Skip to main content

CWE archive

CWE-427 CVEs

Programmatic archive

1,188 CVEs tagged with CWE-42724 Critical, 799 High, 357 Medium, 6 Low, 2 Unrated.

CVE-2025-1804

Published Mar 1, 2025

A vulnerability was found in Blizzard Battle.Net up to 2.39.0.15212 on Windows and classified as critical. Affected by this issue is some unknown functionality in the library prof…

CVSS 7.3 · High

CVE-2024-55898

Published Feb 24, 2025

IBM i 7.2, 7.3, 7.4, and 7.5 could allow a user with the capability to compile or restore a program to gain elevated privileges due to an unqualified library call. A malicious act…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-26624

Published Feb 18, 2025

Rufus is a utility that helps format and create bootable USB flash drives. A DLL hijacking vulnerability in Rufus 4.6.2208 and earlier versions allows an attacker loading and exec…

CVSS 6.8 · Medium

CVE-2024-57964

Published Feb 18, 2025

Insecure Loading of Dynamic Link Libraries have been discovered in HVAC Energy Saving Program, which could allow local attackers to potentially disclose information or execute arb…

CVSS 7.3 · High

CVE-2024-57963

Published Feb 18, 2025

Insecure Loading of Dynamic Link Libraries have been discovered in USB-CONVERTERCABLE DRIVER, which could allow local attackers to potentially disclose information or execute arbi…

CVSS 7.3 · High

CVE-2024-47006

Published Feb 12, 2025

Uncontrolled search path for the Intel(R) RealSense D400 Series Universal Windows Platform (UWP) Driver for Windows(R) 10 all versions may allow an authenticated user to potential…

CVSS 5.4 · Medium

CVE-2024-42492

Published Feb 12, 2025

Uncontrolled search path element in some BIOS and System Firmware Update Package for Intel(R) Server M50FCP family before version R01.02.0002 may allow a privileged user to potent…

CVSS 5.4 · Medium

CVE-2024-42405

Published Feb 12, 2025

Uncontrolled search path for some Intel(R) Quartus(R) Prime Software before version 23.1.1 Patch 1.01std may allow an authenticated user to potentially enable escalation of privil…

CVSS 5.4 · Medium

CVE-2024-39813

Published Feb 12, 2025

Uncontrolled search path for some EPCT software before version 1.42.8.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS 5.4 · Medium

CVE-2024-39372

Published Feb 12, 2025

Uncontrolled search path for the Intel(R) XTU software for Windows before version 7.14.2.14 may allow an authenticated user to potentially enable escalation of privilege via local…

CVSS 5.4 · Medium

CVE-2024-39365

Published Feb 12, 2025

Uncontrolled search path for the FPGA Support Package for the Intel(R) oneAPI DPC++/C++ Compiler software for Windows before version 2024.2 may allow an authenticated user to pote…

CVSS 5.4 · Medium

CVE-2024-39284

Published Feb 12, 2025

Uncontrolled search path for some Intel(R) Advisor software before version 2024.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-36291

Published Feb 12, 2025

Uncontrolled search path for some Intel(R) Chipset Software Installation Utility before version 10.1.19867.8574 may allow an authenticated user to potentially enable escalation of…

CVSS 5.4 · Medium

CVE-2024-36283

Published Feb 12, 2025

Uncontrolled search path for the Intel(R) Thread Director Visualizer software before version 1.0.1 may allow an authenticated user to potentially enable escalation of privilege vi…

CVSS 5.4 · Medium

CVE-2024-36280

Published Feb 12, 2025

Uncontrolled search path for some Intel(R) High Level Synthesis Compiler software before version 24.2 may allow an authenticated user to potentially enable escalation of privilege…

CVSS 5.4 · Medium

CVE-2024-32938

Published Feb 12, 2025

Uncontrolled search path for some Intel(R) MPI Library for Windows software before version 2021.13 may allow an authenticated user to potentially enable escalation of privilege vi…

CVSS 5.4 · Medium

CVE-2024-29223

Published Feb 12, 2025

Uncontrolled search path for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow an authenticated user to potentially enable escalation of privilege via l…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-24852

Published Feb 12, 2025

Uncontrolled search path in some Intel(R) Ethernet Adapter Complete Driver Pack install before versions 29.1 may allow an authenticated user to potentially enable escalation of pr…

CVSS 5.4 · Medium

CVE-2024-21830

Published Feb 12, 2025

Uncontrolled search path in some Intel(R) VPL software before version 2023.4.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS 5.4 · Medium

CVE-2023-31361

Published Feb 11, 2025

A DLL hijacking vulnerability in AMD Integrated Management Technology (AIM-T) Manageability Service could allow an attacker to achieve privilege escalation potentially resulting i…

CVSS 7.3 · High

CVE-2024-53977

Published Feb 11, 2025

A vulnerability has been identified in ModelSim (All versions < V2025.1), Questa (All versions < V2025.1). An example setup script contained in affected applications allows a spec…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 326-350 of 1,188 CVEsPage 14 of 48