Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-427

MITRE ↗

CWE-427

26
CRITICAL
791
HIGH
347
MEDIUM
5
LOW
1,213 CVEs · Page 11/25
6.7
CVE-2024-21772

Uncontrolled search path in some Intel(R) Advisor software before version 2024.0 may allow an authenticated user to pote

6.7
CVE-2024-21774

Uncontrolled search path in some Intel(R) Processor Identification Utility software before versions 6.10.34.1129, 7.1.6

6.7
CVE-2024-21777

Uncontrolled search path in some Intel(R) Quartus(R) Prime Pro Edition Design software before version 23.4 may allow an

6.7
CVE-2024-21788

Uncontrolled search path in some Intel(R) GPA software before version 2023.4 may allow an authenticated user to potentia

6.7
CVE-2024-21814

Uncontrolled search path for some Intel(R) Chipset Device Software before version 10.1.19444.8378 may allow an authentic

6.7
CVE-2024-21818

Uncontrolled search path in some Intel(R) PCM software before version 202311 may allow an authenticated user to potentia

6.7
CVE-2024-21831

Uncontrolled search path in some Intel(R) Processor Diagnostic Tool software before version 4.1.9.41 may allow an authen

6.7
CVE-2024-21837

Uncontrolled search path in some Intel(R) Quartus(R) Prime Lite Edition Design software before version 23.1 may allow an

6.7
CVE-2024-21841

Uncontrolled search path for some Intel(R) Distribution for GDB software before version 2024.0 may allow an authenticate

6.7
CVE-2024-21843

Uncontrolled search path for some Intel(R) Computing Improvement Program software before version 2.4.0.10654 may allow a

6.7
CVE-2024-21861

Uncontrolled search path in some Intel(R) GPA Framework software before version 2023.4 may allow an authenticated user t

6.7
CVE-2024-21862

Uncontrolled search path in some Intel(R) Quartus(R) Prime Standard Edition Design software before version 23.1 may allo

6.7
CVE-2024-22379

Uncontrolled search path in some Intel(R) Inspector software before version 2024.0 may allow an authenticated user to po

6.7
CVE-2024-21766

Uncontrolled search path for some Intel(R) oneAPI Math Kernel Library software before version 2024.1 may allow an authen

6.7
CVE-2024-21769

Uncontrolled search path in some Intel(R) Ethernet Connection I219-LM install software may allow an authenticated user t

6.7
CVE-2024-21784

Uncontrolled search path for some Intel(R) IPP Cryptography software before version 2021.11 may allow an authenticated u

6.7
CVE-2024-21857

Uncontrolled search path for some Intel(R) oneAPI Compiler software before version 2024.1 may allow an authenticated use

6.7
CVE-2024-22184

Uncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition Design Software before version 24.1 may allow an

6.7
CVE-2024-22376

Uncontrolled search path element in some installation software for Intel(R) Ethernet Adapter Driver Pack before version

6.7
CVE-2024-23489

Uncontrolled search path for some Intel(R) VROC software before version 8.6.0.1191 may allow an authenticated user to po

6.7
CVE-2024-23491

Uncontrolled search path in some Intel(R) Distribution for GDB software before version 2024.0.1 may allow an authenticat

6.7
CVE-2024-23907

Uncontrolled search path in some Intel(R) High Level Synthesis Compiler software before version 23.4 may allow an authen

6.7
CVE-2024-23909

Uncontrolled search path in some Intel(R) FPGA SDK for OpenCL(TM) software technology may allow an authenticated user to

6.7
CVE-2024-24977

Uncontrolled search path for some Intel(R) License Manager for FLEXlm product software before version 11.19.5.0 may allo

6.7
CVE-2024-26027

Uncontrolled search path for some Intel(R) Simics Package Manager software before version 1.8.3 may allow an authenticat

6.7
CVE-2024-28046

Uncontrolled search path in some Intel(R) GPA software before version 2024.1 may allow an authenticated user to potentia

6.7
CVE-2024-28172

Uncontrolled search path for some Intel(R) Trace Analyzer and Collector software before version 2022.1 may allow an auth

6.7
CVE-2024-28876

Uncontrolled search path for some Intel(R) MPI Library software before version 2021.12 may allow an authenticated user t

6.7
CVE-2024-28887

Uncontrolled search path in some Intel(R) IPP software before version 2021.11 may allow an authenticated user to potenti

6.7
CVE-2024-28953

Uncontrolled search path in some EMON software before version 11.44 may allow an authenticated user to potentially enabl

6.7
CVE-2024-29015

Uncontrolled search path in some Intel(R) VTune(TM) Profiler software before versions 2024.1 may allow an authenticated

6.7
CVE-2024-8441

An uncontrolled search path in the agent of Ivanti EPM before 2022 SU6, or the 2024 September update allows a local auth

6.7
CVE-2024-34153

Uncontrolled search path element in Intel(R) RAID Web Console software for all versions may allow an authenticated user

6.7
CVE-2024-8766

Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protec

6.7
CVE-2024-6769

A DLL Hijacking caused by drive remapping combined with a poisoning of the activation cache in Microsoft Windows 10, Win

6.7
CVE-2024-47194

A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). vish2.exe in

6.7
CVE-2024-47195

A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). gdb.exe in af

6.7
CVE-2024-47196

A vulnerability has been identified in ModelSim (All versions < V2025.2), Questa (All versions < V2025.2). vsimk.exe in

6.7
CVE-2024-23312

Uncontrolled search path for some Intel(R) Binary Configuration Tool software for Windows before version 3.4.5 may allow

6.7
CVE-2024-26017

Uncontrolled search path in some Intel(R) Rendering Toolkit software before version 2024.1.0 may allow an authenticated

6.7
CVE-2024-28881

Uncontrolled search path for some Intel(R) Fortran Compiler Classic software before version 2021.13 may allow an authent

6.7
CVE-2024-28950

Uncontrolled search path for some Intel(R) oneAPI Math Kernel Library software for Windows before version 2024.2 may all

6.7
CVE-2024-28952

Uncontrolled search path for some Intel(R) IPP software for Windows before version 2021.12.0 may allow an authenticated

6.7
CVE-2024-31407

Uncontrolled search path in some Intel(R) High Level Synthesis Compiler software for Intel(R) Quartus(R) Prime Pro Editi

6.7
CVE-2024-34028

Uncontrolled search path in some Intel(R) Graphics Offline Compiler for OpenCL(TM) Code software for Windows before vers

6.7
CVE-2024-34164

Uncontrolled search path element in some Intel(R) MAS software before version 2.5 may allow an authenticated user to pot

6.7
CVE-2024-34165

Uncontrolled search path in some Intel(R) oneAPI DPC++/C++ Compiler before version 2024.2 may allow an authenticated use

6.7
CVE-2024-34167

Uncontrolled search path for the Intel(R) Server Board S2600ST Family BIOS and Firmware Update software all versions may

6.7
CVE-2024-35245

Uncontrolled search path element in some Intel(R) PROSet/Wireless WiFi software for Windows before version 23.60 may all

6.7
CVE-2024-36245

Uncontrolled search path element in some Intel(R) VTune(TM) Profiler software before version 2024.2.0 may allow an authe

Frequently Asked Questions

What is CWE-427?

CWE-427 (CWE-427) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-427?

There are 1,525 CVE records associated with CWE-427 in our database. Of these, 26 are critical severity, 791 are high severity, and 347 are medium severity.

How can I protect against CWE-427 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-427 using AI-powered security agents.

Detect CWE-427 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-427 vulnerabilities across your infrastructure.

Get Started