Vulnerability index

Browse CVEs

1,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
Td Keypad Designer HIGH 7.8
CVE-2018-13806

A vulnerability has been identified in SIEMENS TD Keypad Designer (All versions). A DLL hijacking vulnerability exists in all versions of SIEMENS TD …

Mitigation only
Fix from $1,950 2018-09-12
Deltav HIGH 7.8
CVE-2018-14797

Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 allow a specially crafted DLL file to be placed in the search path and loaded as an in…

Mitigation only
Fix from $1,950 2018-08-23
Norton Utilities MEDIUM 6.0
CVE-2018-5235

Norton Utilities (prior to 16.0.3.44) may be susceptible to a DLL Preloading vulnerability, which is a type of issue that can occur when an applicati…

Fix: 16.0.3.44+
Fix from $1,600 2018-08-22
Norton Power Eraser HIGH 7.8
CVE-2018-5238

Norton Power Eraser (prior to 5.3.0.24) and SymDiag (prior to 2.1.242) may be susceptible to a DLL Preloading vulnerability, which is a type of issue…

Fix: 2.1.242 / 5.3.0.24+
Fix from $1,950 2018-08-22
Antivirus Pro HIGH 7.8
CVE-2018-8090

Quick Heal Total Security 64 bit 17.00 (QHTS64.exe), (QHTSFT64.exe) - Version 10.0.1.38; Quick Heal Total Security 32 bit 17.00 (QHTS32.exe), (QHTSFT…

Mitigation only
Fix from $1,950 2018-07-25
Connect CRITICAL 9.8
CVE-2018-12805

Adobe Connect versions 9.7.5 and earlier have an Insecure Library Loading vulnerability. Successful exploitation could lead to privilege escalation.

Fix: after 9.7.5
Fix from $2,300 2018-07-20
Rsa Identity Governance And Lifecycle HIGH 7.3
CVE-2018-11049

RSA Identity Governance and Lifecycle, RSA Via Lifecycle and Governance, and RSA IMG releases have an uncontrolled search vulnerability. The installa…

Mitigation only
Fix from $1,950 2018-07-11
Rust HIGH 7.8
CVE-2018-1000622

The Rust Programming Language rustdoc version Between 0.8 and 1.27.0 contains a CWE-427: Uncontrolled Search Path Element vulnerability in rustdoc pl…

Fix: after 1.27.0
Fix from $1,950 2018-07-09
Firefox HIGH 7.8
CVE-2017-7836

The "pingsender" executable used by the Firefox Health Report dynamically loads a system copy of libcurl, which an attacker could replace. This allow…

Fix: after 56.0.2
Fix from $1,950 2018-06-11
Coldfusion HIGH 7.8
CVE-2018-4938

Adobe ColdFusion Update 5 and earlier versions, ColdFusion 11 Update 13 and earlier versions have an exploitable Insecure Library Loading vulnerabili…

Mitigation only
Fix from $1,950 2018-05-19
Dual Band Wireless Ac 3160 HIGH 7.8
CVE-2018-3649

DLL injection vulnerability in the installation executables (Autorun.exe and Setup.exe) for Intel's wireless drivers and related software in Intel Du…

Fix: 20.20.2.2+
Fix from $1,950 2018-05-10
Webaccess HIGH 7.8
CVE-2017-5175

Advantech WebAccess 8.1 and earlier contains a DLL hijacking vulnerability which may allow an attacker to run a malicious DLL file within the search …

Fix: after 8.1
Fix from $1,950 2018-05-09
Scada Microbrowser HIGH 7.8
CVE-2017-14010

In SpiderControl MicroBrowser Windows XP, Vista 7, 8 and 10, Versions 1.6.30.144 and prior, an uncontrolled search path element vulnerability has bee…

Fix: after 1.6.30.144
Fix from $1,950 2018-04-26
Myswisscomassistant HIGH 7.8
CVE-2018-6765

Swisscom MySwisscomAssistant 2.17.1.1065 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on t…

Mitigation only
Fix from $1,950 2018-03-27
Tvmediahelper HIGH 7.8
CVE-2018-6766

Swisscom TVMediaHelper 1.1.0.50 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on the target…

Mitigation only
Fix from $1,950 2018-03-27
Carefusion Upgrade Utility HIGH 7.0
CVE-2018-5457

A uncontrolled search path element issue was discovered in Vyaire Medical CareFusion Upgrade Utility used with Windows XP systems, Versions 2.0.2.2 a…

Fix: after 2.0.2.2
Fix from $1,950 2018-02-06
Softnvr Ia Live View HIGH 7.2
CVE-2017-5170

An Uncontrolled Search Path Element issue was discovered in Moxa SoftNVR-IA Live Viewer, Version 3.30.3122 and prior versions. An uncontrolled search…

Fix: after 3.3
Fix from $1,950 2018-01-18
Vagrant HIGH 7.8
CVE-2017-16777

If HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 5.0.3 is installed but VMware Fusion is not, a local attacker can create a fake…

No fix yet
Fix from $1,950 2017-11-16
Packet Tracer MEDIUM 6.7
CVE-2017-12313

An untrusted search path (aka DLL Preload) vulnerability in the Cisco Network Academy Packet Tracer software could allow an authenticated, local atta…

Mitigation only
Fix from $1,600 2017-11-16
Findit Network Discovery Utility HIGH 7.8
CVE-2017-12314

A vulnerability in the Cisco FindIT Network Discovery Utility could allow an authenticated, local attacker to perform a DLL preloading attack, potent…

Mitigation only
Fix from $1,950 2017-11-16
Click Plc Firmware HIGH 7.8
CVE-2017-14020

In AutomationDirect CLICK Programming Software (Part Number C0-PGMSW) Versions 2.10 and prior; C-More Programming Software (Part Number EA9-PGMSW) Ve…

Fix: after 6.30
Fix from $1,950 2017-11-13
Vtscada HIGH 7.8
CVE-2017-14029

An Uncontrolled Search Path Element issue was discovered in Trihedral VTScada 11.3.03 and prior. The program will execute specially crafted malicious…

Fix: after 11.3.03
Fix from $1,950 2017-11-06
Movicon HIGH 7.8
CVE-2017-14017

An Uncontrolled Search Path Element issue was discovered in Progea Movicon Version 11.5.1181 and prior. An uncontrolled search path element vulnerabi…

Fix: after 11.5.1181
Fix from $1,950 2017-10-19
Vagrant Vmware Fusion HIGH 7.8
CVE-2017-12579

An insecure suid wrapper binary in the HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 4.0.24 and earlier allows a non-root user t…

Fix: after 4.0.24
Fix from $1,950 2017-10-19
Smartlog Diabetes Management Software HIGH 7.8
CVE-2017-13993

An Uncontrolled Search Path or Element issue was discovered in i-SENS SmartLog Diabetes Management Software, Version 2.4.0 and prior versions. An unc…

Fix: after 2.4.0
Fix from $1,950 2017-10-05
Daqfactory MEDIUM 5.3
CVE-2017-5147

An Uncontrolled Search Path Element issue was discovered in AzeoTech DAQFactory versions prior to 17.1. An uncontrolled search path element vulnerabi…

Fix: after 16.3
Fix from $1,600 2017-09-09
Cloud Station Drive HIGH 7.8
CVE-2017-11158

Multiple untrusted search path vulnerabilities in the installer in Synology Cloud Station Drive before 4.2.5-4396 on Windows allow local attackers to…

Fix: after 4.2.4-4393
Fix from $1,950 2017-08-31
Webaccess HIGH 7.8
CVE-2017-12717

An Uncontrolled Search Path Element issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A maliciously crafted dll file place…

Fix: after 8.2
Fix from $1,950 2017-08-30
Coreldraw HIGH 7.8
CVE-2014-8393EPSS 8%

DLL Hijacking vulnerability in CorelDRAW X7, Corel Photo-Paint X7, Corel PaintShop Pro X7, Corel Painter 2015, and Corel PDF Fusion.

No fix yet
Fix from $1,950 2017-08-29
Photo Station Uploader HIGH 7.8
CVE-2017-11159

Multiple untrusted search path vulnerabilities in installer in Synology Photo Station Uploader before 1.4.2-084 on Windows allows local attackers to …

Fix: after 1.4.1-083
Fix from $1,950 2017-08-23