CWE-428

Unquoted Search Path or Element

Parent: CWE-668 - Exposure of Resource to Wrong Sphere

The product uses a search path that contains an unquoted element, in which the element contains whitespace or other separators. This can cause the product to access resources in a parent path.

451 vulnerabilities with CWE-428
CVE-2022-27050 HIGH
BitComet Service <1.8.6 - Privilege Escalation
CVSS 7.8
CVE-2022-0237 MEDIUM
Rapid7 Insight Agent <3.1.2.38 - Privilege Escalation
CVSS 4.0
CVE-2022-25031 HIGH
Remote Desktop Commander Suite Agent <4.8 - Privilege Escalation
CVSS 7.8
CVE-2021-47985 HIGH
Brother SAPSprint 7.60 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2021-47974 HIGH
VX Search 13.5.28 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2021-47945 HIGH
Argus Surveillance DVR 4.0 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2021-47898 HIGH
Epson USB Display <1.6.0.0 - Privilege Escalation
CVSS 7.8
CVE-2021-47896 HIGH
PDF Complete Corporate Edition 4.1.45 - Code Injection
CVSS 7.8
CVE-2021-47890 HIGH
LogonExpert 8.1 - Privilege Escalation
CVSS 7.8
CVE-2021-47889 HIGH
Softros LAN Messenger 9.6.4 - Code Injection
CVSS 7.8
CVE-2021-47887 HIGH
OKI Print Job Accounting 4.4.10 - Local Privilege Escalation
CVSS 7.8
CVE-2021-47886 HIGH
Pingzapper 2.3.1 - Unquoted Service Path Privilege Escalation in PingzapperSvc
CVSS 7.8
CVE-2021-47884 HIGH
OKI Configuration Tool 1.6.53 - Code Injection
CVSS 7.8
CVE-2021-47883 HIGH
Sandboxie Plus 0.7.2 - Privilege Escalation
CVSS 7.8
CVE-2021-47882 HIGH
FreeLAN 2.2 - Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2021-47880 HIGH
Realtek Wireless LAN Utility 700.1631 - Privilege Escalation
CVSS 7.8
CVE-2021-47879 HIGH
eBeam Interactive Suite 3.6 - Privilege Escalation
CVSS 7.8
CVE-2021-47878 HIGH
eBeam Education Suite 2.5.0.9 - Code Injection
CVSS 7.8
CVE-2021-47874 HIGH
VFS for Git 1.0.21014.1 - Privilege Escalation
CVSS 7.8
CVE-2021-47869 HIGH
Brother BRAdmin Professional 3.75 - Local Privilege Escalation
CVSS 7.8
CVE-2021-47868 HIGH
WIN-PACK PRO 4.8 - Privilege Escalation
CVSS 7.8
CVE-2021-47867 HIGH
WIN-PACK PRO4.8 - Privilege Escalation
CVSS 7.8
CVE-2021-47866 HIGH
WIN-PACK PRO 4.8 - Privilege Escalation
CVSS 7.8
CVE-2021-47864 HIGH
OSAS Traverse Extension 11 - Path Traversal
CVSS 7.8
CVE-2021-47863 HIGH
MacPaw Encrypto 1.0.1 - Code Injection
CVSS 7.8
Details
Vulnerabilities 451