Threats Tagged 'cwe-427'
View all threats tagged with 'cwe-427'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-427'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-8637: CWE-427: Uncontrolled Search Path Element in Lenovo LanSchool ClassicCVE-2026-8637 0 CVE-2026-8637 is a high-severity vulnerability in Lenovo LanSchool Classic involving an uncontrolled search path element. This flaw allows a local authenticated user to execute arbitrary code with elevated privileges by exploiting the way the application handles search paths. No specific affected versions or patches have been disclosed yet. Join the discussion | CVE Database V5 | 06/10/2026, 14:09:32 UTC Added: 06/10/2026, 14:50:22 UTC |
CVE-2026-47937: Uncontrolled Search Path Element (CWE-427) in Adobe Acrobat ReaderCVE-2026-47937 0 Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed. Join the discussion | CVE Database V5 | 06/09/2026, 20:05:51 UTC Added: 06/09/2026, 20:26:03 UTC |
CVE-2026-41567: CWE-427: Uncontrolled Search Path Element in moby moby/v2/daemonCVE-2026-41567 0 Moby is an open source container framework. In versions prior to 29.5.1 and in moby/moby v2 prior to v2.0.0-beta.14, when a compressed archive is uploaded to a container via `PUT /containers/{id}/archive` or piped through `docker cp -`, the daemon resolves decompression binaries (such as `xz` or `unpigz`) from the container's filesystem rather than the host's due to incorrect ordering of operations. A malicious container image containing a trojanized decompression binary can achieve arbitrary code execution with full daemon privileges, including host root UID and unrestricted capabilities, when a user uploads a compressed (xz or gzip) archive into that container. This issue is fixed in Docker Engine 29.5.1 and moby/moby v2.0.0-beta.14. Workarounds include only running containers from trusted images, using authorization plugins to restrict access to the `PUT /containers/{id}/archive` endpoint, and avoiding piping compressed archives into containers created from untrusted images Join the discussion | CVE Database V5 | 06/05/2026, 00:35:50 UTC Added: 06/05/2026, 01:33:39 UTC |
CVE-2026-50033: CWE-427 in Acronis Acronis DeviceLock DLPCVE-2026-50033 0 Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis DeviceLock DLP (Windows) before build 9.0.15051.93227. Join the discussion | CVE Database V5 | 06/03/2026, 19:26:05 UTC Added: 06/03/2026, 20:18:39 UTC |
CVE-2026-44682: CWE-427 in Acronis Acronis DeviceLock DLPCVE-2026-44682 0 Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis DeviceLock DLP (Windows) before build 9.0.15051.93227. Join the discussion | CVE Database V5 | 06/03/2026, 19:26:29 UTC Added: 06/03/2026, 20:18:39 UTC |
CVE-2026-44609: CWE-427 in Acronis Acronis DeviceLock DLPCVE-2026-44609 0 Local privilege escalation due to EXE hijacking vulnerability. The following products are affected: Acronis DeviceLock DLP (Windows) before build 9.0.15051.93227. Join the discussion | CVE Database V5 | 06/03/2026, 19:25:39 UTC Added: 06/03/2026, 20:18:39 UTC |
CVE-2026-44358: CWE-427: Uncontrolled Search Path Element in espressif shared-github-dangerjsCVE-2026-44358 0 Espressif Shared GitHub DangerJS is a reusable GitHub Action CI DangerJS workflow for Espressif GitHub projects. Prior to 1.0.1, the action's entrypoint.sh invoked DangerJS from the caller's workspace after copying the fork's checkout into it, creating an untrusted search path for both binary resolution and Node.js module resolution. A fork pull request processed by a pull_request_target workflow could therefore cause fork-supplied code to execute inside the action container in place of the action's own code. This vulnerability is fixed in 1.0.1. Join the discussion | CVE Database V5 | 05/28/2026, 14:28:43 UTC Added: 05/28/2026, 15:33:38 UTC |
CVE-2026-47274: CWE-427: Uncontrolled Search Path Element in mcdope pam_usbCVE-2026-47274 0 pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.0, multiple pam_usb helper tools resolved external binaries through the PATH environment variable rather than using absolute paths. An attacker who can influence the process environment during PAM authentication or tool execution could substitute malicious binaries. The affected tools are pamusb-check (src/tmux.c), pamusb-conf (tools/pamusb-conf), and pamusb-keyring-unlock-gnome (tools/pamusb-keyring-unlock-gnome). This vulnerability is fixed in 0.9.0. Join the discussion | CVE Database V5 | 05/27/2026, 20:02:38 UTC Added: 05/27/2026, 20:18:37 UTC |
CVE-2025-41670: CWE-427 Uncontrolled Search Path Element in Phoenix Contact AXC F 1152CVE-2025-41670 0 A local user with low privileges may be able to influence the behavior of a privileged system service by manipulating configuration or application-related files located in user-writable areas of the filesystem. The affected service processes data from locations that are not sufficiently protected against modification by low-privileged users. As the service runs with elevated privileges, successful exploitation may result in a local privilege escalation. Join the discussion | CVE Database V5 | 05/27/2026, 07:17:43 UTC Added: 05/27/2026, 08:03:35 UTC |
CVE-2025-14575: CWE-427: Uncontrolled Search Path Element in The Qt Company QtCVE-2025-14575 0 An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working directory. Join the discussion | CVE Database V5 | 05/19/2026, 13:01:33 UTC Added: 05/19/2026, 13:36:54 UTC |
Showing 1 to 10 of 146 results