Skip to main content

CWE archive

CWE-427 CVEs

Programmatic archive

1,188 CVEs tagged with CWE-42724 Critical, 799 High, 357 Medium, 6 Low, 2 Unrated.

CVE-2021-28098

Published Apr 14, 2021

An issue was discovered in Forescout CounterACT before 8.1.4. A local privilege escalation vulnerability is present in the logging function. SecureConnector runs with administrati…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-28647

Published Apr 13, 2021

Trend Micro Password Manager version 5 (Consumer) is vulnerable to a DLL Hijacking vulnerability which could allow an attacker to inject a malicious DLL file during the installati…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21545

Published Apr 12, 2021

Dell Peripheral Manager 1.3.1 or greater contains remediation for a local privilege escalation vulnerability that could be potentially exploited to gain arbitrary code execution o…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-6790

Published Mar 25, 2021

Calling an executable through an Uncontrolled Search Path Element in the Bosch Video Streaming Gateway installer up to and including version 6.45.10 potentially allows an attacker…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-6789

Published Mar 25, 2021

Loading a DLL through an Uncontrolled Search Path Element in the Bosch Monitor Wall installer up to and including version 10.00.0164 potentially allows an attacker to execute arbi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-6788

Published Mar 25, 2021

Loading a DLL through an Uncontrolled Search Path Element in the Bosch Configuration Manager installer up to and including version 7.21.0078 potentially allows an attacker to exec…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-6787

Published Mar 25, 2021

Loading a DLL through an Uncontrolled Search Path Element in the Bosch Video Client installer up to and including version 1.7.6.079 potentially allows an attacker to execute arbit…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-6786

Published Mar 25, 2021

Loading a DLL through an Uncontrolled Search Path Element in the Bosch Video Recording Manager installer up to and including version 3.82.0055 for 3.82, up to and including versio…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-6771

Published Mar 25, 2021

Loading a DLL through an Uncontrolled Search Path Element in Bosch IP Helper up to and including version 1.00.0008 potentially allows an attacker to execute arbitrary code on a vi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-28820

Published Mar 23, 2021

The FTL Server (tibftlserver), FTL C API, FTL Golang API, FTL Java API, and FTL .Net API components of TIBCO Software Inc.'s TIBCO FTL - Community Edition, TIBCO FTL - Developer E…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-28955

Published Mar 22, 2021

git-bug before 0.7.2 has an Uncontrolled Search Path Element. It will execute git.bat from the current directory in certain PATH situations (most often seen on Windows).

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-9367

Published Mar 18, 2021

The MPS Agent in Zoho ManageEngine Desktop Central MSP build MSP build 10.0.486 is vulnerable to DLL Hijacking: dcinventory.exe and dcconfig.exe try to load CSUNSAPI.dll without s…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-26155

Published Mar 18, 2021

Multiple files and folders in Utimaco SecurityServer 4.20.0.4 and 4.31.1.0. are installed with Read/Write permissions for authenticated users, which allows for binaries to be mani…

CVSS 7.8 · High

CVE-2021-20674

Published Mar 12, 2021

Untrusted search path vulnerability in Installer of MagicConnect Client program distributed before 2021 March 1 allows an attacker to gain privileges and via a Trojan horse DLL in…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-28646

Published Feb 26, 2021

ownCloud owncloud/client before 2.7 allows DLL Injection. The desktop client loaded development plugins from certain directories when they were present.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 901-925 of 1,188 CVEsPage 37 of 48