CWE-426

High likelihood

Untrusted Search Path

Parent: CWE-642 - External Control of Critical State Data

The product searches for critical resources using an externally-supplied search path that can point to resources that are not under the product's direct control.

657 vulnerabilities with CWE-426
CVE-2017-2219 HIGH
Simeji for Windows - Privilege Escalation
CVSS 7.8
CVE-2017-2214 HIGH
AppCheck <2.0.1.15 - Code Injection
CVSS 8.4
CVE-2017-2213 HIGH
SemiDynaEXE <1.0.2 - Privilege Escalation
CVSS 7.8
CVE-2017-2212 HIGH
TKY2JGD <1.3.79 - Privilege Escalation
CVSS 7.8
CVE-2017-2211 HIGH
PatchJGD <1.0.1 - Privilege Escalation
CVSS 7.8
CVE-2017-2209 HIGH
Houkokusyo Sakusei Shien Tool <3.0.2, >=2.0 - Privilege Escalation
CVSS 7.8
CVE-2017-2207 HIGH
SaAT Personal <1.0.10.272 - Privilege Escalation
CVSS 8.8
CVE-2017-2206 HIGH
SaAT Netizen <1.2.10.510 - Privilege Escalation
CVSS 8.8
CVE-2017-2193 HIGH
Tera Term <4.94 - Privilege Escalation
CVSS 7.8
CVE-2017-2192 HIGH
Sharp RW-5100 - Untrusted Search Path
CVSS 7.8
CVE-2017-2191 HIGH
RW-5100 <1.0.0.9,1.0.1.0 - Privilege Escalation
CVSS 7.8
CVE-2017-2190 HIGH
RW-4040 <1.2.0.0 - Privilege Escalation
CVSS 7.8
CVE-2017-2189 HIGH
RW-4040 driver installer <2.27 - Privilege Escalation
CVSS 7.8
CVE-2017-2178 HIGH
Installer <May 25, 2017 - Privilege Escalation
CVSS 8.8
CVE-2017-2177 HIGH
Shogyo Touki Denshi Ninsho <1.7 - Privilege Escalation
CVSS 8.8
CVE-2017-2176 HIGH
JASDF Screensavers - Untrusted Search Path
CVSS 7.8
CVE-2017-2175 HIGH
Empirical Project Monitor - Privilege Escalation
CVSS 7.8
CVE-2017-2167 HIGH
PrimeDrive Desktop App <1.4.4 - RCE
CVSS 7.8
CVE-2017-2157 HIGH
The Public Certification Service - Privilege Escalation
CVSS 7.3
CVE-2017-5236 HIGH
Rapid7 AppSpider Pro <6.14.060 - DLL Preloading
CVSS 7.8
CVE-2017-2156 HIGH
Vivaldi <1.7.735.48 - Code Injection
CVSS 7.8
CVE-2017-2149 HIGH
Software Update Tool <1.00.03 - Path Traversal
CVSS 8.8
CVE-2017-2130 HIGH
PhishWall Client Internet Explorer <3.7.13 - Privilege Escalation
CVSS 7.8
CVE-2017-2108 HIGH
PrimeDrive Desktop App <1.4.3 - Privilege Escalation
CVSS 7.8
CVE-2017-2107 HIGH
7-ZIP32.DLL <9.22.00.01 - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 657
Exploit Likelihood High