CWE-427— Uncontrolled Search Path Element
1,091 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-427page 2 of 22
- CVE-2019-14686HIGHCVSS 7.8EG 7.82019-08-21
A DLL hijacking vulnerability exists in the Trend Micro Security's 2019 consumer family of products (v15) Folder Shield component and the standalone Trend Micro Ransom Buster (1.0) tool in which, if exploited, would allow an attacker to lo…
- CVE-2019-14687HIGHCVSS 7.8EG 7.82019-08-20
A DLL hijacking vulnerability exists in Trend Micro Password Manager 5.0 in which, if exploited, would allow an attacker to load an arbitrary unsigned DLL into the signed service's process. This process is very similar, yet not identical t…
- CVE-2019-14688HIGHCVSS 7.0EG 7.02020-02-20
Trend Micro has repackaged installers for several Trend Micro products that were found to utilize a version of an install package that had a DLL hijack vulnerability that could be exploited during a new product installation. The vulnerabil…
- CVE-2019-15638HIGHCVSS 7.8EG 7.82019-12-04
COPA-DATA zenone32 zenon Editor through 8.10 has an Uncontrolled Search Path Element.
- CVE-2019-16001MEDIUMCVSS 5.3EG 5.32019-11-26
A vulnerability in the loading mechanism of specific dynamic link libraries in Cisco Webex Teams for Windows could allow an authenticated, local attacker to perform a DLL hijacking attack. To exploit this vulnerability, the attacker would …
- CVE-2019-16407HIGHCVSS 7.3EG 7.32019-10-02
JetBrains ReSharper installers for versions before 2019.2 had a DLL Hijacking vulnerability.
- CVE-2019-17093HIGHCVSS 7.8EG 7.82019-10-23
An issue was discovered in Avast antivirus before 19.8 and AVG antivirus before 19.8. A DLL Preloading vulnerability allows an attacker to implant %WINDIR%\system32\wbemcomn.dll, which is loaded into a protected-light process (PPL) and mig…
- CVE-2019-17665HIGHCVSS 7.8EG 7.82019-10-16
NSA Ghidra before 9.0.2 is vulnerable to DLL hijacking because it loads jansi.dll from the current working directory.
- CVE-2019-1794MEDIUMCVSS 5.1EG 5.12019-04-18
A vulnerability in the search path processing of Cisco Directory Connector could allow an authenticated, local attacker to load a binary of their choosing. The vulnerability is due to uncontrolled search path elements. An attacker could ex…
- CVE-2019-18215HIGHCVSS 7.8EG 7.82019-11-18
An issue was discovered in signmgr.dll 6.5.0.819 in Comodo Internet Security through 12.0. A DLL Preloading vulnerability allows an attacker to implant an unsigned DLL named iLog.dll in a partially unprotected product directory. This DLL i…
- CVE-2019-1855HIGHCVSS 7.3EG 7.32019-07-04
A vulnerability in the loading mechanism of specific dynamic link libraries in Cisco Jabber for Windows could allow an authenticated, local attacker to perform a DLL preloading attack. To exploit this vulnerability, the attacker would need…
- CVE-2019-18575HIGHCVSS 7.1EG 7.12019-12-06
Dell Command Configure versions prior to 4.2.1 contain an uncontrolled search path vulnerability. A locally authenticated malicious user could exploit this vulnerability by creating a symlink to a target file, allowing the attacker to over…
- CVE-2019-18670HIGHCVSS 7.8EG 7.82019-12-17
In the Quick Access Service (QAAdminAgent.exe) in Acer Quick Access V2.01.3000 through 2.01.3027 and V3.00.3000 through V3.00.3008, a REGULAR user can load an arbitrary unsigned DLL into the signed service's process, which is running as NT…
- CVE-2019-19115HIGHCVSS 7.8EG 7.82020-10-08
An escalation of privilege vulnerability in Nahimic APO Software Component Driver 1.4.2, 1.5.0, 1.5.1, 1.6.1 and 1.6.2 allows an attacker to execute code with SYSTEM privileges.
- CVE-2019-19235HIGHCVSS 7.0EG 7.02019-12-18
AsLdrSrv.exe in ASUS ATK Package before V1.0.0061 (for Windows 10 notebook PCs) could lead to unsigned code execution with no additional execution. The user must put an application at a particular path, with a particular file name.
- CVE-2019-19364HIGHCVSS 7.8EG 7.82019-12-04
A weak malicious user can escalate its privilege whenever CatalystProductionSuite.2019.1.exe (version 1.1.0.21) and CatalystBrowseSuite.2019.1.exe (version 1.1.0.21) installers run. The vulnerability is in the form of DLL Hijacking. The in…
- CVE-2019-19689HIGHCVSS 7.8EG 7.82019-12-18
Trend Micro HouseCall for Home Networks (versions below 5.3.0.1063) could be exploited via a DLL Hijack related to a vulnerability on the packer that the program uses.
- CVE-2019-19954HIGHCVSS 7.3EG 7.32019-12-24
Signal Desktop before 1.29.1 on Windows allows local users to gain privileges by creating a Trojan horse %SYSTEMDRIVE%\node_modules\.bin\wmic.exe file.
- CVE-2019-20358HIGHCVSS 7.8EG 7.82020-01-30
Trend Micro Anti-Threat Toolkit (ATTK) versions 1.62.0.1218 and below have a vulnerability that may allow an attacker to place malicious files in the same directory, potentially leading to arbitrary remote code execution (RCE) when execute…
- CVE-2019-20400HIGHCVSS 7.8EG 7.82020-02-06
The usage of Tomcat in Jira before version 8.5.2 allows local attackers with permission to write a dll file to a directory in the global path environmental variable can inject code into via a DLL hijacking vulnerability.
- CVE-2019-20406HIGHCVSS 7.8EG 7.82020-02-06
The usage of Tomcat in Confluence on the Microsoft Windows operating system before version 7.0.5, and from version 7.1.0 before version 7.1.1 allows local system attackers who have permission to write a DLL file in a directory in the globa…
- CVE-2019-20419HIGHCVSS 7.8EG 7.82020-07-03
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to execute arbitrary code via a DLL hijacking vulnerability in Tomcat. The affected versions are before version 8.5.5, and from version 8.6.0 before 8.7.2.
- CVE-2019-20769HIGHCVSS 7.8EG 7.82020-04-17
An issue was discovered in LG PC Suite for LG G3 and earlier (aka LG PC Suite v5.3.27 and earlier). DLL Hijacking can occur via a Trojan horse DLL in the current working directory. The LG ID is LVE-MOT-190001 (November 2019).
- CVE-2019-20780CRITICALCVSS 9.8EG 9.82020-04-17
An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software. Certain security settings, related to whether packages are verified and accepted only from known sources, are mishandled. The LG ID is LVE-S…
- CVE-2019-20781HIGHCVSS 7.8EG 7.82020-04-29
An issue was discovered in LG Bridge before April 2019 on Windows. DLL Hijacking can occur.
- CVE-2019-20856CRITICALCVSS 9.8EG 9.82020-06-19
An issue was discovered in Mattermost Desktop App before 4.3.0 on macOS. It allows dylib injection.
- CVE-2019-25268CRITICALCVSS 9.8EG 9.82026-01-08
NREL BEopt 2.8.0.0 contains a DLL hijacking vulnerability that allows attackers to load arbitrary libraries by tricking users into opening application files from remote shares. Attackers can exploit insecure library loading of sdl2.dll and…
- CVE-2019-3613MEDIUMCVSS 5.9EG 7.32020-06-10
DLL Search Order Hijacking vulnerability in McAfee Agent (MA) prior to 5.6.4 allows attackers with local access to execute arbitrary code via execution from a compromised folder.
- CVE-2019-3667MEDIUMCVSS 6.6EG 6.62019-12-11
DLL Search Order Hijacking vulnerability in the Microsoft Windows client in McAfee Tech Check 3.0.0.17 and earlier allows local users to execute arbitrary code via the local folder placed there by an attacker.
- CVE-2019-3726MEDIUMCVSS 6.7EG 6.72019-09-24
An Uncontrolled Search Path Vulnerability is applicable to the following: Dell Update Package (DUP) Framework file versions prior to 19.1.0.413, and Framework file versions prior to 103.4.6.69 used in Dell EMC Servers. Dell Update Package …
- CVE-2019-3745HIGHCVSS 7.3EG 7.32019-10-07
The vulnerability is limited to the installers of Dell Encryption Enterprise versions prior to 10.4.0 and Dell Endpoint Security Suite Enterprise versions prior to 2.4.0. This issue is exploitable only during the installation of the produc…
- CVE-2019-3749MEDIUMCVSS 5.5EG 5.52019-12-03
Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A local authenticated malicious user with low privileges potentially could exploit this vulnerability to delete arbitrary files by creating a symli…
- CVE-2019-3750MEDIUMCVSS 5.5EG 5.52019-12-03
Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A local authenticated malicious user with low privileges potentially could exploit this vulnerability to delete arbitrary files by creating a symli…
- CVE-2019-3881HIGHCVSS 7.8EG 7.82020-09-04
Bundler prior to 2.1.0 uses a predictable path in /tmp/, created with insecure permissions as a storage location for gems, if locations under the user's home directory are not available. If Bundler is used in a scenario where the user does…
- CVE-2019-4094HIGHCVSS 7.8EG 7.82019-03-21
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 binaries load shared libraries from an untrusted path potentially giving low privilege user full access to root by loading a malicious shared libra…
- CVE-2019-4447HIGHCVSS 7.8EG 7.82019-08-26
IBM DB2 High Performance Unload load for LUW 6.1, 6.1.0.1, 6.1.0.1 IF1, 6.1.0.2, 6.1.0.2 IF1, and 6.1.0.1 IF2 db2hpum_debug is a setuid root binary which trusts the PATH environment variable. A low privileged user can execute arbitrary com…
- CVE-2019-4473HIGHCVSS 7.8EG 7.82019-08-05
Multiple binaries in IBM SDK, Java Technology Edition 7, 7R, and 8 on the AIX platform use insecure absolute RPATHs, which may facilitate code injection and privilege elevation by local users. IBM X-Force ID: 163984.
- CVE-2019-4588HIGHCVSS 7.8EG 7.82021-05-26
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local user to execute arbitrary code and conduct DLL hijacking attacks.
- CVE-2019-5245MEDIUMCVSS 5.3EG 5.32019-06-13
HiSuite 9.1.0.300 versions and earlier contains a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this DLL file of the attacker's choosing that …
- CVE-2019-5443HIGHCVSS 7.8EG 7.82019-07-02
A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked b…
- CVE-2019-5526HIGHCVSS 7.8EG 7.82019-05-15
VMware Workstation (15.x before 15.1.0) contains a DLL hijacking issue because some DLL files are improperly loaded by the application. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their…
- CVE-2019-5539HIGHCVSS 7.8EG 7.82019-12-23
VMware Workstation (15.x prior to 15.5.1) and Horizon View Agent (7.10.x prior to 7.10.1 and 7.5.x prior to 7.5.4) contain a DLL hijacking vulnerability due to insecure loading of a DLL by Cortado Thinprint. Successful exploitation of this…
- CVE-2019-5629HIGHCVSS 7.8EG 7.82019-07-13
Rapid7 Insight Agent, version 2.6.3 and prior, suffers from a local privilege escalation due to an uncontrolled DLL search path. Specifically, when Insight Agent 2.6.3 and prior starts, the Python interpreter attempts to load python3.dll a…
- CVE-2019-5631HIGHCVSS 7.8EG 7.82019-08-19
The Rapid7 InsightAppSec broker suffers from a DLL injection vulnerability in the 'prunsrv.exe' component of the product. If exploited, a local user of the system (who must already be authenticated to the operating system) can elevate thei…
- CVE-2019-5676MEDIUMCVSS 6.7EG 6.72019-05-10
NVIDIA Windows GPU Display driver software for Windows (all versions) contains a vulnerability in which it incorrectly loads Windows system DLLs without validating the path or signature (also known as a binary planting or DLL preloading at…
- CVE-2019-5694MEDIUMCVSS 6.5EG 6.52019-11-09
NVIDIA Windows GPU Display Driver, R390 driver version, contains a vulnerability in NVIDIA Control Panel in which it incorrectly loads Windows system DLLs without validating the path or signature (also known as a binary planting or DLL pre…
- CVE-2019-5695MEDIUMCVSS 6.5EG 6.52019-11-12
NVIDIA GeForce Experience (prior to 3.20.1) and Windows GPU Display Driver (all versions) contains a vulnerability in the local service provider component in which an attacker with local system and privileged access can incorrectly load Wi…
- CVE-2019-5701HIGHCVSS 7.8EG 7.82019-11-09
NVIDIA GeForce Experience, all versions prior to 3.20.0.118, contains a vulnerability when GameStream is enabled in which an attacker with local system access can load the Intel graphics driver DLLs without validating the path or signature…
- CVE-2019-6333MEDIUMCVSS 6.7EG 6.72019-10-11
A potential security vulnerability has been identified with certain versions of HP Touchpoint Analytics prior to version 4.1.4.2827. This vulnerability may allow a local attacker with administrative privileges to execute arbitrary code via…
- CVE-2019-6534HIGHCVSS 7.8EG 7.82019-04-11
The uncontrolled search path element vulnerability in Gemalto Sentinel UltraPro Client Library ux32w.dll Versions 1.3.0, 1.3.1, and 1.3.2 enables an attacker to load and execute a malicious file.
Map vulnerabilities like CWE-427 to your infrastructure
EchelonGraph correlates every CVE — across CWE-427 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →