Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
HIGH 7.3 CVE-2022-31694 InstallBuilder Qt installers built with versions previous to 22.10 try to load DLLs from the installer binary parent directory when displaying popups… Installbuilder 22.10.0+ Fix from $1,9502022-11-18 HIGH 7.8 CVE-2022-36924 The Zoom Rooms Installer for Windows prior to 5.12.6 contains a local privilege escalation vulnerability. A local low-privileged user could exploit t… Rooms 5.12.6+ Fix from $1,9502022-11-17 HIGH 7.3 CVE-2022-28766 Windows 32-bit versions of the Zoom Client for Meetings before 5.12.6 and Zoom Rooms for Conference Room before version 5.12.6 are susceptible to a D… Meetings 5.12.6+ Fix from $1,9502022-11-17 HIGH 7.3 CVE-2022-36380 Uncontrolled search path in the installer software for some Intel(r) NUC Kit Wireless Adapter drivers for Windows 10 before version 22.40 may allow a… Nuc Kit Wireless Adapter Driver Installer 22.40.0+ Fix from $1,9502022-11-11 HIGH 7.8 CVE-2022-30548 Uncontrolled search path element in the Intel(R) Glorp software may allow an authenticated user to potentially enable escalation of privilege via loc… Glorp Mitigation only Fix from $1,9502022-11-11 HIGH 7.8 CVE-2022-27187 Uncontrolled search path element in the Intel(R) Quartus Prime Standard edition software before version 21.1 Patch 0.02std may allow an authenticated… Quartus Prime after 21.1 Fix from $1,9502022-11-11 HIGH 7.8 CVE-2022-27638 Uncontrolled search path element in the Intel(R) Advanced Link Analyzer Pro before version 22.2 and Standard edition software before version 22.1.1 S… Advanced Link Analyzer 22.1.1 / 22.2+ Fix from $1,9502022-11-11 HIGH 7.3 CVE-2022-26028 Uncontrolled search path in the Intel(R) VTune(TM) Profiler software before version 2022.2.0 may allow an authenticated user to potentially enable es… Vtune Profiler 2022.2.0+ Fix from $1,9502022-11-11 HIGH 7.3 CVE-2022-26086 Uncontrolled search path element in the PresentMon software maintained by Intel(R) before version 1.7.1 may allow an authenticated user to potentiall… Gametechdev Presentmon 1.7.1+ Fix from $1,9502022-11-11 HIGH 7.8 CVE-2021-33064 Uncontrolled search path in the software installer for Intel(R) System Studio for all versions, may allow an authenticated user to potentially enable… System Studio Mitigation only Fix from $1,9502022-11-11 HIGH 7.8 CVE-2022-43310 An Uncontrolled Search Path Element in Foxit Software released Foxit Reader v11.2.118.51569 allows attackers to escalate privileges when searching fo… Foxit Reader 11.2.118.51569+ Fix from $1,9502022-11-09 CRITICAL 9.8 CVE-2022-34825 Uncontrolled Search Path Element in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earlier, CLUSTERPRO X 5.0 SingleSe… Expresscluster X after 5.0 Fix from $2,3002022-11-08 HIGH 7.3 CVE-2022-44744 Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Home Office (Windows) befor… Cyber Protect Home Office 40107+ Fix from $1,9502022-11-07 HIGH 8.8 CVE-2022-39286 Jupyter Core is a package for the core common functionality of Jupyter projects. Jupyter Core prior to version 4.11.2 contains an arbitrary code exec… Debian Linux 4.11.2+ Fix from $1,9502022-10-26 HIGH 7.8 CVE-2022-41796 Untrusted search path vulnerability in the installer of Content Transfer (for Windows) Ver.1.3 and prior allows an attacker to gain privileges via a … Content Transfer after 1.3 Fix from $1,9502022-10-24 HIGH 7.8 CVE-2022-33921 Dell GeoDrive, versions prior to 2.2, contains Multiple DLL Hijacking Vulnerabilities. A low privilege attacker could potentially exploit this vulner… Geodrive 2.2.3+ Fix from $1,9502022-10-12 HIGH 7.8 CVE-2022-32168 Notepad++ versions 8.4.1 and before are vulnerable to DLL hijacking where an attacker can replace the vulnerable dll (UxTheme.dll) with his own dll a… Notepad\+\+ 8.4.5+ Fix from $1,9502022-09-28 HIGH 7.8 CVE-2022-40978 The installer of JetBrains IntelliJ IDEA before 2022.2.2 was vulnerable to EXE search order hijacking Intellij Idea 2022.2.2+ Fix from $1,9502022-09-19 HIGH 7.8 CVE-2022-2333 If an attacker manages to trick a valid user into loading a malicious DLL, the attacker may be able to achieve code execution in Honeywell SoftMaster… Softmaster Mitigation only Fix from $1,9502022-09-16 HIGH 7.8 CVE-2022-38633 Genymotion Desktop v3.2.1 was discovered to contain a DLL hijacking vulnerability which allows attackers to escalate privileges and execute arbitrary… Genymotion Desktop Mitigation only Fix from $1,9502022-09-13 HIGH 7.8 CVE-2022-34101 A vulnerability was discovered in the Crestron AirMedia Windows Application, version 4.3.1.39, in which a user can place a malicious DLL in a certain… Airmedia Mitigation only Fix from $1,9502022-09-13 HIGH 7.8 CVE-2022-39846 DLL hijacking vulnerability in Smart Switch PC prior to version 4.3.22083_3 allows attacker to execute arbitrary code. Smart Switch Pc 4.3.22083_3+ Fix from $1,9502022-09-09 HIGH 7.8 CVE-2022-36271 Outbyte PC Repair Installation File 1.7.112.7856 is vulnerable to Dll Hijacking. iertutil.dll is missing so an attacker can use a malicious dll with … Pc Repair No fix yet Fix from $1,9502022-09-07 HIGH 7.8 CVE-2022-2006 AutomationDirect DirectLOGIC has a DLL vulnerability in the install directory that may allow an attacker to execute code during the installation proc… C More Ea9 T6cl Firmware 6.73+ Fix from $1,9502022-08-31 HIGH 7.8 CVE-2022-26374 Uncontrolled search path in the installation binaries for Intel(R) SEAPI all versions may allow an authenticated user to potentially enable escalatio… Single Event Api Mitigation only Fix from $1,9502022-08-18 HIGH 7.8 CVE-2022-28696 Uncontrolled search path in the Intel(R) Distribution for Python before version 2022.0.3 may allow an authenticated user to potentially enable escala… Distribution For Python 2022.0.3+ Fix from $1,9502022-08-18 HIGH 7.8 CVE-2022-21807 Uncontrolled search path elements in the Intel(R) VTune(TM) Profiler software before version 2022.2.0 may allow an authenticated user to potentially … Vtune Profiler 2022.2.0+ Fix from $1,9502022-08-18 HIGH 7.8 CVE-2022-25841 Uncontrolled search path elements in the Intel(R) Datacenter Group Event Android application, all versions, may allow an authenticated user to potent… Datacenter Group Event Mitigation only Fix from $1,9502022-08-18 HIGH 7.8 CVE-2022-25999 Uncontrolled search path element in the Intel(R) Enpirion(R) Digital Power Configurator GUI software, all versions may allow an authenticated user to… Enpirion Digital Power Configurator Gui Mitigation only Fix from $1,9502022-08-18 HIGH 7.2 CVE-2022-2334EPSS 12% The application searches for a library dll that is not found. If an attacker can place a dll with this name, then the attacker can leverage it to exe… Edgeaggregator Mitigation only Fix from $1,9502022-08-17