İçeriğe atla
Noroxi

CWE-427 · 1.149 kayıt

Uncontrolled Search Path Element

Bu sınıftaki CVE’ler

1.148 kayıt

  • CVE-2020-27955
    64Bu hafta

    Git LFS 2.12.0 allows Remote Code Execution.

    KritikCVSS 9,8SilahlaştırılmışEPSS %82

    git large file storage project · git large file storage5 Kas 2020

  • CVE-2020-3153
    64Bu hafta

    Cisco AnyConnect Secure Mobility Client for Windows Uncontrolled Search Path Vulnerability

    OrtaCVSS 6,5KEVSilahlaştırılmışEPSS %28

    cisco · anyconnect secure mobility client19 Şub 2020

  • CVE-2020-3433
    64Bu hafta

    Cisco AnyConnect Secure Mobility Client for Windows DLL Hijacking Vulnerability

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %10

    cisco · anyconnect secure mobility client17 Ağu 2020

  • CVE-2017-6517
    53Planlayın

    Microsoft Skype 7.16.0.102 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on the ta

    KritikCVSS 9,8İstismar yokEPSS %46

    microsoft · skype23 Mar 2017

  • CVE-2017-3090
    42Planlayın

    Adobe Digital Editions versions 4.5.4 and earlier contain an insecure library loading vulnerability.

    KritikCVSS 9,8İstismar yokEPSS %8

    adobe · digital editions20 Haz 2017

  • CVE-2017-3092
    42Planlayın

    Adobe Digital Editions versions 4.5.4 and earlier contain an insecure library loading vulnerability.

    KritikCVSS 9,8İstismar yokEPSS %8

    adobe · digital editions20 Haz 2017

  • CVE-2017-3097
    41Planlayın

    Adobe Digital Editions versions 4.5.4 and earlier contain an insecure library loading vulnerability.

    KritikCVSS 9,8İstismar yokEPSS %7

    adobe · digital editions20 Haz 2017

  • CVE-2018-12805
    40Planlayın

    Adobe Connect versions 9.7.5 and earlier have an Insecure Library Loading vulnerability.

    KritikCVSS 9,8İstismar yokEPSS %4

    adobe · connect20 Tem 2018

  • CVE-2020-10515
    40Planlayın

    STARFACE UCC Client before 6.7.1.204 on WIndows allows binary planting to execute code with System rights, aka usd-2020-0006.

    KritikCVSS 9,8İstismar yokEPSS %3

    starface · unified communication \& collaboration client2 Nis 2020

  • CVE-2019-9546
    40Planlayın

    SolarWinds Orion Platform before 2018.4 Hotfix 2 allows privilege escalation through the RabbitMQ service.

    KritikCVSS 9,8İstismar yokEPSS %3

    solarwinds · orion platform1 Mar 2019

  • CVE-2019-7653
    40Planlayın

    The Debian python-rdflib-tools 4.2.2-1 package for RDFLib 4.2.2 has CLI tools that can load Python modules from the current working director

    KritikCVSS 9,8İstismar yokEPSS %2

    debian · debian linux8 Şub 2019

  • CVE-2023-25143
    40Planlayın

    An uncontrolled search path element vulnerability in the Trend Micro Apex One Server installer could allow an attacker to achieve a remote c

    KritikCVSS 9,8İstismar yokEPSS %2

    trendmicro · apex one10 Mar 2023

  • CVE-2021-28955
    40Planlayın

    git-bug before 0.7.2 has an Uncontrolled Search Path Element.

    KritikCVSS 9,8İstismar yokEPSS %2

    git-bug project · git-bug22 Mar 2021

  • CVE-2019-20856
    39İzleyin

    An issue was discovered in Mattermost Desktop App before 4.3.0 on macOS.

    KritikCVSS 9,8İstismar yokEPSS %1

    mattermost · mattermost desktop19 Haz 2020

  • CVE-2022-34825
    39İzleyin

    Uncontrolled Search Path Element in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earlier, CLUSTERPRO X 5.0

    KritikCVSS 9,8İstismar yokEPSS %1

    nec · expresscluster x8 Kas 2022

  • CVE-2024-23054
    39İzleyin

    An issue in Plone Docker Official Image 5.2.13 (5221) open-source software that could allow for remote code execution due to a package liste

    KritikCVSS 9,8İstismar yokEPSS %1

    plone · plone docker official image5 Şub 2024

  • CVE-2023-31543
    39İzleyin

    A dependency confusion in pipreqs v0.3.0 to v0.4.11 allows attackers to execute arbitrary code via uploading a crafted PyPI package to the c

    KritikCVSS 9,8İstismar yokEPSS %1

    pipreqs project · pipreqs30 Haz 2023

  • CVE-2022-24955
    39İzleyin

    Foxit PDF Reader before 11.2.1 and Foxit PDF Editor before 11.2.1 have an Uncontrolled Search Path Element for DLL files.

    KritikCVSS 9,8İstismar yokEPSS %1

    foxit · pdf reader10 Şub 2022

  • CVE-2025-4981
    39İzleyin

    Path Traversal Leading to RCE by Any Authenticated Mattermost User

    KritikCVSS 9,9İstismar yokEPSS %1

    mattermost · mattermost server20 Haz 2025

  • CVE-2026-65093
    39İzleyin

    NVIDIA OpenShell for Linux contains a vulnerability where an attacker could cause a sandbox escape.

    KritikCVSS 9,9İstismar yokEPSS %1

    nvidia · openshell25 Ağu 2026

  • CVE-2023-41117
    39İzleyin

    An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x be

    KritikCVSS 9,8İstismar yokEPSS %1

    enterprisedb · postgres advanced server12 Ara 2023

  • CVE-2026-16860
    39İzleyin

    IBM i is Affected By Remote Code Execution Vulnerability []

    KritikCVSS 9,9İstismar yokEPSS %1

    ibm · i12 Ağu 2026

  • CVE-2023-41790
    39İzleyin

    Traversal Path on PHP file

    KritikCVSS 9,8İstismar yokEPSS %1

    artica · pandora fms23 Kas 2023

  • CVE-2025-65741
    39İzleyin

    Sublime Text 3 Build 3208 or prior for MacOS is vulnerable to Dylib Injection.

    KritikCVSS 9,8Kavram kanıtıEPSS %1

    sublimetext · sublime text 39 Ara 2025

  • CVE-2019-20780
    39İzleyin

    An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software.

    KritikCVSS 9,8İstismar yokEPSS %0

    google · android17 Nis 2020

Tüm zafiyet sınıfları