Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
MEDIUM 6.7 CVE-2025-30506 Uncontrolled search path for some Intel Driver and Support Assistant before version 25.2 within Ring 3: User Applications may allow an escalation of … Mitigation only Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-31645 Uncontrolled search path for some System Event Log Viewer Utility software for all versions within Ring 3: User Applications may allow an escalation … Mitigation only Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-31647 Uncontrolled search path for some Intel(R) Graphics Software before version 25.22.1502.2 within Ring 3: User Applications may allow an escalation of … Mitigation only Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-30182 Uncontrolled search path for some Intel(R) Distribution for Python software installers before version 2025.2.0 within Ring 3: User Applications may a… Mitigation only Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-25059 Uncontrolled search path for some Intel(R) One Boot Flash Update (Intel(R) OFU) software before version 14.1.31 within Ring 3: User Applications may … Mitigation only Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-24842 Uncontrolled search path for the Intel(R) System Support Utility before version 4.1.0 within Ring 3: User Applications may allow an escalation of pri… Mitigation only Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-24491 Uncontrolled search path for some Intel(R) Killer(TM) Performance Suite software before version killer 4.0 40.25.509.1465 within Ring 3: User Applica… Mitigation only Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-20050 Uncontrolled search path for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications may allow an escalation o… Computing Improvement Program 2.4.11001+ Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-20065 Uncontrolled search path for some Display Virtualization for Windows OS software before version 1797 within Ring 2: Device Drivers may allow an escal… Mitigation only Fix from $1,6002025-11-11 HIGH 8.2 CVE-2025-23358 NVIDIA NVApp for Windows contains a vulnerability in the installer, where a local attacker can cause a search path element issue. A successful exploi… Mitigation only Fix from $1,9502025-11-04 HIGH 7.8 CVE-2025-11761 A potential security vulnerability has been identified in the HP Client Management Script Library software, which might allow escalation of privilege… Client Management Script Library 1.8.5+ Fix from $1,9502025-11-03 HIGH 7.8 CVE-2025-60749 DLL Hijacking vulnerability in Trimble SketchUp desktop 2025 via crafted libcef.dll used by sketchup_webhelper.exe. Mitigation only Fix from $1,9502025-10-31 HIGH 8.4 CVE-2025-61161 DLL hijacking vulnerability in Evope Collector 1.1.6.9.0 and related components load the wtsapi32.dll library from an uncontrolled search path (C:\Pr… Mitigation only Fix from $1,9502025-10-29 HIGH 7.8 CVE-2025-62776 The installer of WTW EAGLE (for Windows) 3.0.8.0 contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Librar… Mitigation only Fix from $1,9502025-10-29 HIGH 8.8 CVE-2025-9164 Docker Desktop Installer.exe is vulnerable to DLL hijacking due to insecure DLL search order. The installer searches for required DLLs in the user's … Mitigation only Fix from $1,9502025-10-27 HIGH 7.0 CVE-2025-11940 A security vulnerability has been detected in LibreWolf up to 143.0.4-1 on Windows. This affects an unknown function of the file assets/setup.nsi of … Mitigation only Fix from $1,9502025-10-19 HIGH 7.8 CVE-2025-10581 A potential DLL hijacking vulnerability was discovered in the Lenovo PC Manager during an internal security assessment that could allow a local authe… Pcmanager 5.1.140.9262+ Fix from $1,9502025-10-15 HIGH 7.8 CVE-2025-26861 RemoteCall Remote Support Program (for Operator) versions prior to 5.3.0 contain an uncontrolled search path element vulnerability. If a crafted DLL … Mitigation only Fix from $1,9502025-10-15 HIGH 7.8 CVE-2025-26860 RemoteCall Remote Support Program (for Operator) versions prior to 5.1.0 contain an uncontrolled search path element vulnerability. If a crafted DLL … Mitigation only Fix from $1,9502025-10-15 HIGH 7.8 CVE-2025-26859 RemoteView PC Application Console versions prior to 6.0.2 contain an uncontrolled search path element vulnerability. If a crafted DLL is placed in th… Mitigation only Fix from $1,9502025-10-15 HIGH 7.3 CVE-2025-57716 An Uncontrolled Search Path Element vulnerability [CWE-427] in FortiClient Windows 7.4.0 through 7.4.3, 7.2.0 through 7.2.11, 7.0 all versions may al… Forticlient 7.2.12 / 7.4.4+ Fix from $1,9502025-10-14 HIGH 8.6 CVE-2025-59889 Improper authentication of library files in the Eaton IPP software installer could lead to arbitrary code execution of an attacker with the access to… Mitigation only Fix from $1,9502025-10-14 HIGH 8.2 CVE-2025-23309 NVIDIA Display Driver contains a vulnerability where an uncontrolled DLL loading path might lead to arbitrary denial of service, escalation of privil… Mitigation only Fix from $1,9502025-10-10 HIGH 7.8 CVE-2025-32919 Use of an insecure temporary directory in the Windows License plugin for the Checkmk Windows Agent allows Privilege Escalation. This issue affects Ch… Checkmk 2.2.0+ Fix from $1,9502025-10-09 HIGH 7.8 CVE-2025-62185 In Ankitects Anki before 25.02.5, a crafted shared deck can place a YouTube downloader executable in the media folder, and this is executed for a You… Anki 25.02.5+ Fix from $1,9502025-10-07 HIGH 7.8 CVE-2025-57781 The installers of DENSO TEN drive recorder viewer contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Librar… Mitigation only Fix from $1,9502025-10-06 HIGH 7.3 CVE-2025-27237 In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious mod… Mitigation only Fix from $1,9502025-10-03 HIGH 7.8 CVE-2025-11223 Installer of Panasonic AutoDownloader version 1.2.8 contains an issue with the DLL search path, which may lead to loading a crafted DLL fi… Mitigation only Fix from $1,9502025-10-03 HIGH 7.8 CVE-2025-23355 NVIDIA Nsight Graphics for Windows contains a vulnerability in an ngfx component, where an attacker could cause a DLL highjacking attack. A successfu… Nsight Graphics 2025.3+ Fix from $1,9502025-10-01 HIGH 8.8 CVE-2025-59684 DigiSign DigiSigner ONE 1.0.4.60 allows DLL Hijacking. Digisigner One No fix yet Fix from $1,9502025-10-01