Falhas do tipo CWE-427

842 resultados
CVE-2021-20051SonicWall Global VPN Client 4.10.7.1117 installer (32-bit and 64-bit) and earlier versions have a DLL Search Order Hijacking vulnerability iEPSS 0.7%CVE-2026-40342CRITICALFirebird: Path Traversal + Arbitrary File Write Leads to Remote Code ExecutionEPSS 0.7%CVE-2025-4981CRITICALPath Traversal Leading to RCE by Any Authenticated Mattermost UserEPSS 0.7%CVE-2020-9681MEDIUMAdobe Genuine Service privilege escalation vulnerabilityEPSS 0.7%CVE-2022-32168HIGHnotepad-plus-plus - DLL HijackingEPSS 0.7%CVE-2020-24419HIGHUncontrolled Search Path Element in Adobe After Effects for WindowsEPSS 0.7%CVE-2020-27348MEDIUMsnapcraft may build snaps with incorrect LD_LIBRARY_PATHEPSS 0.7%CVE-2017-14017An Uncontrolled Search Path Element issue was discovered in Progea Movicon Version 11.5.1181 and prior. An uncontrolled search path element EPSS 0.7%CVE-2020-24425HIGHPrivilege escalation vulnerability in Dreamweaver version 20.2EPSS 0.7%CVE-2025-29817MEDIUMMicrosoft Power Automate Desktop Information Disclosure VulnerabilityEPSS 0.7%CVE-2024-5290HIGHAn issue was discovered in Ubuntu wpa_supplicant that resulted in loading of arbitrary shared objects, which allows a local unprivileged attEPSS 0.7%CVE-2023-27298HIGHUncontrolled search path in the WULT software maintained by Intel(R) before version 1.0.0 (commit id 592300b) may allow an unauthenticated uEPSS 0.7%CVE-2022-28688HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of AVEVA Edge 2020 SP2 Patch 0(4201.2111.1802EPSS 0.6%CVE-2022-28686HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of AVEVA Edge 2020 SP2 Patch 0(4201.2111.1802EPSS 0.6%CVE-2025-21206HIGHVisual Studio Installer Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2023-0976MEDIUM A command Injection Vulnerability in TA for mac-OS prior to version 5.7.9 allows local users to place an arbitrary file into the /Library/TEPSS 0.6%CVE-2024-23940HIGHTrend Micro uiAirSupport, included in the Trend Micro Security 2023 family of consumer products, version 6.0.2092 and below is vulnerable toEPSS 0.6%CVE-2022-47632MEDIUMRazer Synapse before 3.7.0830.081906 allows privilege escalation due to an unsafe installation path, improper privilege management, and imprEPSS 0.6%CVE-2020-24440HIGHUncontrolled Search Path Element in Adobe Prelude for WindowsEPSS 0.6%CVE-2022-26511WPS Presentation 11.8.0.5745 insecurely load d3dx9_41.dll when opening .pps files('current directory type' DLL loading).EPSS 0.6%