Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
HIGH 7.8 CVE-2024-29223 Uncontrolled search path for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow an authenticated user to potentially enable… Quickassist Technology 2.2.0-0012+ Fix from $1,9502025-02-12 MEDIUM 6.7 CVE-2024-21830 Uncontrolled search path in some Intel(R) VPL software before version 2023.4.0 may allow an authenticated user to potentially enable escalation of pr… Mitigation only Fix from $1,6002025-02-12 MEDIUM 6.7 CVE-2024-24852 Uncontrolled search path in some Intel(R) Ethernet Adapter Complete Driver Pack install before versions 29.1 may allow an authenticated user to poten… Mitigation only Fix from $1,6002025-02-12 HIGH 7.3 CVE-2023-31361 A DLL hijacking vulnerability in AMD Integrated Management Technology (AIM-T) Manageability Service could allow an attacker to achieve privilege esca… Mitigation only Fix from $1,9502025-02-11 HIGH 7.3 CVE-2025-24039 Visual Studio Code Elevation of Privilege Vulnerability Visual Studio Code 1.97.1+ Fix from $1,9502025-02-11 HIGH 7.3 CVE-2025-21206 Visual Studio Installer Elevation of Privilege Vulnerability Visual Studio 2017 15.9.70 / 16.11.44+ Fix from $1,9502025-02-11 HIGH 7.8 CVE-2024-53977 A vulnerability has been identified in ModelSim (All versions < V2025.1), Questa (All versions < V2025.1). An example setup script contained in affec… Modelsim 2025.1+ Fix from $1,9502025-02-11 HIGH 7.8 CVE-2024-48091 Tally Prime Edit Log v2.1 was discovered to contain a DLL hijacking vulnerability via the component TextShaping.dll. This vulnerability allows attack… Mitigation only Fix from $1,9502025-02-07 HIGH 7.3 CVE-2024-57426 NetMod VPN Client 5.3.1 is vulnerable to DLL injection, allowing an attacker to execute arbitrary code by placing a malicious DLL in a directory wher… Mitigation only Fix from $1,9502025-02-06 HIGH 8.5 CVE-2024-2658 A misconfiguration in lmadmin.exe of FlexNet Publisher versions prior to 2024 R1 (11.19.6.0) allows the OpenSSL configuration file to load from a non… Mitigation only Fix from $1,9502025-01-30 HIGH 8.6 CVE-2024-9493 DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  ToolStick installer can lead to privilege escalation and arbitrary co… Mitigation only Fix from $1,9502025-01-24 HIGH 8.6 CVE-2024-9494 DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  CP210 VCP Win 2k installer can lead to privilege escalation and a… Mitigation only Fix from $1,9502025-01-24 HIGH 8.6 CVE-2024-9495 DLL hijacking vulnerabilities, caused by an uncontrolled search path in the CP210x VCP Windows installer can lead to privilege escalation and ar… Mitigation only Fix from $1,9502025-01-24 HIGH 8.6 CVE-2024-9496 DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Dev Kit installer can lead to privilege escalation and a… Mitigation only Fix from $1,9502025-01-24 HIGH 8.6 CVE-2024-9497 DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress 4 SDK installer can lead to privilege escalation and arb… Mitigation only Fix from $1,9502025-01-24 HIGH 8.6 CVE-2024-9498 DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress SDK installer can lead to privilege escalation and arbit… Mitigation only Fix from $1,9502025-01-24 HIGH 8.6 CVE-2024-9499 DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Win 98SE Dev Kit installer can lead to privilege escalation and… Mitigation only Fix from $1,9502025-01-24 HIGH 8.6 CVE-2024-9490 DLL hijacking vulnerabilities, caused by an uncontrolled search path in Silicon Labs (8-bit) IDE installer can lead to privilege escalation and arbit… Mitigation only Fix from $1,9502025-01-24 HIGH 8.6 CVE-2024-9491 DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to privilege escalation and arbitra… Mitigation only Fix from $1,9502025-01-24 HIGH 8.6 CVE-2024-9492 DLL hijacking vulnerabilities, caused by an uncontrolled search path in Flash Programming Utility installer can lead to privilege escalation and arbi… Mitigation only Fix from $1,9502025-01-24 HIGH 8.8 CVE-2024-41739 IBM Cognos Dashboards 4.0.7 and 5.0.0 on Cloud Pak for Data could allow a remote attacker to perform unauthorized actions due to dependency confusion. Cognos Dashboards On Cloud Pak For Data Mitigation only Fix from $1,9502025-01-24 HIGH 7.8 CVE-2024-53588 A DLL hijacking vulnerability in iTop VPN v16.0 allows attackers to execute arbitrary code via placing a crafted DLL file into the path \ProgramData\… Mitigation only Fix from $1,9502025-01-23 HIGH 7.8 CVE-2025-21127 Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could lead to arbitrary cod… Photoshop 25.12.1 / 26.2+ Fix from $1,9502025-01-14 HIGH 7.8 CVE-2025-0069 Due to DLL injection vulnerability in SAPSetup, an attacker with either local user privileges or with access to a compromised corporate user�s Window… Mitigation only Fix from $1,9502025-01-14 HIGH 7.8 CVE-2024-55543 Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 3… Cyber Protect after 15 Fix from $1,9502025-01-02 HIGH 7.8 CVE-2024-55540 Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 3… Cyber Protect after 15 Fix from $1,9502025-01-02 HIGH 7.3 CVE-2024-55955 An incorrect permissions assignment vulnerability in Trend Micro Deep Security 20.0 agents between versions 20.0.1-9400 and 20.0.1-23340 could allow … Deep Security Agent Mitigation only Fix from $1,9502024-12-31 HIGH 7.8 CVE-2022-27595 An insecure library loading vulnerability has been reported to affect QVPN Device Client. If exploited, the vulnerability could allow local attackers… Qvpn 2.0.0.1316+ Fix from $1,9502024-12-19 HIGH 7.8 CVE-2024-9852 Uncontrolled Search Path Element vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite version… Mitigation only Fix from $1,9502024-11-28 HIGH 7.8 CVE-2024-8299 Uncontrolled Search Path Element vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite version… Mitigation only Fix from $1,9502024-11-28