Vulnerability index

Browse CVEs

1,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
HIGH 7.8 CVE-2018-13806 A vulnerability has been identified in SIEMENS TD Keypad Designer (All versions). A DLL hijacking vulnerability exists in all versions of SIEMENS TD … Td Keypad Designer Mitigation only Fix from $1,9502018-09-12 HIGH 7.8 CVE-2018-14797 Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 allow a specially crafted DLL file to be placed in the search path and loaded as an in… Deltav Mitigation only Fix from $1,9502018-08-23 MEDIUM 6.0 CVE-2018-5235 Norton Utilities (prior to 16.0.3.44) may be susceptible to a DLL Preloading vulnerability, which is a type of issue that can occur when an applicati… Norton Utilities 16.0.3.44+ Fix from $1,6002018-08-22 HIGH 7.8 CVE-2018-5238 Norton Power Eraser (prior to 5.3.0.24) and SymDiag (prior to 2.1.242) may be susceptible to a DLL Preloading vulnerability, which is a type of issue… Norton Power Eraser 2.1.242 / 5.3.0.24+ Fix from $1,9502018-08-22 HIGH 7.8 CVE-2018-8090 Quick Heal Total Security 64 bit 17.00 (QHTS64.exe), (QHTSFT64.exe) - Version 10.0.1.38; Quick Heal Total Security 32 bit 17.00 (QHTS32.exe), (QHTSFT… Antivirus Pro Mitigation only Fix from $1,9502018-07-25 CRITICAL 9.8 CVE-2018-12805 Adobe Connect versions 9.7.5 and earlier have an Insecure Library Loading vulnerability. Successful exploitation could lead to privilege escalation. Connect after 9.7.5 Fix from $2,3002018-07-20 HIGH 7.3 CVE-2018-11049 RSA Identity Governance and Lifecycle, RSA Via Lifecycle and Governance, and RSA IMG releases have an uncontrolled search vulnerability. The installa… Rsa Identity Governance And Lifecycle Mitigation only Fix from $1,9502018-07-11 HIGH 7.8 CVE-2018-1000622 The Rust Programming Language rustdoc version Between 0.8 and 1.27.0 contains a CWE-427: Uncontrolled Search Path Element vulnerability in rustdoc pl… Rust after 1.27.0 Fix from $1,9502018-07-09 HIGH 7.8 CVE-2017-7836 The "pingsender" executable used by the Firefox Health Report dynamically loads a system copy of libcurl, which an attacker could replace. This allow… Firefox after 56.0.2 Fix from $1,9502018-06-11 HIGH 7.8 CVE-2018-4938 Adobe ColdFusion Update 5 and earlier versions, ColdFusion 11 Update 13 and earlier versions have an exploitable Insecure Library Loading vulnerabili… Coldfusion Mitigation only Fix from $1,9502018-05-19 HIGH 7.8 CVE-2018-3649 DLL injection vulnerability in the installation executables (Autorun.exe and Setup.exe) for Intel's wireless drivers and related software in Intel Du… Dual Band Wireless Ac 3160 20.20.2.2+ Fix from $1,9502018-05-10 HIGH 7.8 CVE-2017-5175 Advantech WebAccess 8.1 and earlier contains a DLL hijacking vulnerability which may allow an attacker to run a malicious DLL file within the search … Webaccess after 8.1 Fix from $1,9502018-05-09 HIGH 7.8 CVE-2017-14010 In SpiderControl MicroBrowser Windows XP, Vista 7, 8 and 10, Versions 1.6.30.144 and prior, an uncontrolled search path element vulnerability has bee… Scada Microbrowser after 1.6.30.144 Fix from $1,9502018-04-26 HIGH 7.8 CVE-2018-6765 Swisscom MySwisscomAssistant 2.17.1.1065 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on t… Myswisscomassistant Mitigation only Fix from $1,9502018-03-27 HIGH 7.8 CVE-2018-6766 Swisscom TVMediaHelper 1.1.0.50 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on the target… Tvmediahelper Mitigation only Fix from $1,9502018-03-27 HIGH 7.0 CVE-2018-5457 A uncontrolled search path element issue was discovered in Vyaire Medical CareFusion Upgrade Utility used with Windows XP systems, Versions 2.0.2.2 a… Carefusion Upgrade Utility after 2.0.2.2 Fix from $1,9502018-02-06 HIGH 7.2 CVE-2017-5170 An Uncontrolled Search Path Element issue was discovered in Moxa SoftNVR-IA Live Viewer, Version 3.30.3122 and prior versions. An uncontrolled search… Softnvr Ia Live View after 3.3 Fix from $1,9502018-01-18 HIGH 7.8 CVE-2017-16777 If HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 5.0.3 is installed but VMware Fusion is not, a local attacker can create a fake… Vagrant No fix yet Fix from $1,9502017-11-16 MEDIUM 6.7 CVE-2017-12313 An untrusted search path (aka DLL Preload) vulnerability in the Cisco Network Academy Packet Tracer software could allow an authenticated, local atta… Packet Tracer Mitigation only Fix from $1,6002017-11-16 HIGH 7.8 CVE-2017-12314 A vulnerability in the Cisco FindIT Network Discovery Utility could allow an authenticated, local attacker to perform a DLL preloading attack, potent… Findit Network Discovery Utility Mitigation only Fix from $1,9502017-11-16 HIGH 7.8 CVE-2017-14020 In AutomationDirect CLICK Programming Software (Part Number C0-PGMSW) Versions 2.10 and prior; C-More Programming Software (Part Number EA9-PGMSW) Ve… Click Plc Firmware after 6.30 Fix from $1,9502017-11-13 HIGH 7.8 CVE-2017-14029 An Uncontrolled Search Path Element issue was discovered in Trihedral VTScada 11.3.03 and prior. The program will execute specially crafted malicious… Vtscada after 11.3.03 Fix from $1,9502017-11-06 HIGH 7.8 CVE-2017-14017 An Uncontrolled Search Path Element issue was discovered in Progea Movicon Version 11.5.1181 and prior. An uncontrolled search path element vulnerabi… Movicon after 11.5.1181 Fix from $1,9502017-10-19 HIGH 7.8 CVE-2017-12579 An insecure suid wrapper binary in the HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 4.0.24 and earlier allows a non-root user t… Vagrant Vmware Fusion after 4.0.24 Fix from $1,9502017-10-19 HIGH 7.8 CVE-2017-13993 An Uncontrolled Search Path or Element issue was discovered in i-SENS SmartLog Diabetes Management Software, Version 2.4.0 and prior versions. An unc… Smartlog Diabetes Management Software after 2.4.0 Fix from $1,9502017-10-05 MEDIUM 5.3 CVE-2017-5147 An Uncontrolled Search Path Element issue was discovered in AzeoTech DAQFactory versions prior to 17.1. An uncontrolled search path element vulnerabi… Daqfactory after 16.3 Fix from $1,6002017-09-09 HIGH 7.8 CVE-2017-11158 Multiple untrusted search path vulnerabilities in the installer in Synology Cloud Station Drive before 4.2.5-4396 on Windows allow local attackers to… Cloud Station Drive after 4.2.4-4393 Fix from $1,9502017-08-31 HIGH 7.8 CVE-2017-12717 An Uncontrolled Search Path Element issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A maliciously crafted dll file place… Webaccess after 8.2 Fix from $1,9502017-08-30 HIGH 7.8 CVE-2014-8393EPSS 8% DLL Hijacking vulnerability in CorelDRAW X7, Corel Photo-Paint X7, Corel PaintShop Pro X7, Corel Painter 2015, and Corel PDF Fusion. Coreldraw No fix yet Fix from $1,9502017-08-29 HIGH 7.8 CVE-2017-11159 Multiple untrusted search path vulnerabilities in installer in Synology Photo Station Uploader before 1.4.2-084 on Windows allows local attackers to … Photo Station Uploader after 1.4.1-083 Fix from $1,9502017-08-23