CVE & Exploit Intelligence Database

Updated 1h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,274 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,563 researchers
1,099 results Clear all
CVE-2021-3606 7.8 HIGH EPSS 0.00
Openvpn < 2.5.3 - Uncontrolled Search Path
OpenVPN before version 2.5.3 on Windows allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (openvpn.exe).
CWE-427 Jul 02, 2021
CVE-2021-28570 8.3 HIGH EPSS 0.01
Adobe After Effects < 18.1 - Uncontrolled Search Path
Adobe After Effects version 18.1 (and earlier) is affected by an Uncontrolled Search Path element vulnerability. An unauthenticated attacker could exploit this to to plant custom binaries and execute them with System permissions. Exploitation of this issue requires user interaction.
CWE-427 Jun 28, 2021
CVE-2021-29949 7.8 HIGH EPSS 0.00
Mozilla Thunderbird < 78.9.1 - Uncontrolled Search Path
When loading the shared library that provides the OTR protocol implementation, Thunderbird will initially attempt to open it using a filename that isn't distributed by Thunderbird. If a computer has already been infected with a malicious library of the alternative filename, and the malicious library has been copied to a directory that is contained in the search path for executable libraries, then Thunderbird will load the incorrect library. This vulnerability affects Thunderbird < 78.9.1.
CWE-427 Jun 24, 2021
CVE-2021-21999 7.8 HIGH EPSS 0.00
Vmware App Volumes < 2.18.10 - Uncontrolled Search Path
VMware Tools for Windows (11.x.y prior to 11.2.6), VMware Remote Console for Windows (12.x prior to 12.0.1) , VMware App Volumes (2.x prior to 2.18.10 and 4 prior to 2103) contain a local privilege escalation vulnerability. An attacker with normal access to a virtual machine may exploit this issue by placing a malicious file renamed as `openssl.cnf' in an unrestricted directory which would allow code to be executed with elevated privileges.
CWE-427 Jun 23, 2021
CVE-2021-1567 7.0 HIGH EPSS 0.00
Cisco Anyconnect Secure Mobility Client - Uncontrolled Search Path
A vulnerability in the DLL loading mechanism of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to perform a DLL hijacking attack on an affected device if the VPN Posture (HostScan) Module is installed on the AnyConnect client. This vulnerability is due to a race condition in the signature verification process for DLL files that are loaded on an affected device. An attacker could exploit this vulnerability by sending a series of crafted interprocess communication (IPC) messages to the AnyConnect process. A successful exploit could allow the attacker to execute arbitrary code on the affected device with SYSTEM privileges. To exploit this vulnerability, the attacker must have valid credentials on the Windows system.
CWE-367 Jun 16, 2021
CVE-2021-34803 7.8 HIGH EPSS 0.00
Teamviewer < 9.0.259145 - Uncontrolled Search Path
TeamViewer before 14.7.48644 on Windows loads untrusted DLLs in certain situations.
CWE-427 Jun 16, 2021
CVE-2021-31840 7.3 HIGH EPSS 0.00
Mcafee Agent < 5.7.3 - Uncontrolled Search Path
A vulnerability in the preloading mechanism of specific dynamic link libraries in McAfee Agent for Windows prior to 5.7.3 could allow an authenticated, local attacker to perform a DLL preloading attack with unsigned DLLs. To exploit this vulnerability, the attacker would need to have valid credentials on the Windows system. This would result in the user gaining elevated permissions and being able to execute arbitrary code.
CWE-427 Jun 10, 2021
CVE-2021-23023 7.8 HIGH EPSS 0.00
BIG-IP Edge Client <7.2.1.3, 7.1.x <7.1.9.9 - DLL Hijacking
On version 7.2.1.x before 7.2.1.3 and 7.1.x before 7.1.9.9 Update 1, a DLL hijacking issue exists in cachecleaner.dll included in the BIG-IP Edge Client Windows Installer. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CWE-427 Jun 10, 2021
CVE-2021-3041 7.8 HIGH EPSS 0.00
Palo Alto Networks Cortex XDR <5.0.11, <6.1.8 - Privilege Escalation
A local privilege escalation vulnerability exists in the Palo Alto Networks Cortex XDR agent on Windows platforms that enables an authenticated local Windows user to execute programs with SYSTEM privileges. This requires the user to have the privilege to create files in the Windows root directory or to manipulate key registry values. This issue impacts: Cortex XDR agent 5.0 versions earlier than Cortex XDR agent 5.0.11; Cortex XDR agent 6.1 versions earlier than Cortex XDR agent 6.1.8; Cortex XDR agent 7.2 versions earlier than Cortex XDR agent 7.2.3; All versions of Cortex XDR agent 7.2 without content update release 171 or a later version.
CWE-427 Jun 10, 2021
CVE-2021-0108 7.3 HIGH EPSS 0.00
Intel Unite < 4.2.25031 - Uncontrolled Search Path
Uncontrolled search path in the Intel Unite(R) Client for Windows before version 4.2.25031 may allow an authenticated user to potentially enable an escalation of privilege via local access.
CWE-427 Jun 09, 2021
CVE-2021-0104 7.8 HIGH EPSS 0.01
Intel Rapid Storage Technology - Uncontrolled Search Path
Uncontrolled search path element in the installer for the Intel(R) Rapid Storage Technology software, before versions 17.9.0.34, 18.0.0.640 and 18.1.0.24, may allow an authenticated user to potentially enable escalation of privilege via local access.
CWE-427 Jun 09, 2021
CVE-2021-0090 7.3 HIGH EPSS 0.00
Intel Driver & Support Assistant - Uncontrolled Search Path
Uncontrolled search path element in Intel(R) DSA before version 20.11.50.9 may allow an authenticated user to potentially enable an escalation of privilege via local access.
CWE-427 Jun 09, 2021
CVE-2021-0057 7.8 HIGH EPSS 0.00
Intel Lapbc510 Firmware < 1.1 - Uncontrolled Search Path
Uncontrolled search path in the Intel(R) NUC M15 Laptop Kit Driver Pack software before updated version 1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
CWE-427 Jun 09, 2021
CVE-2020-8702 7.3 HIGH EPSS 0.00
Intel(R) Processor Diagnostic Tool <4.1.5.37 - Privilege Escalation
Uncontrolled search path element in the Intel(R) Processor Diagnostic Tool before version 4.1.5.37 may allow an authenticated user to potentially enable escalation of privilege via local access.
CWE-427 Jun 09, 2021
CVE-2021-1536 4.8 MEDIUM EPSS 0.00
Cisco Webex Meetings Desktop - Uncontrolled Search Path
A vulnerability in Cisco Webex Meetings Desktop App for Windows, Cisco Webex Meetings Server, Cisco Webex Network Recording Player for Windows, and Cisco Webex Teams for Windows could allow an authenticated, local attacker to perform a DLL injection attack on an affected device. To exploit this vulnerability, the attacker must have valid credentials on the Windows system. This vulnerability is due to incorrect handling of directory paths at run time. An attacker could exploit this vulnerability by inserting a configuration file in a specific path in the system, which can cause a malicious DLL file to be loaded when the application starts. A successful exploit could allow the attacker to execute arbitrary code on the affected system with the privileges of another user account.
CWE-427 Jun 04, 2021
CVE-2019-4588 7.8 HIGH EPSS 0.00
IBM Db2 <11.5 - RCE
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local user to execute arbitrary code and conduct DLL hijacking attacks.
CWE-427 May 26, 2021
CVE-2021-20726 7.8 HIGH EPSS 0.00
Overwolf <2.168.0.n - Privilege Escalation
Untrusted search path vulnerability in The Installer of Overwolf 2.168.0.n and earlier allows an attacker to gain privileges and execute arbitrary code with the privilege of the user invoking the installer via a Trojan horse DLL in an unspecified directory.
CWE-427 May 24, 2021
CVE-2021-20722 7.8 HIGH EPSS 0.00
ScanSnap Manager <V7.0L20 - Privilege Escalation
Untrusted search path vulnerability in the installers of ScanSnap Manager prior to versions V7.0L20 and the Software Download Installer prior to WinSSInst2JP.exe and WinSSInst2iX1500JP.exe allows an attacker to gain privileges and execute arbitrary code with the privilege of the user invoking the installer via a Trojan horse DLL in an unspecified directory.
CWE-427 May 24, 2021
CVE-2021-3423 7.8 HIGH EPSS 0.00
Bitdefender Gravityzone Business Security - Uncontrolled Search Path
Uncontrolled Search Path Element vulnerability in the openssl component as used in Bitdefender GravityZone Business Security allows an attacker to load a third party DLL to elevate privileges. This issue affects Bitdefender GravityZone Business Security versions prior to 6.6.23.329.
CWE-427 May 18, 2021
CVE-2020-24755 7.8 HIGH EPSS 0.00
UI Unifi Video - Uncontrolled Search Path
In Ubiquiti UniFi Video v3.10.13, when the executable starts, its first library validation is in the current directory. This allows the impersonation and modification of the library to execute code on the system. This was tested in (Windows 7 x64/Windows 10 x64).
CWE-427 May 17, 2021