Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-427 (对搜索路径元素未加控制) — Vulnerability Class 538

538 vulnerabilities classified as CWE-427 (对搜索路径元素未加控制). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-44199 DLL hijacking could lead to denial of service — Acronis Cyber Protect 15 5.5 -2021-11-29
CVE-2021-44198 DLL hijacking could lead to local privilege escalation — Acronis Cyber Protect 15 7.8 -2021-11-29
CVE-2021-3840 Antilles 代码问题漏洞 — Antilles 8.8 High2021-11-12
CVE-2021-31853 MDE DLL Search Order Hijacking vulnerability — McAfee Drive Encryption (MDE) 7.8 High2021-11-10
CVE-2021-38416 Delta Electronics DIALink — DIALink 7.8 High2021-11-03
CVE-2021-38420 Delta Electronics DIALink — DIALink 7.8 High2021-11-03
CVE-2021-30359 Harmony Browse 代码问题漏洞 — Check Point Harmony Browse and SandBlast Agent for Browsers 7.8 -2021-10-22
CVE-2021-38469 AUVESY Versiondog — Versiondog 9.1 Critical2021-10-22
CVE-2021-35982 Adobe Reader DC Windows Installer Uncontrolled Search Path element could lead to Arbitrary Code Execution — Acrobat Reader 7.3 -2021-09-29
CVE-2021-32466 Trend Micro HouseCall for Home Networks 代码问题漏洞 — Trend Micro HouseCall for Home Networks 7.0 -2021-09-29
CVE-2021-36216 LINE for Windows 代码问题漏洞 — LINE for Windows 8.4 -2021-09-08
CVE-2021-28581 Adobe Creative Cloud Desktop uncontrolled search path element vulnerability could lead to local privilege escalation — Creative Cloud (desktop component) 7.3 -2021-09-08
CVE-2021-22775 Schneider Electric GP-Pro EX 代码问题漏洞 — GP-Pro EX V4.09.250 and prior 7.8 -2021-09-02
CVE-2021-28594 Creative Cloud Desktop installer Uncontrolled Search Path element could lead to arbitrary code execution — Prelude 7.8 High2021-08-24
CVE-2021-28636 Adobe Acrobat Reader Unquoted Search Path Vulnerability — Acrobat Reader 7.3 High2021-08-20
CVE-2021-28595 Adobe Dimension Uncontrolled Search Path Element Could Lead To Remote Code Execution — Dimension 7.8 High2021-08-20
CVE-2021-1593 Cisco Packet Tracer for Windows DLL Injection Vulnerability — Cisco Packet Tracer 7.3 High2021-08-04
CVE-2020-5316 DELL Dell SupportAssist for Business PCs和Dell SupportAssist for Home PCs 代码问题漏洞 — Dell SupportAssist Client 7.8 High2021-07-22
CVE-2021-3550 Lenovo Pcmanager 代码问题漏洞 — PCManager 7.8 High2021-07-16
CVE-2021-3042 Cortex XDR Agent: Improper Control of User-Controlled File Leads to Local Privilege Escalation — Cortex XDR Agent 7.8 High2021-07-15
CVE-2021-3613 OpenVPN Connect代码问题漏洞 — OpenVPN Connect 7.3 -2021-07-02
CVE-2021-3606 OpenVPN代码问题漏洞 — OpenVPN-GUI 7.8 -2021-07-02
CVE-2021-28570 Adobe After Effects uncontrolled search path element vulnerability could lead to remote code execution — After Effects 8.3 High2021-06-28
CVE-2021-31840 DLL preload vulnerability in McAfee Agent for Windows — McAfee Agent for Windows 7.3 High2021-06-10
CVE-2021-3041 Cortex XDR Agent: Improper control of user-controlled file leads to local privilege escalation — Cortex XDR Agent 7.8 High2021-06-10
CVE-2021-1536 Cisco Webex Meetings, Webex Network Recording Player, and Webex Teams DLL Injection Vulnerability — Cisco Webex Teams 4.8 Medium2021-06-04
CVE-2021-3423 Privilege escalation in Bitdefender GravityZone Business Security — GravityZone Business Security 7.8 High2021-05-18
CVE-2021-3464 Lenovo Pcmanager 代码问题漏洞 — PCManager 7.8 High2021-04-27
CVE-2020-25244 Siemens LOGO! Soft Comfort 代码问题漏洞 — LOGO! Soft Comfort 8.4 High2021-04-22
CVE-2021-21070 Privilege Escalation Vulnerability in Adobe RoboHelp — RoboHelp 6.5 Medium2021-04-19

Vulnerabilities classified as CWE-427 (对搜索路径元素未加控制) represent 538 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.