CWE-428 · 440 kayıt
Unquoted Search Path or Element
Bu sınıftaki CVE’ler
440 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
63Bu hafta | CVE-2023-38408Kavram kanıtı | The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if openbsd · openssh · CWE-428 | Kritik9,8 | — | %79,7 | 19 Tem 2023 |
40Planlayın | CVE-2019-17658Kavram kanıtı | An unquoted service path vulnerability in the FortiClient FortiTray component of FortiClientWindows v6.2.2 and prior allow an attacker to gafortinet · forticlient · CWE-428 | Kritik9,8 | — | %2,2 | 12 Mar 2020 |
39İzleyin | CVE-2020-9292İstismar yok | An unquoted service path vulnerability in the FortiSIEM Windows Agent component may allow an attacker to gain elevated privileges via the Aofortinet · fortisiem windows agent · CWE-428 | Kritik9,8 | — | %1,5 | 4 Haz 2020 |
39İzleyin | CVE-2020-14521İstismar yok | Mitsubishi Electric Factory Automation Engineering Products Unquoted Search Path or Elementmitsubishielectric · c controller interface module utility · CWE-428 | Kritik9,8 | — | %1,3 | 11 Şub 2022 |
39İzleyin | CVE-2019-8459İstismar yok | Check Point Endpoint Security Client for Windows, with the VPN blade, before version E80.83, starts a process without using quotes in the pacheckpoint · jumbo hotfix for endpoint security server · CWE-428 | Kritik9,8 | — | %1,2 | 20 Haz 2019 |
39İzleyin | CVE-2022-36344İstismar yok | An unquoted search path vulnerability exists in 'JustSystems JUST Online Update for J-License' bundled with multiple products for corporate justsystems · atok medical 2 · CWE-428 | Kritik9,8 | — | %0,9 | 16 Ağu 2022 |
36İzleyin | CVE-2024-24722İstismar yok | An unquoted service path vulnerability in the 12d Synergy Server and File Replication Server components may allow an attacker to gain elevat12dsynergy · 12dsynergy · CWE-428 | Kritik9,1 | — | %0,6 | 19 Şub 2024 |
36İzleyin | CVE-2025-8070İstismar yok | Windows service registered with an unquoted ImagePath vulnerability in the system registryasustor · abp and aes · CWE-428 | Kritik9,2 | — | %0,2 | 23 Tem 2025 |
35İzleyin | CVE-2020-27645İstismar yok | The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing %PROGRAMFILES%\1E\Client\Tachyon.Performance.1e · client · CWE-428 | Yüksek8,8 | — | %1,2 | 29 Ara 2020 |
35İzleyin | CVE-2020-27644İstismar yok | The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing %PROGRAMFILES%\1E\Client\Tachyon.Performance.1e · client · CWE-428 | Yüksek8,8 | — | %1,2 | 29 Ara 2020 |
35İzleyin | CVE-2016-5793İstismar yok | Unquoted Windows search path vulnerability in Moxa Active OPC Server before 2.4.19 allows local users to gain privileges via a Trojan horse moxa · active opc server · CWE-428 | Yüksek8,8 | — | %0,4 | 24 Eyl 2016 |
35İzleyin | CVE-2025-12507İstismar yok | Insecure service configuration – unquoted pathbizerba · _connect.brain · CWE-428 | Yüksek8,8 | — | %0,1 | 31 Eki 2025 |
34İzleyin | CVE-2016-20058İstismar yok | Netgate AMITI Antivirus build 23.0.305 Unquoted Service Path Privilege Escalationnetgate · amiti antivirus · CWE-428 | Yüksek8,5 | — | %0,7 | 4 Nis 2026 |
34İzleyin | CVE-2016-20057İstismar yok | NETGATE Registry Cleaner build 16.0.205 Unquoted Service Path Privilege Escalationnetgate · registry cleaner · CWE-428 | Yüksek8,5 | — | %0,6 | 4 Nis 2026 |
34İzleyin | CVE-2025-66575İstismar yok | VeeVPN 1.6.1 - Unquoted Service Path Remote Code Executionveepn · veepn · CWE-428 | Yüksek8,5 | — | %0,5 | 4 Ara 2025 |
34İzleyin | CVE-2022-50935İstismar yok | FLAME II MODEM USB - Unquoted Service Pathtelcel · flame ii modem usb · CWE-428 | Yüksek8,5 | — | %0,4 | 13 Oca 2026 |
34İzleyin | CVE-2024-58288İstismar yok | Genexus Protection Server 9.7.2.10 Unquoted Service Path Privilege Escalationgenexus · genexus protection server · CWE-428 | Yüksek8,7 | — | %0,4 | 11 Ara 2025 |
34İzleyin | CVE-2019-25269İstismar yok | Amiti Antivirus 25.0.640 - Unquoted Service Path Vulnerabilitynetgate · amiti antivirus · CWE-428 | Yüksek8,5 | — | %0,3 | 4 Şub 2026 |
34İzleyin | CVE-2019-25271İstismar yok | NETGATE Data Backup 3.0.620 - 'NGDatBckpSrv' Unquoted Service Pathnetgate · data backup · CWE-428 | Yüksek8,5 | — | %0,3 | 4 Şub 2026 |
34İzleyin | CVE-2021-47773İstismar yok | Dynojet Power Core 2.3.0 - Unquoted Service Pathdynojet · power core · CWE-428 | Yüksek8,5 | — | %0,3 | 15 Oca 2026 |
34İzleyin | CVE-2020-36879İstismar yok | Flexsense DiskBoss Service Unquoted Service Path Vulnerabilityflexsense · diskboss · CWE-428 | Yüksek8,5 | — | %0,3 | 5 Ara 2025 |
34İzleyin | CVE-2022-50901İstismar yok | Wondershare Dr.Fone 11.4.9 - 'DFWSIDService' Unquoted Service Pathwondershare · dr.fone · CWE-428 | Yüksek8,5 | — | %0,3 | 13 Oca 2026 |
34İzleyin | CVE-2022-50903İstismar yok | Wondershare MobileTrans 3.5.9 - 'ElevationService' Unquoted Service Pathwondershare · mobiletrans · CWE-428 | Yüksek8,5 | — | %0,3 | 13 Oca 2026 |
34İzleyin | CVE-2020-36928İstismar yok | Brother BRAgent 1.38 - 'WBA_Agent_Client' Unquoted Service Pathbrother · bragent · CWE-428 | Yüksek8,5 | — | %0,3 | 15 Oca 2026 |
34İzleyin | CVE-2021-47787İstismar yok | TotalAV 5.15.69 - Unquoted Service Pathtotalav · totalav · CWE-428 | Yüksek8,5 | — | %0,3 | 15 Oca 2026 |
- CVE-2023-3840863Bu hafta
The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if
KritikCVSS 9,8Kavram kanıtıEPSS %80openbsd · openssh19 Tem 2023
- CVE-2019-1765840Planlayın
An unquoted service path vulnerability in the FortiClient FortiTray component of FortiClientWindows v6.2.2 and prior allow an attacker to ga
KritikCVSS 9,8Kavram kanıtıEPSS %2fortinet · forticlient12 Mar 2020
- CVE-2020-929239İzleyin
An unquoted service path vulnerability in the FortiSIEM Windows Agent component may allow an attacker to gain elevated privileges via the Ao
KritikCVSS 9,8İstismar yokEPSS %2fortinet · fortisiem windows agent4 Haz 2020
- CVE-2020-1452139İzleyin
Mitsubishi Electric Factory Automation Engineering Products Unquoted Search Path or Element
KritikCVSS 9,8İstismar yokEPSS %1mitsubishielectric · c controller interface module utility11 Şub 2022
- CVE-2019-845939İzleyin
Check Point Endpoint Security Client for Windows, with the VPN blade, before version E80.83, starts a process without using quotes in the pa
KritikCVSS 9,8İstismar yokEPSS %1checkpoint · jumbo hotfix for endpoint security server20 Haz 2019
- CVE-2022-3634439İzleyin
An unquoted search path vulnerability exists in 'JustSystems JUST Online Update for J-License' bundled with multiple products for corporate
KritikCVSS 9,8İstismar yokEPSS %1justsystems · atok medical 216 Ağu 2022
- CVE-2024-2472236İzleyin
An unquoted service path vulnerability in the 12d Synergy Server and File Replication Server components may allow an attacker to gain elevat
KritikCVSS 9,1İstismar yokEPSS %112dsynergy · 12dsynergy19 Şub 2024
- CVE-2025-807036İzleyin
Windows service registered with an unquoted ImagePath vulnerability in the system registry
KritikCVSS 9,2İstismar yokEPSS %0asustor · abp and aes23 Tem 2025
- CVE-2020-2764535İzleyin
The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing %PROGRAMFILES%\1E\Client\Tachyon.Performance.
YüksekCVSS 8,8İstismar yokEPSS %11e · client29 Ara 2020
- CVE-2020-2764435İzleyin
The Inventory module of the 1E Client 5.0.0.745 doesn't handle an unquoted path when executing %PROGRAMFILES%\1E\Client\Tachyon.Performance.
YüksekCVSS 8,8İstismar yokEPSS %11e · client29 Ara 2020
- CVE-2016-579335İzleyin
Unquoted Windows search path vulnerability in Moxa Active OPC Server before 2.4.19 allows local users to gain privileges via a Trojan horse
YüksekCVSS 8,8İstismar yokEPSS %0moxa · active opc server24 Eyl 2016
- CVE-2025-1250735İzleyin
Insecure service configuration – unquoted path
YüksekCVSS 8,8İstismar yokEPSS %0bizerba · _connect.brain31 Eki 2025
- CVE-2016-2005834İzleyin
Netgate AMITI Antivirus build 23.0.305 Unquoted Service Path Privilege Escalation
YüksekCVSS 8,5İstismar yokEPSS %1netgate · amiti antivirus4 Nis 2026
- CVE-2016-2005734İzleyin
NETGATE Registry Cleaner build 16.0.205 Unquoted Service Path Privilege Escalation
YüksekCVSS 8,5İstismar yokEPSS %1netgate · registry cleaner4 Nis 2026
- CVE-2025-6657534İzleyin
VeeVPN 1.6.1 - Unquoted Service Path Remote Code Execution
YüksekCVSS 8,5İstismar yokEPSS %0veepn · veepn4 Ara 2025
- CVE-2022-5093534İzleyin
FLAME II MODEM USB - Unquoted Service Path
YüksekCVSS 8,5İstismar yokEPSS %0telcel · flame ii modem usb13 Oca 2026
- CVE-2024-5828834İzleyin
Genexus Protection Server 9.7.2.10 Unquoted Service Path Privilege Escalation
YüksekCVSS 8,7İstismar yokEPSS %0genexus · genexus protection server11 Ara 2025
- CVE-2019-2526934İzleyin
Amiti Antivirus 25.0.640 - Unquoted Service Path Vulnerability
YüksekCVSS 8,5İstismar yokEPSS %0netgate · amiti antivirus4 Şub 2026
- CVE-2019-2527134İzleyin
NETGATE Data Backup 3.0.620 - 'NGDatBckpSrv' Unquoted Service Path
YüksekCVSS 8,5İstismar yokEPSS %0netgate · data backup4 Şub 2026
- CVE-2021-4777334İzleyin
Dynojet Power Core 2.3.0 - Unquoted Service Path
YüksekCVSS 8,5İstismar yokEPSS %0dynojet · power core15 Oca 2026
- CVE-2020-3687934İzleyin
Flexsense DiskBoss Service Unquoted Service Path Vulnerability
YüksekCVSS 8,5İstismar yokEPSS %0flexsense · diskboss5 Ara 2025
- CVE-2022-5090134İzleyin
Wondershare Dr.Fone 11.4.9 - 'DFWSIDService' Unquoted Service Path
YüksekCVSS 8,5İstismar yokEPSS %0wondershare · dr.fone13 Oca 2026
- CVE-2022-5090334İzleyin
Wondershare MobileTrans 3.5.9 - 'ElevationService' Unquoted Service Path
YüksekCVSS 8,5İstismar yokEPSS %0wondershare · mobiletrans13 Oca 2026
- CVE-2020-3692834İzleyin
Brother BRAgent 1.38 - 'WBA_Agent_Client' Unquoted Service Path
YüksekCVSS 8,5İstismar yokEPSS %0brother · bragent15 Oca 2026
- CVE-2021-4778734İzleyin
TotalAV 5.15.69 - Unquoted Service Path
YüksekCVSS 8,5İstismar yokEPSS %0totalav · totalav15 Oca 2026