Skip to main content

CWE archive

CWE-427 CVEs

Programmatic archive

1,188 CVEs tagged with CWE-42724 Critical, 799 High, 357 Medium, 6 Low, 2 Unrated.

CVE-2025-4532

Published May 11, 2025

A vulnerability classified as critical has been found in Shanghai Bairui Information Technology SunloginClient 15.8.3.19819. This affects an unknown part in the library process.dl…

CVSS 7.3 · High

CVE-2025-4525

Published May 10, 2025

A vulnerability, which was classified as critical, has been found in Discord 1.0.9188 on Windows. Affected by this issue is some unknown functionality in the library WINSTA.dll. T…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2025-4455

Published May 9, 2025

A vulnerability was found in Patch My PC Home Updater up to 5.1.3.0. It has been rated as critical. This issue affects some unknown processing in the library advapi32.dll/BCrypt.d…

CVSS 7.3 · High

CVE-2025-4272

Published May 5, 2025

A vulnerability was found in Mechrevo Control Console 1.0.2.70. It has been rated as critical. Affected by this issue is some unknown functionality in the library C:\Program Files…

CVSS 7.3 · High

CVE-2025-2769

Published Apr 23, 2025

Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installatio…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-2768

Published Apr 23, 2025

Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installatio…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-43950

Published Apr 22, 2025

DPMAdirektPro 4.1.5 is vulnerable to DLL Hijacking. It happens by placing a malicious DLL in a directory (in the absence of a legitimate DLL), which is then loaded by the applicat…

CVSS 7.8 · High

CVE-2024-12530

Published Apr 17, 2025

Uncontrolled Search Path Element vulnerability in OpenText Secure Content Manager on Windows allows DLL Side-Loading.This issue affects Secure Content Manager: 23.4. End-users ca…

CVSS 7.0 · High

CVE-2025-32780

Published Apr 15, 2025

BleachBit cleans files to free disk space and to maintain privacy. BleachBit for Windows up to version 4.6.2 is vulnerable to a DLL Hijacking vulnerability. By placing a malicious…

CVSS 7.3 · High

CVE-2025-29803

Published Apr 12, 2025

Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server Management Studio allows an authorized attacker to elevate privileges locally.

CVSS 7.3 · High

CVE-2025-2630

Published Apr 9, 2025

There is a DLL hijacking vulnerability due to an uncontrolled search path that exists in NI LabVIEW. This vulnerability may result in arbitrary code execution. Successful exploi…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2025-2629

Published Apr 9, 2025

There is a DLL hijacking vulnerability due to an uncontrolled search path that exists in NI LabVIEW when loading NI Error Reporting. This vulnerability may result in arbitrary co…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2025-22458

Published Apr 8, 2025

DLL hijacking in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows an authenticated attacker to escalate to System.

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-11859

Published Apr 7, 2025

DLL Search Order Hijacking vulnerability potentially allowed an attacker with administrator privileges to load a malicious dynamic-link library and execute its code.

CVSS 8.4 · High
evidence mentions
4
Buzz score
29.1

CVE-2025-3051

Published Apr 1, 2025

Linux::Statm::Tiny for Perl before 0.0701 allows untrusted code from the current working directory ('.') to be loaded similar to CVE-2016-1238. If an attacker can place a malicio…

CVSS 6.5 · Medium

CVE-2025-30673

Published Apr 1, 2025

Sub::HandlesVia for Perl before 0.050002 allows untrusted code from the current working directory ('.') to be loaded similar to CVE-2016-1238. If an attacker can place a maliciou…

CVSS 6.5 · Medium

CVE-2025-30672

Published Apr 1, 2025

Mite for Perl before 0.013000 generates code with the current working directory ('.') added to the @INC path similar to CVE-2016-1238. If an attacker can place a malicious file i…

CVSS 6.5 · Medium

CVE-2020-23438

Published Mar 4, 2025

Wondershare filmora 9.2.11 is affected by Trojan Dll hijacking leading to privilege escalation.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-10930

Published Mar 4, 2025

An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking and execute arbitrary code with escalated privileges.

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort
Showing 301-325 of 1,188 CVEsPage 13 of 48