Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
HIGH 7.8 CVE-2023-38566 Uncontrolled search path in some Intel(R) ISPC software before version 1.21.0 may allow an authenticated user to potentially enable escalation of pri… Implicit Spmd Program Compiler 1.21.0+ Fix from $1,9502024-02-14 HIGH 7.8 CVE-2023-35769 Uncontrolled search path in some Intel(R) CIP software before version 2.4.10577 may allow an authenticated user to potentially enable escalation of p… Computing Improvement Program 2.4.10577+ Fix from $1,9502024-02-14 HIGH 7.8 CVE-2023-36493 Uncontrolled search path in some Intel(R) SDK for OpenCL(TM) Applications software may allow an authenticated user to potentially enable escalation o… Software Development Kit For Opencl Mitigation only Fix from $1,9502024-02-14 HIGH 7.8 CVE-2023-35060 Uncontrolled search path in some Intel(R) Battery Life Diagnostic Tool software before version 2.3.1 may allow an authenticated user to potentially e… Battery Life Diagnostic Tool 2.3.1+ Fix from $1,9502024-02-14 HIGH 7.3 CVE-2023-32646 Uncontrolled search path element in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escal… Virtual Raid On Cpu 8.0.8.1001+ Fix from $1,9502024-02-14 HIGH 7.8 CVE-2023-32618 Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.2 may allow an authenticated user to po… Oneapi 4.3.2+ Fix from $1,9502024-02-14 MEDIUM 6.7 CVE-2023-28745 Uncontrolled search path in Intel(R) QSFP+ Configuration Utility software, all versions, may allow an authenticated user to potentially enable escala… Qsfp\+ Configuration Utility Mitigation only Fix from $1,6002024-02-14 HIGH 7.8 CVE-2023-28407 Uncontrolled search path in some Intel(R) XTU software before version 7.12.0.29 may allow an authenticated user to potentially enable escalation of p… Extreme Tuning Utility 7.12.0.29+ Fix from $1,9502024-02-14 MEDIUM 6.7 CVE-2023-25779 Uncontrolled search path element in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potent… Thunderbolt Dch Driver 88+ Fix from $1,6002024-02-14 HIGH 7.8 CVE-2023-24591 Uncontrolled search path in some Intel(R) Binary Configuration Tool software before version 3.4.4 may allow an authenticated user to potentially enab… Binary Configuration Tool 3.4.4+ Fix from $1,9502024-02-14 CRITICAL 9.8 CVE-2024-23054 An issue in Plone Docker Official Image 5.2.13 (5221) open-source software that could allow for remote code execution due to a package listed in ++pl… Plone Docker Official Image Mitigation only Fix from $2,3002024-02-05 HIGH 7.8 CVE-2024-23940 Trend Micro uiAirSupport, included in the Trend Micro Security 2023 family of consumer products, version 6.0.2092 and below is vulnerable to a DLL hi… Air Support 6.0.2103+ Fix from $1,9502024-01-29 HIGH 7.8 CVE-2023-51711 An issue was discovered in Regify Regipay Client for Windows version 4.5.1.0 allows DLL hijacking: a user can trigger the execution of arbitrary code… Regipay Mitigation only Fix from $1,9502024-01-24 MEDIUM 6.5 CVE-2023-27859 IBM Db2 10.1, 10.5, and 11.1 could allow a remote user to execute arbitrary code caused by installing like named jar files across multiple databases.… Db2 after 11.5.9 Fix from $1,6002024-01-22 MEDIUM 5.5 CVE-2023-32272 Uncontrolled search path in some Intel NUC Pro Software Suite Configuration Tool software installers before version 3.0.0.6 may allow an authenticate… Nuc Pro Software Suite after 3.0.0.6 Fix from $1,6002024-01-19 HIGH 7.8 CVE-2023-6740 Privilege escalation in jar_signature agent plugin in Checkmk before 2.2.0p18, 2.1.0p38 and 2.0.0p39 allows local user to escalate privileges Checkmk after 2.0.0 Fix from $1,9502024-01-12 HIGH 7.8 CVE-2023-29445 An uncontrolled search path element vulnerability (DLL hijacking) has been discovered that could allow a locally authenticated adversary to escalate … Kepware Kepserverex after 8.5 Fix from $1,9502024-01-10 HIGH 7.3 CVE-2023-29444 An uncontrolled search path element vulnerability (DLL hijacking) has been discovered that could allow a locally authenticated adversary to escalate … Kepware Kepserverex after 8.5 Fix from $1,9502024-01-10 HIGH 7.8 CVE-2023-6338 Uncontrolled search path vulnerabilities were reported in the Lenovo Universal Device Client (UDC) that could allow an attacker with local access to … Universal Device Client 23.10+ Fix from $1,9502024-01-03 HIGH 7.8 CVE-2023-41780 There is an unsafe DLL loading vulnerability in ZTE ZXCLOUD iRAI. Due to the  program  failed to adequately validate the user's input, an attacker co… Zxcloud Irai 7.23.32+ Fix from $1,9502024-01-03 HIGH 7.8 CVE-2023-43064 Facsimile Support for IBM i 7.2, 7.3, 7.4, and 7.5 could allow a local user to gain elevated privileges due to an unqualified library call. A malici… I Patch available Fix from $1,9502023-12-25 HIGH 7.8 CVE-2023-6891 A vulnerability has been found in PeaZip 9.4.0 and classified as problematic. Affected by this vulnerability is an unknown functionality in the libra… Peazip Mitigation only Fix from $1,9502023-12-17 HIGH 7.8 CVE-2023-31210 Usage of user controlled LD_LIBRARY_PATH in agent in Checkmk 2.2.0p10 up to 2.2.0p16 allows malicious Checkmk site user to escalate rights via inject… Checkmk Mitigation only Fix from $1,9502023-12-13 HIGH 7.8 CVE-2020-28369 In BeyondTrust Privilege Management for Windows (aka PMfW) through 5.7, a SYSTEM installation causes Cryptbase.dll to be loaded from the user-writabl… Privilege Management For Windows after 5.7 Fix from $1,9502023-12-12 HIGH 7.8 CVE-2023-48677 Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Home Office (Windows) befor… Cyber Protect Home Office 40901+ Fix from $1,9502023-12-12 CRITICAL 9.8 CVE-2023-41117 An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x before 14.9… Postgres Advanced Server 11.21.32 / 12.16.20+ Fix from $2,3002023-12-12 HIGH 7.8 CVE-2023-48861 DLL hijacking vulnerability in TTplayer version 7.0.2, allows local attackers to escalate privileges and execute arbitrary code via urlmon.dll. Ttplayer No fix yet Fix from $1,9502023-12-07 HIGH 7.8 CVE-2023-41613 EzViz Studio v2.2.0 is vulnerable to DLL hijacking. Ezviz Studio No fix yet Fix from $1,9502023-12-04 HIGH 7.8 CVE-2023-45252 DLL Hijacking vulnerability in Huddly HuddlyCameraService before version 8.0.7, not including version 7.99, due to the installation of the service in… Huddlycameraservice 8.0.7+ Fix from $1,9502023-12-01 HIGH 7.8 CVE-2023-47452 An Untrusted search path vulnerability in notepad++ 6.5 allows local users to gain escalated privileges through the msimg32.dll file in the current w… Notepad\+\+ No fix yet Fix from $1,9502023-11-30