The product searches for critical resources using an externally-supplied search path that can point to resources that are not under the product's direct control.
Volume of CVEs assigned to CWE-426 and their average CVSS base score over time.
Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.
655 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-0096HIGH Untrusted search path vulnerability in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Serv | Mar 11, 2015 | 9.3 | 82 | NO | YES |
CVE-2012-1854HIGH Untrusted search path vulnerability in VBE6.dll in Microsoft Office 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; Microsoft Visual Basic for Applications (VBA); and Summit Mic | Jul 10, 2012 | 7.8 | 76 | YES | NO |
CVE-2022-22047HIGH Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability | Jul 12, 2022 | 7.8 | 73 | YES | NO |
CVE-2022-23748HIGH mDNSResponder.exe is vulnerable to DLL Sideloading attack. Executable improperly specifies how to load the DLL, from which folder and under what conditions. In these scenarios, a m | Nov 17, 2022 | 7.8 | 69 | YES | NO |
CVE-2016-5330HIGH Untrusted search path vulnerability in the HGFS (aka Shared Folders) feature in VMware Tools 10.0.5 in VMware ESXi 5.0 through 6.0, VMware Workstation Pro 12.1.x before 12.1.1, VMw | Aug 8, 2016 | 7.8 | 55 | NO | YES |
CVE-2016-10009HIGH Untrusted search path vulnerability in ssh-agent.c in ssh-agent in OpenSSH before 7.4 allows remote attackers to execute arbitrary local PKCS#11 modules by leveraging control over | Jan 5, 2017 | 7.3 | 52 | NO | YES |
CVE-2016-0016HIGH Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gol | Jan 13, 2016 | 7.8 | 52 | NO | YES |
CVE-2019-11660HIGH Privileges manipulation in Micro Focus Data Protector, versions 10.00, 10.01, 10.02, 10.03, 10.04, 10.10, 10.20, 10.30, 10.40. This vulnerability could be exploited by a low-privil | Sep 13, 2019 | 7.8 | 48 | NO | YES |
CVE-2018-12589HIGH Polaris Office 2017 8.1 allows attackers to execute arbitrary code via a Trojan horse puiframeworkproresenu.dll file in the current working directory. | Jun 28, 2018 | 7.8 | 46 | NO | YES |
CVE-2023-30330CRITICAL SoftExpert (SE) Excellence Suite 2.x versions before 2.1.3 is vulnerable to Local File Inclusion in the function /se/v42300/generic/gn_defaultframe/2.0/defaultframe_filter.php. | May 12, 2023 | 9.8 | 42 | NO | YES |
Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.
Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.
Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.