Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
Labview HIGH 7.8
CVE-2025-2630

There is a DLL hijacking vulnerability due to an uncontrolled search path that exists in NI LabVIEW. This vulnerability may result in arbitrary code…

Fix: after 2021
Fix from $1,950 2025-04-09
Visual Studio 2022 HIGH 7.3
CVE-2025-29802

Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.

Fix: 17.8.20 / 17.10.13+
Fix from $1,950 2025-04-08
Endpoint Manager HIGH 7.8
CVE-2025-22458

DLL hijacking in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows an authenticated attacker to escalate to System.

Fix: 2022+
Fix from $1,950 2025-04-08
Unclassified HIGH 8.4
CVE-2024-11859

DLL Search Order Hijacking vulnerability potentially allowed an attacker with administrator privileges to load a malicious dynamic-link library and e…

No fix yet
Fix from $1,950 2025-04-07
Unclassified MEDIUM 6.5
CVE-2025-3051

Linux::Statm::Tiny for Perl before 0.0701 allows untrusted code from the current working directory ('.') to be loaded similar to CVE-2016-1238. If a…

Mitigation only
Fix from $1,600 2025-04-01
Unclassified MEDIUM 6.5
CVE-2025-30673

Sub::HandlesVia for Perl before 0.050002 allows untrusted code from the current working directory ('.') to be loaded similar to CVE-2016-1238. If an…

Mitigation only
Fix from $1,600 2025-04-01
Unclassified MEDIUM 6.5
CVE-2025-30672

Mite for Perl before 0.013000 generates code with the current working directory ('.') added to the @INC path similar to CVE-2016-1238. If an attacke…

Mitigation only
Fix from $1,600 2025-04-01
Visual Studio Code HIGH 7.3
CVE-2025-26631

Uncontrolled search path element in Visual Studio Code allows an authorized attacker to elevate privileges locally.

Fix: 1.98.0+
Fix from $1,950 2025-03-11
Visual Studio 2019 HIGH 7.3
CVE-2025-25003

Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.

Fix: 16.11.45 / 17.8.19+
Fix from $1,950 2025-03-11
Visual Studio 2017 HIGH 7.3
CVE-2025-24998

Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.

Fix: 15.9.71 / 16.11.45+
Fix from $1,950 2025-03-11
Filmora HIGH 7.8
CVE-2020-23438

Wondershare filmora 9.2.11 is affected by Trojan Dll hijacking leading to privilege escalation.

Fix: after 9.2.11
Fix from $1,950 2025-03-04
Block Load HIGH 7.8
CVE-2024-10930

An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking and execute arbitrary code with…

Fix: after 4.16
Fix from $1,950 2025-03-04
Unclassified HIGH 7.0
CVE-2025-1804

A vulnerability was found in Blizzard Battle.Net up to 2.39.0.15212 on Windows and classified as critical. Affected by this issue is some unknown fun…

Mitigation only
Fix from $1,950 2025-03-01
I HIGH 8.5
CVE-2024-55898

IBM i 7.2, 7.3, 7.4, and 7.5 could allow a user with the capability to compile or restore a program to gain elevated privileges due to an unqualified…

Mitigation only
Fix from $1,950 2025-02-24
Housecall For Home Networks HIGH 7.8
CVE-2022-28339

Trend Micro HouseCall for Home Networks version 5.3.1302 and below contains an uncontrolled search patch element vulnerability that could allow an at…

Fix: 5.3.1308+
Fix from $1,950 2025-02-22
Secure Access Client MEDIUM 6.1
CVE-2025-1223

An attacker can gain application privileges in order to perform limited modification and/or read arbitrary data in Citrix Secure Access Client for Mac

Fix: 25.01.2+
Fix from $1,600 2025-02-20
Unclassified MEDIUM 6.8
CVE-2025-26624

Rufus is a utility that helps format and create bootable USB flash drives. A DLL hijacking vulnerability in Rufus 4.6.2208 and earlier versions allow…

Patch available
Fix from $1,600 2025-02-18
Unclassified HIGH 7.3
CVE-2024-57963

Insecure Loading of Dynamic Link Libraries have been discovered in USB-CONVERTERCABLE DRIVER, which could allow local attackers to potentially disclo…

Mitigation only
Fix from $1,950 2025-02-18
Unclassified HIGH 7.3
CVE-2024-57964

Insecure Loading of Dynamic Link Libraries have been discovered in HVAC Energy Saving Program, which could allow local attackers to potentially discl…

Mitigation only
Fix from $1,950 2025-02-18
Unclassified MEDIUM 6.7
CVE-2024-47006

Uncontrolled search path for the Intel(R) RealSense D400 Series Universal Windows Platform (UWP) Driver for Windows(R) 10 all versions may allow an a…

Mitigation only
Fix from $1,600 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-42405

Uncontrolled search path for some Intel(R) Quartus(R) Prime Software before version 23.1.1 Patch 1.01std may allow an authenticated user to potential…

Mitigation only
Fix from $1,600 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-42492

Uncontrolled search path element in some BIOS and System Firmware Update Package for Intel(R) Server M50FCP family before version R01.02.0002 may all…

Mitigation only
Fix from $1,600 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-39813

Uncontrolled search path for some EPCT software before version 1.42.8.0 may allow an authenticated user to potentially enable escalation of privilege…

Mitigation only
Fix from $1,600 2025-02-12
Advisor MEDIUM 6.7
CVE-2024-39284

Uncontrolled search path for some Intel(R) Advisor software before version 2024.2 may allow an authenticated user to potentially enable escalation of…

Fix: 2024.2+
Fix from $1,600 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-39365

Uncontrolled search path for the FPGA Support Package for the Intel(R) oneAPI DPC++/C++ Compiler software for Windows before version 2024.2 may allow…

Mitigation only
Fix from $1,600 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-39372

Uncontrolled search path for the Intel(R) XTU software for Windows before version 7.14.2.14 may allow an authenticated user to potentially enable esc…

Mitigation only
Fix from $1,600 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-36280

Uncontrolled search path for some Intel(R) High Level Synthesis Compiler software before version 24.2 may allow an authenticated user to potentially …

Mitigation only
Fix from $1,600 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-36283

Uncontrolled search path for the Intel(R) Thread Director Visualizer software before version 1.0.1 may allow an authenticated user to potentially ena…

Mitigation only
Fix from $1,600 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-36291

Uncontrolled search path for some Intel(R) Chipset Software Installation Utility before version 10.1.19867.8574 may allow an authenticated user to po…

Mitigation only
Fix from $1,600 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-32938

Uncontrolled search path for some Intel(R) MPI Library for Windows software before version 2021.13 may allow an authenticated user to potentially ena…

Mitigation only
Fix from $1,600 2025-02-12