CWE-426

High likelihood

Untrusted Search Path

Parent: CWE-642 - External Control of Critical State Data

The product searches for critical resources using an externally-supplied search path that can point to resources that are not under the product's direct control.

626 vulnerabilities with CWE-426
CVE-2023-39201 HIGH
CleanZoom <07/24/2023 - Privilege Escalation
CVSS 7.2
CVE-2023-4736 HIGH
Vim < 9.0.1833 - Untrusted Search Path
CVSS 7.8
CVE-2023-40590 HIGH
GitPython - Code Injection
CVSS 7.8
CVE-2023-41105 HIGH
Python <3.11.4 - Info Disclosure
CVSS 7.5
CVE-2023-29299 MEDIUM
Adobe Acrobat Reader <23.003.20244 & <20.005.30467 - DoS
CVSS 4.7
CVE-2023-39212 HIGH
Zoom Rooms for Windows <5.15.5 - DoS
CVSS 7.9
CVE-2023-36898 HIGH
Tablet Windows UI App Core - RCE
CVSS 7.8
CVE-2023-36540 HIGH
Zoom Desktop Client for Windows <5.14.5 - Privilege Escalation
CVSS 7.3
CVE-2023-36538 HIGH
Zoom Rooms for Windows <5.15.0 - Privilege Escalation
CVSS 8.4
CVE-2023-36536 HIGH
Zoom Rooms for Windows <5.15.0 - Privilege Escalation
CVSS 8.2
CVE-2023-35343 HIGH
Microsoft Windows 10 1809 < 10.0.17763.4645 - Untrusted Search Path
CVSS 7.8
CVE-2023-34119 HIGH
Zoom Rooms for Windows <5.15.0 - Privilege Escalation
CVSS 8.2
CVE-2023-34145 HIGH
Trend Micro Apex One - Privilege Escalation
CVSS 7.8
CVE-2023-34144 HIGH
Trend Micro Apex One - Privilege Escalation
CVSS 7.8
CVE-2023-30330 CRITICAL
Softexpert Excellence Suite < 2.1.3 - Untrusted Search Path
CVSS 9.8
CVE-2023-29790 HIGH
Kodcloud Kodbox < 1.3.7 - Untrusted Search Path
CVSS 7.5
CVE-2023-28143 MEDIUM
Qualys Cloud Agent < 3.7 - Untrusted Search Path
CVSS 6.7
CVE-2023-27771 HIGH
Wondershare Creative Centerr - Untrusted Search Path
CVSS 7.8
CVE-2023-27770 HIGH
Wondershare Edraw-max - Code Injection
CVSS 7.8
CVE-2023-27769 HIGH
Wondershare Pdf Reader - Untrusted Search Path
CVSS 7.8
CVE-2023-27768 HIGH
Wondershare Pdfelement - Untrusted Search Path
CVSS 7.8
CVE-2023-27767 HIGH
Wondershare Dr.fone - Untrusted Search Path
CVSS 7.8
CVE-2023-27766 HIGH
Wondershare Anireel - Untrusted Search Path
CVSS 7.8
CVE-2023-27765 HIGH
Wondershare Recoverit - Untrusted Search Path
CVSS 7.8
CVE-2023-27764 HIGH
Wondershare Repairit - Untrusted Search Path
CVSS 7.8
Details
Vulnerabilities 626
Exploit Likelihood High