CVE & Exploit Intelligence Database

Updated 2h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,274 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,555 researchers
1,099 results Clear all
CVE-2019-3613 5.9 MEDIUM EPSS 0.00
Mcafee Agent < 5.0.6 - Uncontrolled Search Path
DLL Search Order Hijacking vulnerability in McAfee Agent (MA) prior to 5.6.4 allows attackers with local access to execute arbitrary code via execution from a compromised folder.
CWE-427 Jun 10, 2020
CVE-2020-9858 7.8 HIGH EPSS 0.00
Apple Windows Migration Assistant < 2.2.0.0 - Uncontrolled Search Path
A dynamic library loading issue was addressed with improved path searching. This issue is fixed in Windows Migration Assistant 2.2.0.0 (v. 1A11). Running the installer in an untrusted directory may result in arbitrary code execution.
CWE-427 Jun 09, 2020
CVE-2020-5357 7.1 HIGH EPSS 0.00
Dell Dock Wd15 Firmware < 1.0.8 - Uncontrolled Search Path
Dell Dock Firmware Update Utilities for Dell Client Consumer and Commercial docking stations contain an Arbitrary File Overwrite vulnerability. The vulnerability is limited to the Dell Dock Firmware Update Utilities during the time window while being executed by an administrator. During this time window, a locally authenticated low-privileged malicious user could exploit this vulnerability by tricking an administrator into overwriting arbitrary files via a symlink attack. The vulnerability does not affect the actual binary payload that the update utility delivers.
CWE-427 May 28, 2020
CVE-2020-13110 7.8 HIGH EPSS 0.00
Kerberos <1.0.0 - Code Injection
The kerberos package before 1.0.0 for Node.js allows arbitrary code execution and privilege escalation via injection of malicious DLLs through use of the kerberos_sspi LoadLibrary() method, because of a DLL path search.
CWE-427 May 16, 2020
CVE-2020-10616 8.8 HIGH EPSS 0.00
Opto 22 SoftPAC <9.6 - Code Injection
Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC does not specify the path of multiple imported .dll files. Therefore, an attacker can replace them and execute code whenever the service starts.
CWE-427 May 14, 2020
CVE-2020-10626 7.8 HIGH EPSS 0.00
Fazecast jSerialComm <2.2.2 - Code Injection
In Fazecast jSerialComm, Version 2.2.2 and prior, an uncontrolled search path element vulnerability could allow a malicious DLL file with the same name of any resident DLLs inside the software installation to execute arbitrary code.
CWE-427 May 14, 2020
CVE-2020-6244 7.8 HIGH EPSS 0.00
SAP Business Client 7.0 - Code Injection
SAP Business Client, version 7.0, allows an attacker after a successful social engineering attack to inject malicious code as a DLL file in untrusted directories that can be executed by the application, due to uncontrolled search path element. An attacker could thereby control the behavior of the application.
CWE-427 May 12, 2020
CVE-2019-20781 7.8 HIGH EPSS 0.00
LG Bridge < 2019-04 - Uncontrolled Search Path
An issue was discovered in LG Bridge before April 2019 on Windows. DLL Hijacking can occur.
CWE-427 Apr 29, 2020
CVE-2020-5740 7.8 HIGH EPSS 0.00
Plex Media Server - RCE
Improper Input Validation in Plex Media Server on Windows allows a local, unauthenticated attacker to execute arbitrary Python code with SYSTEM privileges.
CWE-427 Apr 22, 2020
CVE-2020-8895 7.8 HIGH EPSS 0.00
Google Earth Pro <7.3.3 - RCE
Untrusted Search Path vulnerability in the windows installer of Google Earth Pro versions prior to 7.3.3 allows an attacker to insert malicious local files to execute unauthenticated remote code on the targeted system.
CWE-427 Apr 21, 2020
CVE-2019-20780 9.8 CRITICAL EPSS 0.00
Google Android - Uncontrolled Search Path
An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software. Certain security settings, related to whether packages are verified and accepted only from known sources, are mishandled. The LG ID is LVE-SMP-190002 (April 2019).
CWE-427 Apr 17, 2020
CVE-2019-20769 7.8 HIGH EPSS 0.00
LG PC Suite < 5.3.27 - Uncontrolled Search Path
An issue was discovered in LG PC Suite for LG G3 and earlier (aka LG PC Suite v5.3.27 and earlier). DLL Hijacking can occur via a Trojan horse DLL in the current working directory. The LG ID is LVE-MOT-190001 (November 2019).
CWE-427 Apr 17, 2020
CVE-2020-10515 9.8 CRITICAL EPSS 0.01
STARFACE UCC Client <6.7.1.204 - Code Injection
STARFACE UCC Client before 6.7.1.204 on WIndows allows binary planting to execute code with System rights, aka usd-2020-0006.
CWE-427 Apr 02, 2020
CVE-2020-8146 7.8 HIGH EPSS 0.00
UniFi Video <3.10.2 - Privilege Escalation
In UniFi Video v3.10.1 (for Windows 7/8/10 x64) there is a Local Privileges Escalation to SYSTEM from arbitrary file deletion and DLL hijack vulnerabilities. The issue was fixed by adjusting the .tsExport folder when the controller is running on Windows and adjusting the SafeDllSearchMode in the windows registry when installing UniFi-Video controller. Affected Products: UniFi Video Controller v3.10.2 (for Windows 7/8/10 x64) and prior. Fixed in UniFi Video Controller v3.10.3 and newer.
CWE-427 Apr 01, 2020
CVE-2020-3803 7.8 HIGH EPSS 0.00
Adobe Acrobat and Reader <2020.006.20034 - Privilege Escalation
Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalation.
CWE-427 Mar 25, 2020
CVE-2020-10649 7.8 HIGH EPSS 0.00
ASUS Device Activation <1.0.7.0 - RCE
DevActSvc.exe in ASUS Device Activation before 1.0.7.0 for Windows 10 notebooks and PCs could lead to unsigned code execution with no additional restrictions when a user puts an application at a particular path with a particular file name.
CWE-427 Mar 25, 2020
CVE-2020-7474 7.8 HIGH EPSS 0.00
Schneider-electric Pmepxm0100 Prosoft... - Uncontrolled Search Path
A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProSoft Configurator (v1.002 and prior), for the PMEPXM0100 (H) module, which could cause the execution of untrusted code when using double click to open a project file which may trigger execution of a malicious DLL.
CWE-427 Mar 23, 2020
CVE-2020-9290 7.8 HIGH EPSS 0.00
Fortinet Forticlient < 6.2.3 - Uncontrolled Search Path
An Unsafe Search Path vulnerability in FortiClient for Windows online installer 6.2.3 and below may allow a local attacker with control over the directory in which FortiClientOnlineInstaller.exe and FortiClientVPNOnlineInstaller.exe resides to execute arbitrary code on the system via uploading malicious Filter Library DLL files in that directory.
CWE-427 Mar 15, 2020
CVE-2020-9287 7.8 HIGH EPSS 0.00
Fortinet Forticlient Emergency Manage... - Uncontrolled Search Path
An Unsafe Search Path vulnerability in FortiClient EMS online installer 6.2.1 and below may allow a local attacker with control over the directory in which FortiClientEMSOnlineInstaller.exe resides to execute arbitrary code on the system via uploading malicious Filter Library DLL files in that directory.
CWE-427 Mar 15, 2020
CVE-2020-8469 7.8 HIGH EPSS 0.00
Trend Micro Password Manager <5.0 - Privilege Escalation
Trend Micro Password Manager for Windows version 5.0 is affected by a DLL hijacking vulnerability would could potentially allow an attacker privleged escalation.
CWE-427 Mar 12, 2020