Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-426 (不可信的搜索路径) — Vulnerability Class 193

193 vulnerabilities classified as CWE-426 (不可信的搜索路径). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-43586 Zoom VDI Client 安全漏洞 — Zoom Desktop Client for Windows, Zoom VDI Client for Windows and Zoom SDKs for Windows 7.3 High2023-12-13
CVE-2023-36003 XAML Diagnostics Elevation of Privilege Vulnerability — Windows 10 Version 1809 6.7 Medium2023-12-12
CVE-2023-26031 Privilege escalation in Apache Hadoop Yarn container-executor binary on Linux systems — Apache Hadoop 7.8 -2023-11-16
CVE-2023-39202 Zoom Rooms和Zoom VDI Client 代码问题漏洞 — Zoom Rooms Client for Windows and Zoom VDI Client 3.1 Low2023-11-14
CVE-2023-41840 Fortinet FortiClient 安全漏洞 — FortiClientWindows 7.4 High2023-11-14
CVE-2023-36393 Windows User Interface Application Core Remote Code Execution Vulnerability — Windows 10 Version 1809 7.8 High2023-11-14
CVE-2023-36422 Microsoft Windows Defender Elevation of Privilege Vulnerability — Windows Defender Antimalware Platform 7.8 High2023-11-14
CVE-2021-26738 Privilege Escalation for ZCC macOS via PATH Variable — Client Connector 7.8 High2023-10-23
CVE-2023-36780 Skype for Business Remote Code Execution Vulnerability — Skype for Business Server 2019 CU7 7.2 High2023-10-10
CVE-2023-36778 Microsoft Exchange Server Remote Code Execution Vulnerability — Microsoft Exchange Server 2019 Cumulative Update 13 8.0 High2023-10-10
CVE-2023-41766 Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.8 High2023-10-10
CVE-2023-39201 Zoom Client 代码问题漏洞 — CleanZoom 7.2 High2023-09-12
CVE-2023-4736 Untrusted Search Path in vim/vim — vim/vim 7.8 -2023-09-02
CVE-2023-40590 Untrusted search path on Windows systems leading to arbitrary code execution — GitPython 7.8 High2023-08-28
CVE-2023-29299 Adobe Acrobat Reader Untrusted Search Path Application denial-of-service — Acrobat Reader 4.7 Medium2023-08-10
CVE-2023-36898 Tablet Windows User Interface Application Core Remote Code Execution Vulnerability — Windows 11 version 21H2 7.8 High2023-08-08
CVE-2023-36540 Zoom Client 代码问题漏洞 — Zoom Desktop Client for Windows 7.3 High2023-08-08
CVE-2023-36538 Zoom Rooms 安全漏洞 — Zoom Rooms for Windows 8.4 High2023-07-11
CVE-2023-36536 Zoom Rooms 代码问题漏洞 — Zoom Rooms for Windows 8.2 High2023-07-11
CVE-2023-34119 Zoom Rooms 安全漏洞 — Zoom Rooms for Windows 8.2 High2023-07-11
CVE-2023-35343 Windows Geolocation Service Remote Code Execution Vulnerability — Windows 10 Version 1809 7.8 High2023-07-11
CVE-2023-28143 Local Privilege Escalation — Cloud Agent 6.7 Medium2023-04-18
CVE-2023-26358 Adobe Creative Cloud AdobeExtensionService.exe local privilege escalation vulnerability — Creative Cloud (desktop component) 8.6 High2023-03-22
CVE-2023-26038 ZoneMinder contains Local File Inclusion vulnerability via `web/ajax/modal.php` — zoneminder 5.4 Medium2023-02-25
CVE-2023-26036 ZoneMinder contains Local File Inclusion vulnerability — zoneminder 8.1 High2023-02-25
CVE-2023-23920 Node.js 代码问题漏洞 — Node 5.8 -2023-02-23
CVE-2023-22743 Git for Windows' installer is susceptible to DLL side loading attacks — git 7.3 High2023-02-14
CVE-2023-23618 gitk can inadvertently call executables in the worktree — git 8.6 High2023-02-14
CVE-2022-35868 Siemens TIA Multiuser Server 代码问题漏洞 — TIA Multiuser Server V14 6.7 Medium2023-02-14
CVE-2022-4883 libXpm 代码问题漏洞 — libXpm 8.8 -2023-02-07

Vulnerabilities classified as CWE-426 (不可信的搜索路径) represent 193 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.