Vulnerability index

Browse CVEs

1,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
Endpoint Protection HIGH 7.8
CVE-2020-5821

Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 MP1 and prior to 14.2.5569.21…

Mitigation only
Fix from $1,950 2020-02-11
Jira Server HIGH 7.8
CVE-2019-20400

The usage of Tomcat in Jira before version 8.5.2 allows local attackers with permission to write a dll file to a directory in the global path environ…

Fix: 8.5.2 / 8.6.0+
Fix from $1,950 2020-02-06
Confluence HIGH 7.8
CVE-2019-20406

The usage of Tomcat in Confluence on the Microsoft Windows operating system before version 7.0.5, and from version 7.1.0 before version 7.1.1 allows …

Fix: 7.0.5+
Fix from $1,950 2020-02-06
Anti Threat Toolkit HIGH 7.8
CVE-2019-20358

Trend Micro Anti-Threat Toolkit (ATTK) versions 1.62.0.1218 and below have a vulnerability that may allow an attacker to place malicious files in the…

Fix: after 1.62.0.1218
Fix from $1,950 2020-01-30
Erdas Er Viewer HIGH 7.8
CVE-2013-0725

ERDAS ER Viewer 13.0 has dwmapi.dll and irml.dll libraries arbitrary code execution vulnerabilities

Mitigation only
Fix from $1,950 2020-01-30
Python MEDIUM 5.5
CVE-2020-8315

In Python (CPython) 3.6 through 3.6.10, 3.7 through 3.7.6, and 3.8 through 3.8.1, an insecure dependency load upon launch on Windows 7 may result in …

Fix: after 3.8.1
Fix from $1,600 2020-01-28
Msx Configurator HIGH 7.8
CVE-2019-6858

A CWE-427:Uncontrolled Search Path Element vulnerability exists in MSX Configurator (Software Version prior to V1.0.8.1), which could cause privilege…

Fix: 1.0.8.1+
Fix from $1,950 2020-01-22
Snmp Subagent Stand Alone MEDIUM 6.7
CVE-2019-14600

Uncontrolled search path element in the installer for Intel(R) SNMP Subagent Stand-Alone for Windows* may allow an authenticated user to potentially …

Mitigation only
Fix from $1,600 2020-01-17
Norton Download Manager HIGH 7.8
CVE-2016-6592

A vulnerability was found in Symantec Norton Download Manager versions prior to 5.6. A remote user can create a specially crafted DLL file that, when…

Fix: 5.6+
Fix from $1,950 2020-01-14
Endpoint Protection HIGH 7.8
CVE-2016-5311

A Privilege Escalation vulnerability exists in Symantec Norton Antivirus, Norton AntiVirus with Backup, Norton Security, Norton Security with Backup,…

Fix: 22.7 / 22.8.0.50+
Fix from $1,950 2020-01-09
Signal Desktop HIGH 7.3
CVE-2019-19954

Signal Desktop before 1.29.1 on Windows allows local users to gain privileges by creating a Trojan horse %SYSTEMDRIVE%\node_modules\.bin\wmic.exe fil…

Fix: 1.29.1+
Fix from $1,950 2019-12-24
Horizon View Agent HIGH 7.8
CVE-2019-5539

VMware Workstation (15.x prior to 15.5.1) and Horizon View Agent (7.10.x prior to 7.10.1 and 7.5.x prior to 7.5.4) contain a DLL hijacking vulnerabil…

Fix: 7.5.4 / 7.10.1+
Fix from $1,950 2019-12-23
Housecall For Home Networks HIGH 7.8
CVE-2019-19689

Trend Micro HouseCall for Home Networks (versions below 5.3.0.1063) could be exploited via a DLL Hijack related to a vulnerability on the packer that…

Fix: 5.3.0.1063+
Fix from $1,950 2019-12-18
Atk Package HIGH 7.0
CVE-2019-19235

AsLdrSrv.exe in ASUS ATK Package before V1.0.0061 (for Windows 10 notebook PCs) could lead to unsigned code execution with no additional execution. T…

Fix: 1.0.0061+
Fix from $1,950 2019-12-18
Quick Access HIGH 7.8
CVE-2019-18670

In the Quick Access Service (QAAdminAgent.exe) in Acer Quick Access V2.01.3000 through 2.01.3027 and V3.00.3000 through V3.00.3008, a REGULAR user ca…

Fix: after 3.00.3008
Fix from $1,950 2019-12-17
Techcheck HIGH 7.8
CVE-2019-3667

DLL Search Order Hijacking vulnerability in the Microsoft Windows client in McAfee Tech Check 3.0.0.17 and earlier allows local users to execute arbi…

Fix: after 3.0.0.17
Fix from $1,950 2019-12-11
Command\|configure HIGH 7.1
CVE-2019-18575

Dell Command Configure versions prior to 4.2.1 contain an uncontrolled search path vulnerability. A locally authenticated malicious user could exploi…

Fix: 4.2.1+
Fix from $1,950 2019-12-06
Catalyst Browse HIGH 7.8
CVE-2019-19364

A weak malicious user can escalate its privilege whenever CatalystProductionSuite.2019.1.exe (version 1.1.0.21) and CatalystBrowseSuite.2019.1.exe (v…

Fix: after 2019.1
Fix from $1,950 2019-12-04
Zenon HIGH 7.8
CVE-2019-15638

COPA-DATA zenone32 zenon Editor through 8.10 has an Uncontrolled Search Path Element.

Fix: after 8.10
Fix from $1,950 2019-12-04
Command Update MEDIUM 5.5
CVE-2019-3749

Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A local authenticated malicious user with low privileges …

Fix: 3.1+
Fix from $1,600 2019-12-03
Command Update MEDIUM 5.5
CVE-2019-3750

Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A local authenticated malicious user with low privileges …

Fix: 3.1+
Fix from $1,600 2019-12-03
Autodesk Desktop HIGH 7.8
CVE-2019-7365

DLL preloading vulnerability in Autodesk Desktop Application versions 7.0.16.29 and earlier. An attacker may trick a user into downloading a maliciou…

Fix: after 7.0.16.29
Fix from $1,950 2019-12-03
Webex Meetings MEDIUM 5.3
CVE-2019-16001

A vulnerability in the loading mechanism of specific dynamic link libraries in Cisco Webex Teams for Windows could allow an authenticated, local atta…

Mitigation only
Fix from $1,600 2019-11-26
Comodo Internet Security HIGH 7.8
CVE-2019-18215

An issue was discovered in signmgr.dll 6.5.0.819 in Comodo Internet Security through 12.0. A DLL Preloading vulnerability allows an attacker to impla…

Fix: 12.1.0.6914+
Fix from $1,950 2019-11-18
Endpoint Protection MEDIUM 6.7
CVE-2019-12758

Symantec Endpoint Protection, prior to 14.2 RU2, may be susceptible to an unsigned code execution vulnerability, which may allow an individual to exe…

Fix: after 14.2
Fix from $1,600 2019-11-15
Animate Cc HIGH 7.8
CVE-2019-7960

Adobe Animate CC versions 19.2.1 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to pr…

Fix: 20.0+
Fix from $1,950 2019-11-14
Illustrator Cc HIGH 7.8
CVE-2019-7962

Adobe Illustrator CC versions 23.1 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to …

Fix: 24.0+
Fix from $1,950 2019-11-14
Geforce Experience MEDIUM 6.5
CVE-2019-5695

NVIDIA GeForce Experience (prior to 3.20.1) and Windows GPU Display Driver (all versions) contains a vulnerability in the local service provider comp…

Fix: 3.20.1+
Fix from $1,600 2019-11-12
Geforce Experience HIGH 7.8
CVE-2019-5701

NVIDIA GeForce Experience, all versions prior to 3.20.0.118, contains a vulnerability when GameStream is enabled in which an attacker with local syst…

Fix: 3.20.0.118+
Fix from $1,950 2019-11-09
Gpu Driver MEDIUM 6.5
CVE-2019-5694

NVIDIA Windows GPU Display Driver, R390 driver version, contains a vulnerability in NVIDIA Control Panel in which it incorrectly loads Windows system…

Patch available
Fix from $1,600 2019-11-09