Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
Installbuilder HIGH 7.3
CVE-2022-31694

InstallBuilder Qt installers built with versions previous to 22.10 try to load DLLs from the installer binary parent directory when displaying popups…

Fix: 22.10.0+
Fix from $1,950 2022-11-18
Rooms HIGH 7.8
CVE-2022-36924

The Zoom Rooms Installer for Windows prior to 5.12.6 contains a local privilege escalation vulnerability. A local low-privileged user could exploit t…

Fix: 5.12.6+
Fix from $1,950 2022-11-17
Meetings HIGH 7.3
CVE-2022-28766

Windows 32-bit versions of the Zoom Client for Meetings before 5.12.6 and Zoom Rooms for Conference Room before version 5.12.6 are susceptible to a D…

Fix: 5.12.6+
Fix from $1,950 2022-11-17
Nuc Kit Wireless Adapter Driver Installer HIGH 7.3
CVE-2022-36380

Uncontrolled search path in the installer software for some Intel(r) NUC Kit Wireless Adapter drivers for Windows 10 before version 22.40 may allow a…

Fix: 22.40.0+
Fix from $1,950 2022-11-11
Glorp HIGH 7.8
CVE-2022-30548

Uncontrolled search path element in the Intel(R) Glorp software may allow an authenticated user to potentially enable escalation of privilege via loc…

Mitigation only
Fix from $1,950 2022-11-11
Quartus Prime HIGH 7.8
CVE-2022-27187

Uncontrolled search path element in the Intel(R) Quartus Prime Standard edition software before version 21.1 Patch 0.02std may allow an authenticated…

Fix: after 21.1
Fix from $1,950 2022-11-11
Advanced Link Analyzer HIGH 7.8
CVE-2022-27638

Uncontrolled search path element in the Intel(R) Advanced Link Analyzer Pro before version 22.2 and Standard edition software before version 22.1.1 S…

Fix: 22.1.1 / 22.2+
Fix from $1,950 2022-11-11
Vtune Profiler HIGH 7.3
CVE-2022-26028

Uncontrolled search path in the Intel(R) VTune(TM) Profiler software before version 2022.2.0 may allow an authenticated user to potentially enable es…

Fix: 2022.2.0+
Fix from $1,950 2022-11-11
Gametechdev Presentmon HIGH 7.3
CVE-2022-26086

Uncontrolled search path element in the PresentMon software maintained by Intel(R) before version 1.7.1 may allow an authenticated user to potentiall…

Fix: 1.7.1+
Fix from $1,950 2022-11-11
System Studio HIGH 7.8
CVE-2021-33064

Uncontrolled search path in the software installer for Intel(R) System Studio for all versions, may allow an authenticated user to potentially enable…

Mitigation only
Fix from $1,950 2022-11-11
Foxit Reader HIGH 7.8
CVE-2022-43310

An Uncontrolled Search Path Element in Foxit Software released Foxit Reader v11.2.118.51569 allows attackers to escalate privileges when searching fo…

Fix: 11.2.118.51569+
Fix from $1,950 2022-11-09
Expresscluster X CRITICAL 9.8
CVE-2022-34825

Uncontrolled Search Path Element in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earlier, CLUSTERPRO X 5.0 SingleSe…

Fix: after 5.0
Fix from $2,300 2022-11-08
Cyber Protect Home Office HIGH 7.3
CVE-2022-44744

Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Home Office (Windows) befor…

Fix: 40107+
Fix from $1,950 2022-11-07
Debian Linux HIGH 8.8
CVE-2022-39286

Jupyter Core is a package for the core common functionality of Jupyter projects. Jupyter Core prior to version 4.11.2 contains an arbitrary code exec…

Fix: 4.11.2+
Fix from $1,950 2022-10-26
Content Transfer HIGH 7.8
CVE-2022-41796

Untrusted search path vulnerability in the installer of Content Transfer (for Windows) Ver.1.3 and prior allows an attacker to gain privileges via a …

Fix: after 1.3
Fix from $1,950 2022-10-24
Geodrive HIGH 7.8
CVE-2022-33921

Dell GeoDrive, versions prior to 2.2, contains Multiple DLL Hijacking Vulnerabilities. A low privilege attacker could potentially exploit this vulner…

Fix: 2.2.3+
Fix from $1,950 2022-10-12
Notepad\+\+ HIGH 7.8
CVE-2022-32168

Notepad++ versions 8.4.1 and before are vulnerable to DLL hijacking where an attacker can replace the vulnerable dll (UxTheme.dll) with his own dll a…

Fix: 8.4.5+
Fix from $1,950 2022-09-28
Intellij Idea HIGH 7.8
CVE-2022-40978

The installer of JetBrains IntelliJ IDEA before 2022.2.2 was vulnerable to EXE search order hijacking

Fix: 2022.2.2+
Fix from $1,950 2022-09-19
Softmaster HIGH 7.8
CVE-2022-2333

If an attacker manages to trick a valid user into loading a malicious DLL, the attacker may be able to achieve code execution in Honeywell SoftMaster…

Mitigation only
Fix from $1,950 2022-09-16
Genymotion Desktop HIGH 7.8
CVE-2022-38633

Genymotion Desktop v3.2.1 was discovered to contain a DLL hijacking vulnerability which allows attackers to escalate privileges and execute arbitrary…

Mitigation only
Fix from $1,950 2022-09-13
Airmedia HIGH 7.8
CVE-2022-34101

A vulnerability was discovered in the Crestron AirMedia Windows Application, version 4.3.1.39, in which a user can place a malicious DLL in a certain…

Mitigation only
Fix from $1,950 2022-09-13
Smart Switch Pc HIGH 7.8
CVE-2022-39846

DLL hijacking vulnerability in Smart Switch PC prior to version 4.3.22083_3 allows attacker to execute arbitrary code.

Fix: 4.3.22083_3+
Fix from $1,950 2022-09-09
Pc Repair HIGH 7.8
CVE-2022-36271

Outbyte PC Repair Installation File 1.7.112.7856 is vulnerable to Dll Hijacking. iertutil.dll is missing so an attacker can use a malicious dll with …

No fix yet
Fix from $1,950 2022-09-07
C More Ea9 T6cl Firmware HIGH 7.8
CVE-2022-2006

AutomationDirect DirectLOGIC has a DLL vulnerability in the install directory that may allow an attacker to execute code during the installation proc…

Fix: 6.73+
Fix from $1,950 2022-08-31
Single Event Api HIGH 7.8
CVE-2022-26374

Uncontrolled search path in the installation binaries for Intel(R) SEAPI all versions may allow an authenticated user to potentially enable escalatio…

Mitigation only
Fix from $1,950 2022-08-18
Distribution For Python HIGH 7.8
CVE-2022-28696

Uncontrolled search path in the Intel(R) Distribution for Python before version 2022.0.3 may allow an authenticated user to potentially enable escala…

Fix: 2022.0.3+
Fix from $1,950 2022-08-18
Vtune Profiler HIGH 7.8
CVE-2022-21807

Uncontrolled search path elements in the Intel(R) VTune(TM) Profiler software before version 2022.2.0 may allow an authenticated user to potentially …

Fix: 2022.2.0+
Fix from $1,950 2022-08-18
Datacenter Group Event HIGH 7.8
CVE-2022-25841

Uncontrolled search path elements in the Intel(R) Datacenter Group Event Android application, all versions, may allow an authenticated user to potent…

Mitigation only
Fix from $1,950 2022-08-18
Enpirion Digital Power Configurator Gui HIGH 7.8
CVE-2022-25999

Uncontrolled search path element in the Intel(R) Enpirion(R) Digital Power Configurator GUI software, all versions may allow an authenticated user to…

Mitigation only
Fix from $1,950 2022-08-18
Edgeaggregator HIGH 7.2
CVE-2022-2334EPSS 12%

The application searches for a library dll that is not found. If an attacker can place a dll with this name, then the attacker can leverage it to exe…

Mitigation only
Fix from $1,950 2022-08-17