Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
Quickassist Technology HIGH 7.8
CVE-2024-29223

Uncontrolled search path for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow an authenticated user to potentially enable…

Fix: 2.2.0-0012+
Fix from $1,950 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-21830

Uncontrolled search path in some Intel(R) VPL software before version 2023.4.0 may allow an authenticated user to potentially enable escalation of pr…

Mitigation only
Fix from $1,600 2025-02-12
Unclassified MEDIUM 6.7
CVE-2024-24852

Uncontrolled search path in some Intel(R) Ethernet Adapter Complete Driver Pack install before versions 29.1 may allow an authenticated user to poten…

Mitigation only
Fix from $1,600 2025-02-12
Unclassified HIGH 7.3
CVE-2023-31361

A DLL hijacking vulnerability in AMD Integrated Management Technology (AIM-T) Manageability Service could allow an attacker to achieve privilege esca…

Mitigation only
Fix from $1,950 2025-02-11
Visual Studio Code HIGH 7.3
CVE-2025-24039

Visual Studio Code Elevation of Privilege Vulnerability

Fix: 1.97.1+
Fix from $1,950 2025-02-11
Visual Studio 2017 HIGH 7.3
CVE-2025-21206

Visual Studio Installer Elevation of Privilege Vulnerability

Fix: 15.9.70 / 16.11.44+
Fix from $1,950 2025-02-11
Modelsim HIGH 7.8
CVE-2024-53977

A vulnerability has been identified in ModelSim (All versions < V2025.1), Questa (All versions < V2025.1). An example setup script contained in affec…

Fix: 2025.1+
Fix from $1,950 2025-02-11
Unclassified HIGH 7.8
CVE-2024-48091

Tally Prime Edit Log v2.1 was discovered to contain a DLL hijacking vulnerability via the component TextShaping.dll. This vulnerability allows attack…

Mitigation only
Fix from $1,950 2025-02-07
Unclassified HIGH 7.3
CVE-2024-57426

NetMod VPN Client 5.3.1 is vulnerable to DLL injection, allowing an attacker to execute arbitrary code by placing a malicious DLL in a directory wher…

Mitigation only
Fix from $1,950 2025-02-06
Unclassified HIGH 8.5
CVE-2024-2658

A misconfiguration in lmadmin.exe of FlexNet Publisher versions prior to 2024 R1 (11.19.6.0) allows the OpenSSL configuration file to load from a non…

Mitigation only
Fix from $1,950 2025-01-30
Unclassified HIGH 8.6
CVE-2024-9493

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  ToolStick installer can lead to privilege escalation and arbitrary co…

Mitigation only
Fix from $1,950 2025-01-24
Unclassified HIGH 8.6
CVE-2024-9494

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  CP210 VCP Win 2k installer can lead to privilege escalation and a…

Mitigation only
Fix from $1,950 2025-01-24
Unclassified HIGH 8.6
CVE-2024-9495

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the CP210x VCP Windows installer can lead to privilege escalation and ar…

Mitigation only
Fix from $1,950 2025-01-24
Unclassified HIGH 8.6
CVE-2024-9496

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Dev Kit installer can lead to privilege escalation and a…

Mitigation only
Fix from $1,950 2025-01-24
Unclassified HIGH 8.6
CVE-2024-9497

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress 4 SDK installer can lead to privilege escalation and arb…

Mitigation only
Fix from $1,950 2025-01-24
Unclassified HIGH 8.6
CVE-2024-9498

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress SDK installer can lead to privilege escalation and arbit…

Mitigation only
Fix from $1,950 2025-01-24
Unclassified HIGH 8.6
CVE-2024-9499

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Win 98SE Dev Kit installer can lead to privilege escalation and…

Mitigation only
Fix from $1,950 2025-01-24
Unclassified HIGH 8.6
CVE-2024-9490

DLL hijacking vulnerabilities, caused by an uncontrolled search path in Silicon Labs (8-bit) IDE installer can lead to privilege escalation and arbit…

Mitigation only
Fix from $1,950 2025-01-24
Unclassified HIGH 8.6
CVE-2024-9491

DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to privilege escalation and arbitra…

Mitigation only
Fix from $1,950 2025-01-24
Unclassified HIGH 8.6
CVE-2024-9492

DLL hijacking vulnerabilities, caused by an uncontrolled search path in Flash Programming Utility installer can lead to privilege escalation and arbi…

Mitigation only
Fix from $1,950 2025-01-24
Cognos Dashboards On Cloud Pak For Data HIGH 8.8
CVE-2024-41739

IBM Cognos Dashboards 4.0.7 and 5.0.0 on Cloud Pak for Data could allow a remote attacker to perform unauthorized actions due to dependency confusion.

Mitigation only
Fix from $1,950 2025-01-24
Unclassified HIGH 7.8
CVE-2024-53588

A DLL hijacking vulnerability in iTop VPN v16.0 allows attackers to execute arbitrary code via placing a crafted DLL file into the path \ProgramData\…

Mitigation only
Fix from $1,950 2025-01-23
Photoshop HIGH 7.8
CVE-2025-21127

Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could lead to arbitrary cod…

Fix: 25.12.1 / 26.2+
Fix from $1,950 2025-01-14
Unclassified HIGH 7.8
CVE-2025-0069

Due to DLL injection vulnerability in SAPSetup, an attacker with either local user privileges or with access to a compromised corporate user�s Window…

Mitigation only
Fix from $1,950 2025-01-14
Cyber Protect HIGH 7.8
CVE-2024-55543

Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 3…

Fix: after 15
Fix from $1,950 2025-01-02
Cyber Protect HIGH 7.8
CVE-2024-55540

Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 3…

Fix: after 15
Fix from $1,950 2025-01-02
Deep Security Agent HIGH 7.3
CVE-2024-55955

An incorrect permissions assignment vulnerability in Trend Micro Deep Security 20.0 agents between versions 20.0.1-9400 and 20.0.1-23340 could allow …

Mitigation only
Fix from $1,950 2024-12-31
Qvpn HIGH 7.8
CVE-2022-27595

An insecure library loading vulnerability has been reported to affect QVPN Device Client. If exploited, the vulnerability could allow local attackers…

Fix: 2.0.0.1316+
Fix from $1,950 2024-12-19
Unclassified HIGH 7.8
CVE-2024-9852

Uncontrolled Search Path Element vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite version…

Mitigation only
Fix from $1,950 2024-11-28
Unclassified HIGH 7.8
CVE-2024-8299

Uncontrolled Search Path Element vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite version…

Mitigation only
Fix from $1,950 2024-11-28