted search pathEPSS 0.3%CVE-2020-10051A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). Multiple services of the affected applicationEPSS 0.3%CVE-2025-39246MEDIUMThere is an Unquoted Service Path Vulnerability in some HikCentral FocSign versions. This could allow an authenticated user to potentially eEPSS 0.3%CVE-2021-23879MEDIUMUnquoted service path vulnerability in McAfee Endpoint Product Removal (EPR) Tool prior to 21.2 allows local administrators to execute arbitrary code, with higher-level privileges, via execution from a compromised folder. The tool did not enforce and ...EPSS 0.3%CVE-2025-4540HIGHMTSoftware C-Lodop CLodopPrintService unquoted search pathEPSS 0.3%CVE-2020-7275MEDIUMUnquoted service paths for some McAfee ENS filesEPSS 0.3%CVE-2021-47773HIGHDynojet Power Core 2.3.0 - Unquoted Service PathEPSS 0.3%CVE-2024-8975HIGHGrafana Alloy on Windows Unquoted service pathEPSS 0.3%CVE-2022-44264HIGHDentsply Sirona Sidexis <= 4.3 is vulnerable to Unquoted Service Path.EPSS 0.3%CVE-2020-7382MEDIUMUnquoted Path in Rapid7 Nexpose InstallerEPSS 0.3%CVE-2023-7043LOWUnquoted path privilege vulnerability in ESET products for WindowsEPSS 0.3%