CWE-426
High likelihoodUntrusted Search Path
The product searches for critical resources using an externally-supplied search path that can point to resources that are not under the product's direct control.
643 vulnerabilities with CWE-426
CVE-2017-10820
HIGH
IP Messenger for Win <= 4.60 - Untrusted Search Path
CVSS 7.8
CVE-2017-11657
HIGH
Dashlane - Untrusted Search Path Privilege Escalation via WINHTTP.dll
CVSS 7.3
CVE-2017-12414
CRITICAL
Format Factory 4.1.0 - Code Injection
CVSS 9.8
CVE-2017-7642
HIGH
HashiCorp Vagrant VMware Fusion <4.0.21 - Privilege Escalation
CVSS 7.8
CVE-2017-2279
HIGH
Tween <1.6.6.0 - Privilege Escalation
CVSS 7.8
CVE-2017-11749
HIGH
InternetSoft FTP Commander <8.02 - DLL Hijacking
CVSS 7.8
CVE-2017-11748
HIGH
VIT Spider Player <2.5.3 - Buffer Overflow
CVSS 7.8
CVE-2017-11742
HIGH
Expat 2.2.1-2.2.2 - Privilege Escalation
CVSS 7.8
CVE-2017-2272
HIGH
AttacheCase <3.2.2.6 - Privilege Escalation
CVSS 7.8
CVE-2017-2271
HIGH
AttacheCase <2.8.3.0 - Privilege Escalation
CVSS 7.8
CVE-2017-2270
HIGH
FileCapsule Deluxe Portable <2.0.9 - Privilege Escalation
CVSS 7.8
CVE-2017-2269
HIGH
FileCapsule Deluxe Portable <2.0.9 - Privilege Escalation
CVSS 7.8
CVE-2017-2268
HIGH
FileCapsule Deluxe Portable <1.0.5.1 - Privilege Escalation
CVSS 7.8
CVE-2017-2267
HIGH
FileCapsule Deluxe Portable <1.0.5.1 - Privilege Escalation
CVSS 7.8
CVE-2017-2266
HIGH
FileCapsule Deluxe Portable <1.0.4.1 - Privilege Escalation
CVSS 7.8
CVE-2017-2265
HIGH
FileCapsule Deluxe Portable <1.0.4.1 - Privilege Escalation
CVSS 7.8
CVE-2017-2253
HIGH
Yahoo! Toolbar <8.0.0.6 - Privilege Escalation
CVSS 7.8
CVE-2017-2252
HIGH
File Compact <5.10-7.02 - Privilege Escalation
CVSS 7.8
CVE-2017-2249
HIGH
Lhaz+ <3.4.0 - Privilege Escalation
CVSS 7.8
CVE-2017-2248
HIGH
Lhaz+ <3.4.0 - Privilege Escalation
CVSS 7.8
CVE-2017-2247
HIGH
Chitora Lhaz < 2.4.0 - Untrusted Search Path via Trojan Horse DLL
CVSS 7.8
CVE-2017-2246
HIGH
Chitora Lhaz < 2.4.0 - Untrusted Search Path via Trojan Horse DLL
CVSS 7.8
CVE-2017-2233
HIGH
PDF Digital Signature Plugin G2.30 - Privilege Escalation
CVSS 7.8
CVE-2017-2232
HIGH
Shinseiyo Sogo Soft 4.8A - Privilege Escalation
CVSS 7.8
CVE-2017-2231
HIGH
MLIT DenshiSeikabutsuSakuseiShienKensa <3.02 - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities
643
Exploit Likelihood
High