Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
Implicit Spmd Program Compiler HIGH 7.8
CVE-2023-38566

Uncontrolled search path in some Intel(R) ISPC software before version 1.21.0 may allow an authenticated user to potentially enable escalation of pri…

Fix: 1.21.0+
Fix from $1,950 2024-02-14
Computing Improvement Program HIGH 7.8
CVE-2023-35769

Uncontrolled search path in some Intel(R) CIP software before version 2.4.10577 may allow an authenticated user to potentially enable escalation of p…

Fix: 2.4.10577+
Fix from $1,950 2024-02-14
Software Development Kit For Opencl HIGH 7.8
CVE-2023-36493

Uncontrolled search path in some Intel(R) SDK for OpenCL(TM) Applications software may allow an authenticated user to potentially enable escalation o…

Mitigation only
Fix from $1,950 2024-02-14
Battery Life Diagnostic Tool HIGH 7.8
CVE-2023-35060

Uncontrolled search path in some Intel(R) Battery Life Diagnostic Tool software before version 2.3.1 may allow an authenticated user to potentially e…

Fix: 2.3.1+
Fix from $1,950 2024-02-14
Virtual Raid On Cpu HIGH 7.3
CVE-2023-32646

Uncontrolled search path element in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escal…

Fix: 8.0.8.1001+
Fix from $1,950 2024-02-14
Oneapi HIGH 7.8
CVE-2023-32618

Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.2 may allow an authenticated user to po…

Fix: 4.3.2+
Fix from $1,950 2024-02-14
Qsfp\+ Configuration Utility MEDIUM 6.7
CVE-2023-28745

Uncontrolled search path in Intel(R) QSFP+ Configuration Utility software, all versions, may allow an authenticated user to potentially enable escala…

Mitigation only
Fix from $1,600 2024-02-14
Extreme Tuning Utility HIGH 7.8
CVE-2023-28407

Uncontrolled search path in some Intel(R) XTU software before version 7.12.0.29 may allow an authenticated user to potentially enable escalation of p…

Fix: 7.12.0.29+
Fix from $1,950 2024-02-14
Thunderbolt Dch Driver MEDIUM 6.7
CVE-2023-25779

Uncontrolled search path element in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potent…

Fix: 88+
Fix from $1,600 2024-02-14
Binary Configuration Tool HIGH 7.8
CVE-2023-24591

Uncontrolled search path in some Intel(R) Binary Configuration Tool software before version 3.4.4 may allow an authenticated user to potentially enab…

Fix: 3.4.4+
Fix from $1,950 2024-02-14
Plone Docker Official Image CRITICAL 9.8
CVE-2024-23054

An issue in Plone Docker Official Image 5.2.13 (5221) open-source software that could allow for remote code execution due to a package listed in ++pl…

Mitigation only
Fix from $2,300 2024-02-05
Air Support HIGH 7.8
CVE-2024-23940

Trend Micro uiAirSupport, included in the Trend Micro Security 2023 family of consumer products, version 6.0.2092 and below is vulnerable to a DLL hi…

Fix: 6.0.2103+
Fix from $1,950 2024-01-29
Regipay HIGH 7.8
CVE-2023-51711

An issue was discovered in Regify Regipay Client for Windows version 4.5.1.0 allows DLL hijacking: a user can trigger the execution of arbitrary code…

Mitigation only
Fix from $1,950 2024-01-24
Db2 MEDIUM 6.5
CVE-2023-27859

IBM Db2 10.1, 10.5, and 11.1 could allow a remote user to execute arbitrary code caused by installing like named jar files across multiple databases.…

Fix: after 11.5.9
Fix from $1,600 2024-01-22
Nuc Pro Software Suite MEDIUM 5.5
CVE-2023-32272

Uncontrolled search path in some Intel NUC Pro Software Suite Configuration Tool software installers before version 3.0.0.6 may allow an authenticate…

Fix: after 3.0.0.6
Fix from $1,600 2024-01-19
Checkmk HIGH 7.8
CVE-2023-6740

Privilege escalation in jar_signature agent plugin in Checkmk before 2.2.0p18, 2.1.0p38 and 2.0.0p39 allows local user to escalate privileges

Fix: after 2.0.0
Fix from $1,950 2024-01-12
Kepware Kepserverex HIGH 7.8
CVE-2023-29445

An uncontrolled search path element vulnerability (DLL hijacking) has been discovered that could allow a locally authenticated adversary to escalate …

Fix: after 8.5
Fix from $1,950 2024-01-10
Kepware Kepserverex HIGH 7.3
CVE-2023-29444

An uncontrolled search path element vulnerability (DLL hijacking) has been discovered that could allow a locally authenticated adversary to escalate …

Fix: after 8.5
Fix from $1,950 2024-01-10
Universal Device Client HIGH 7.8
CVE-2023-6338

Uncontrolled search path vulnerabilities were reported in the Lenovo Universal Device Client (UDC) that could allow an attacker with local access to …

Fix: 23.10+
Fix from $1,950 2024-01-03
Zxcloud Irai HIGH 7.8
CVE-2023-41780

There is an unsafe DLL loading vulnerability in ZTE ZXCLOUD iRAI. Due to the  program  failed to adequately validate the user's input, an attacker co…

Fix: 7.23.32+
Fix from $1,950 2024-01-03
I HIGH 7.8
CVE-2023-43064

Facsimile Support for IBM i 7.2, 7.3, 7.4, and 7.5 could allow a local user to gain elevated privileges due to an unqualified library call. A malici…

Patch available
Fix from $1,950 2023-12-25
Peazip HIGH 7.8
CVE-2023-6891

A vulnerability has been found in PeaZip 9.4.0 and classified as problematic. Affected by this vulnerability is an unknown functionality in the libra…

Mitigation only
Fix from $1,950 2023-12-17
Checkmk HIGH 7.8
CVE-2023-31210

Usage of user controlled LD_LIBRARY_PATH in agent in Checkmk 2.2.0p10 up to 2.2.0p16 allows malicious Checkmk site user to escalate rights via inject…

Mitigation only
Fix from $1,950 2023-12-13
Privilege Management For Windows HIGH 7.8
CVE-2020-28369

In BeyondTrust Privilege Management for Windows (aka PMfW) through 5.7, a SYSTEM installation causes Cryptbase.dll to be loaded from the user-writabl…

Fix: after 5.7
Fix from $1,950 2023-12-12
Cyber Protect Home Office HIGH 7.8
CVE-2023-48677

Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Home Office (Windows) befor…

Fix: 40901+
Fix from $1,950 2023-12-12
Postgres Advanced Server CRITICAL 9.8
CVE-2023-41117

An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x before 14.9…

Fix: 11.21.32 / 12.16.20+
Fix from $2,300 2023-12-12
Ttplayer HIGH 7.8
CVE-2023-48861

DLL hijacking vulnerability in TTplayer version 7.0.2, allows local attackers to escalate privileges and execute arbitrary code via urlmon.dll.

No fix yet
Fix from $1,950 2023-12-07
Ezviz Studio HIGH 7.8
CVE-2023-41613

EzViz Studio v2.2.0 is vulnerable to DLL hijacking.

No fix yet
Fix from $1,950 2023-12-04
Huddlycameraservice HIGH 7.8
CVE-2023-45252

DLL Hijacking vulnerability in Huddly HuddlyCameraService before version 8.0.7, not including version 7.99, due to the installation of the service in…

Fix: 8.0.7+
Fix from $1,950 2023-12-01
Notepad\+\+ HIGH 7.8
CVE-2023-47452

An Untrusted search path vulnerability in notepad++ 6.5 allows local users to gain escalated privileges through the msimg32.dll file in the current w…

No fix yet
Fix from $1,950 2023-11-30