Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
Unclassified MEDIUM 6.7
CVE-2025-30506

Uncontrolled search path for some Intel Driver and Support Assistant before version 25.2 within Ring 3: User Applications may allow an escalation of …

Mitigation only
Fix from $1,600 2025-11-11
Unclassified MEDIUM 6.7
CVE-2025-31645

Uncontrolled search path for some System Event Log Viewer Utility software for all versions within Ring 3: User Applications may allow an escalation …

Mitigation only
Fix from $1,600 2025-11-11
Unclassified MEDIUM 6.7
CVE-2025-31647

Uncontrolled search path for some Intel(R) Graphics Software before version 25.22.1502.2 within Ring 3: User Applications may allow an escalation of …

Mitigation only
Fix from $1,600 2025-11-11
Unclassified MEDIUM 6.7
CVE-2025-30182

Uncontrolled search path for some Intel(R) Distribution for Python software installers before version 2025.2.0 within Ring 3: User Applications may a…

Mitigation only
Fix from $1,600 2025-11-11
Unclassified MEDIUM 6.7
CVE-2025-25059

Uncontrolled search path for some Intel(R) One Boot Flash Update (Intel(R) OFU) software before version 14.1.31 within Ring 3: User Applications may …

Mitigation only
Fix from $1,600 2025-11-11
Unclassified MEDIUM 6.7
CVE-2025-24842

Uncontrolled search path for the Intel(R) System Support Utility before version 4.1.0 within Ring 3: User Applications may allow an escalation of pri…

Mitigation only
Fix from $1,600 2025-11-11
Unclassified MEDIUM 6.7
CVE-2025-24491

Uncontrolled search path for some Intel(R) Killer(TM) Performance Suite software before version killer 4.0 40.25.509.1465 within Ring 3: User Applica…

Mitigation only
Fix from $1,600 2025-11-11
Computing Improvement Program MEDIUM 6.7
CVE-2025-20050

Uncontrolled search path for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications may allow an escalation o…

Fix: 2.4.11001+
Fix from $1,600 2025-11-11
Unclassified MEDIUM 6.7
CVE-2025-20065

Uncontrolled search path for some Display Virtualization for Windows OS software before version 1797 within Ring 2: Device Drivers may allow an escal…

Mitigation only
Fix from $1,600 2025-11-11
Unclassified HIGH 8.2
CVE-2025-23358

NVIDIA NVApp for Windows contains a vulnerability in the installer, where a local attacker can cause a search path element issue. A successful exploi…

Mitigation only
Fix from $1,950 2025-11-04
Client Management Script Library HIGH 7.8
CVE-2025-11761

A potential security vulnerability has been identified in the HP Client Management Script Library software, which might allow escalation of privilege…

Fix: 1.8.5+
Fix from $1,950 2025-11-03
Unclassified HIGH 7.8
CVE-2025-60749

DLL Hijacking vulnerability in Trimble SketchUp desktop 2025 via crafted libcef.dll used by sketchup_webhelper.exe.

Mitigation only
Fix from $1,950 2025-10-31
Unclassified HIGH 8.4
CVE-2025-61161

DLL hijacking vulnerability in Evope Collector 1.1.6.9.0 and related components load the wtsapi32.dll library from an uncontrolled search path (C:\Pr…

Mitigation only
Fix from $1,950 2025-10-29
Unclassified HIGH 7.8
CVE-2025-62776

The installer of WTW EAGLE (for Windows) 3.0.8.0 contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Librar…

Mitigation only
Fix from $1,950 2025-10-29
Unclassified HIGH 8.8
CVE-2025-9164

Docker Desktop Installer.exe is vulnerable to DLL hijacking due to insecure DLL search order. The installer searches for required DLLs in the user's …

Mitigation only
Fix from $1,950 2025-10-27
Unclassified HIGH 7.0
CVE-2025-11940

A security vulnerability has been detected in LibreWolf up to 143.0.4-1 on Windows. This affects an unknown function of the file assets/setup.nsi of …

Mitigation only
Fix from $1,950 2025-10-19
Pcmanager HIGH 7.8
CVE-2025-10581

A potential DLL hijacking vulnerability was discovered in the Lenovo PC Manager during an internal security assessment that could allow a local authe…

Fix: 5.1.140.9262+
Fix from $1,950 2025-10-15
Unclassified HIGH 7.8
CVE-2025-26861

RemoteCall Remote Support Program (for Operator) versions prior to 5.3.0 contain an uncontrolled search path element vulnerability. If a crafted DLL …

Mitigation only
Fix from $1,950 2025-10-15
Unclassified HIGH 7.8
CVE-2025-26860

RemoteCall Remote Support Program (for Operator) versions prior to 5.1.0 contain an uncontrolled search path element vulnerability. If a crafted DLL …

Mitigation only
Fix from $1,950 2025-10-15
Unclassified HIGH 7.8
CVE-2025-26859

RemoteView PC Application Console versions prior to 6.0.2 contain an uncontrolled search path element vulnerability. If a crafted DLL is placed in th…

Mitigation only
Fix from $1,950 2025-10-15
Forticlient HIGH 7.3
CVE-2025-57716

An Uncontrolled Search Path Element vulnerability [CWE-427] in FortiClient Windows 7.4.0 through 7.4.3, 7.2.0 through 7.2.11, 7.0 all versions may al…

Fix: 7.2.12 / 7.4.4+
Fix from $1,950 2025-10-14
Unclassified HIGH 8.6
CVE-2025-59889

Improper authentication of library files in the Eaton IPP software installer could lead to arbitrary code execution of an attacker with the access to…

Mitigation only
Fix from $1,950 2025-10-14
Unclassified HIGH 8.2
CVE-2025-23309

NVIDIA Display Driver contains a vulnerability where an uncontrolled DLL loading path might lead to arbitrary denial of service, escalation of privil…

Mitigation only
Fix from $1,950 2025-10-10
Checkmk HIGH 7.8
CVE-2025-32919

Use of an insecure temporary directory in the Windows License plugin for the Checkmk Windows Agent allows Privilege Escalation. This issue affects Ch…

Fix: 2.2.0+
Fix from $1,950 2025-10-09
Anki HIGH 7.8
CVE-2025-62185

In Ankitects Anki before 25.02.5, a crafted shared deck can place a YouTube downloader executable in the media folder, and this is executed for a You…

Fix: 25.02.5+
Fix from $1,950 2025-10-07
Unclassified HIGH 7.8
CVE-2025-57781

The installers of DENSO TEN drive recorder viewer contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Librar…

Mitigation only
Fix from $1,950 2025-10-06
Unclassified HIGH 7.3
CVE-2025-27237

In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious mod…

Mitigation only
Fix from $1,950 2025-10-03
Unclassified HIGH 7.8
CVE-2025-11223

Installer of Panasonic AutoDownloader version 1.2.8 contains an issue with the DLL search path, which may lead to loading a crafted DLL fi…

Mitigation only
Fix from $1,950 2025-10-03
Nsight Graphics HIGH 7.8
CVE-2025-23355

NVIDIA Nsight Graphics for Windows contains a vulnerability in an ngfx component, where an attacker could cause a DLL highjacking attack. A successfu…

Fix: 2025.3+
Fix from $1,950 2025-10-01
Digisigner One HIGH 8.8
CVE-2025-59684

DigiSign DigiSigner ONE 1.0.4.60 allows DLL Hijacking.

No fix yet
Fix from $1,950 2025-10-01