Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-426 (不可信的搜索路径) — Vulnerability Class 193

193 vulnerabilities classified as CWE-426 (不可信的搜索路径). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-41953 Git clone remote code execution vulnerability in git-for-windows — git 8.6 High2023-01-17
CVE-2023-21764 Microsoft Exchange Server Elevation of Privilege Vulnerability — Microsoft Exchange Server 2019 Cumulative Update 11 7.8 High2023-01-10
CVE-2023-21763 Microsoft Exchange Server Elevation of Privilege Vulnerability — Microsoft Exchange Server 2019 Cumulative Update 11 7.8 High2023-01-10
CVE-2022-31253 openldap2: /usr/lib/openldap/start allows ldap user/group to recursively chown arbitrary directory trees to itself — Factory 7.1 High2022-11-09
CVE-2022-3734 Redis on Windows dbghelp.dll uncontrolled search path — Redis 6.3 Medium2022-10-28
CVE-2022-0074 Privilege Escalation in OpenLiteSpeed Web Server — OpenLiteSpeed Web Server 8.8 High2022-10-27
CVE-2022-36070 Poetry's Untrusted Search Path can lead to Local Code Execution on Windows — poetry 7.3 High2022-09-07
CVE-2022-31012 Git for Windows' installer can be tricked into executing an untrusted binary — git 8.2 High2022-07-12
CVE-2017-20123 Viscosity DLL untrusted search path — Viscosity 8.8 High2022-06-30
CVE-2022-24826 Git LFS can execute a binary from the current directory on Windows — git-lfs 9.8 Critical2022-04-19
CVE-2022-0014 Cortex XDR Agent: Unintended Program Execution When Using Live Terminal Session — Cortex XDR Agent 6.7 Medium2022-01-12
CVE-2011-4125 Calibre 代码问题漏洞 — Calibre 9.8 -2021-10-27
CVE-2021-36297 SupportAssist Client 代码问题漏洞 — SupportAssist Client Consumer 7.8 High2021-09-28
CVE-2021-31841 DLL side loading vulnerability in MA for Windows — McAfee Agent for Windows 8.2 High2021-09-22
CVE-2021-37617 Untrusted Search Path in Nextcloud Desktop Client — security-advisories 7.3 High2021-08-18
CVE-2021-21562 Dell Technologies Dell PowerScale OneFS代码问题漏洞 — PowerScale OneFS 4.4 Medium2021-08-02
CVE-2021-25698 Teradici PCoIP Standard Agent代码问题漏洞 — - PCoIP Standard Agent - PCoIP Graphics Agent - PCoIP Software Client 7.8 -2021-07-21
CVE-2021-25699 Teradici PCoIP Software Agent 代码问题漏洞 — - PCoIP Standard Agent - PCoIP Graphics Agent - PCoIP Software Client 7.8 -2021-07-21
CVE-2021-21078 Adobe Creative Cloud Unquoted Service Path in CCXProcess — Creative Cloud (desktop component) 7.3 -2021-03-12
CVE-2021-21055 Adobe Dreamweaver Untrusted Search Path Vulnerability Could Lead To Information Disclosure — Dreamweaver 6.2 Medium2021-02-11
CVE-2021-21237 Git LFS can execute a Git binary from the current directory on Windows — git-lfs 7.2 High2021-01-15
CVE-2020-5144 SonicWall Global VPN client 代码问题漏洞 — SonicWall Global VPN Client 8.4 -2020-10-28
CVE-2020-6023 Check Point ZoneAlarm 代码问题漏洞 — Check Point ZoneAlarm 7.8 -2020-10-27
CVE-2020-8338 Lenovo Diagnostics 代码问题漏洞 — Diagnostics 7.8 High2020-10-14
CVE-2020-10733 PostgreSQL 代码问题漏洞 — PostgreSQL 7.8 -2020-09-16
CVE-2020-7315 DLL Injection vulnerability in MA for Windows — MA for Windows 6.0 Medium2020-09-10
CVE-2020-8317 Lenovo Drivers Management 代码问题漏洞 — Drivers Management 7.3 High2020-07-24
CVE-2020-7279 DLL search order hijacking in Host IPS — McAfee Host Intrusion Prevention System (Host IPS) for Windows 4.6 Medium2020-06-10
CVE-2019-6196 Lenovo安装包代码问题漏洞 — Installation Packages 6.7 Medium2020-06-09
CVE-2019-6173 Lenovo安装包代码问题漏洞 — Installation Packages 6.7 Medium2020-06-09

Vulnerabilities classified as CWE-426 (不可信的搜索路径) represent 193 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.