The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.
1,191 vulnerabilities with CWE-427
CVE-2023-36493
MEDIUM
Intel(R) SDK for OpenCL(TM) < - Privilege Escalation
CVSS 6.7
CVE-2023-35769
MEDIUM
Intel Computing Improvement Program < 2.4.10577 - Authenticated Privilege Escalation via Uncontrolled Search Path
CVSS 6.7
CVE-2023-35060
MEDIUM
Intel Battery Life Diagnostic Tool < 2.3.1 - Authenticated Privilege Escalation via Uncontrolled Search Path
CVSS 6.7
CVE-2023-32646
MEDIUM
Intel VROC < 8.0.8.1001 - Authenticated Privilege Escalation via Uncontrolled Search Path
CVSS 6.7
CVE-2023-32618
MEDIUM
Intel oneAPI < 4.3.2 - Authenticated Privilege Escalation via Uncontrolled Search Path
CVSS 6.7
CVE-2023-28745
MEDIUM
Intel(R) QSFP+ Configuration Utility - Privilege Escalation
CVSS 6.7
CVE-2023-28407
MEDIUM
Intel Extreme Tuning Utility < 7.12.0.29 - Authenticated Privilege Escalation via Uncontrolled Search Path
CVSS 6.7
CVE-2023-25779
MEDIUM
Intel Thunderbolt DCH Driver < 88 - Authenticated Privilege Escalation via Uncontrolled Search Path
CVSS 6.7
CVE-2023-24591
MEDIUM
Intel(R) Binary Configuration Tool <3.4.4 - Privilege Escalation
CVSS 6.7
CVE-2023-51711
HIGH
Regify Regipay Client <4.5.1.0 - Code Injection
CVSS 7.8
CVE-2023-27859
MEDIUM
IBM Db2 10.5.0.0-10.5.0.10 - Uncontrolled Search Path Element via Malicious JAR File Installation
CVSS 6.5
CVE-2023-32272
HIGH
Intel NUC Pro Software Suite < 3.0.0.6 - Authenticated Denial of Service via Uncontrolled Search Path
CVSS 7.9
CVE-2023-6740
HIGH
Checkmk < 2.2.0p18, 2.1.0p38, 2.0.0p39 - Privilege Escalation via jar_signature Agent Plugin
CVSS 8.8
CVE-2023-29445
HIGH
PTC Kepware Kepserverex < 6.14.263.0 - Uncontrolled Search Path
CVSS 7.8
CVE-2023-29444
MEDIUM
PTC Kepware Kepserverex < 6.14.263.0 - Uncontrolled Search Path
CVSS 6.3
CVE-2023-41782
LOW
ZTE ZXCLOUD iRAI < 7.23.30 - DLL Hijacking via Uncontrolled Search Path
CVSS 3.9
CVE-2023-6338
HIGH
Lenovo Universal Device Client < 23.10 - Uncontrolled Search Path Element
CVSS 7.8
CVE-2023-41780
MEDIUM
ZTE ZXCLOUD iRAI < 7.23.32 - Unauthenticated DLL Loading Path Traversal
CVSS 6.4
CVE-2023-43064
HIGH
IBM i 7.2-7.5 - Uncontrolled Search Path Element in Facsimile Support
CVSS 7.0
CVE-2023-6891
MEDIUM
PeaZip 9.4.0 - Uncontrolled Search Path in Library Handler
CVSS 5.3
CVE-2023-31210
HIGH
Checkmk <2.2.0p16 - Privilege Escalation
CVSS 8.8
CVE-2023-48677
HIGH
Acronis Cyber Protect Home Office < 40901 - Local Privilege Escalation via DLL Hijacking
CVSS 7.8
CVE-2023-41117
HIGH
EnterpriseDB Postgres Advanced Server Uncontrolled Search Path in SECURITY DEFINER Functions
CVSS 8.8
CVE-2023-48861
HIGH
TTplayer <7.0.2 - Privilege Escalation
CVSS 7.8
CVE-2023-41613
HIGH
EzViz Studio <2.2.0 - Code Injection
CVSS 7.8
Details
Vulnerabilities
1,191