Show filters
383 Total Results
Displaying 121-130 of 383
Sort by:
Attacker Value
Unknown
CVE-2022-24765
Disclosure Date: April 12, 2022 (last updated February 23, 2025)
Git for Windows is a fork of Git containing Windows-specific patches. This vulnerability affects users working on multi-user machines, where untrusted parties have write access to the same hard disk. Those untrusted parties could create the folder `C:\.git`, which would be picked up by Git operations run supposedly outside a repository while searching for a Git directory. Git would then respect any config in said Git directory. Git Bash users who set `GIT_PS1_SHOWDIRTYSTATE` are vulnerable as well. Users who installed posh-gitare vulnerable simply by starting a PowerShell. Users of IDEs such as Visual Studio are vulnerable: simply creating a new project would already read and respect the config specified in `C:\.git\config`. Users of the Microsoft fork of Git are vulnerable simply by starting a Git Bash. The problem has been patched in Git for Windows v2.35.2. Users unable to upgrade may create the folder `.git` on all drives where Git commands are run, and remove read/write access fr…
0
Attacker Value
Unknown
CVE-2022-23449
Disclosure Date: April 12, 2022 (last updated February 23, 2025)
A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.3 Update 1), SIMATIC Energy Manager PRO (All versions < V7.3 Update 1). A DLL Hijacking vulnerability could allow a local attacker to execute code with elevated privileges by placing a malicious DLL in one of the directories on the DLL search path.
0
Attacker Value
Unknown
CVE-2022-28779
Disclosure Date: April 11, 2022 (last updated February 23, 2025)
Uncontrolled search path element vulnerability in Samsung Android USB Driver windows installer program prior to version 1.7.50 allows attacker to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2022-28541
Disclosure Date: April 11, 2022 (last updated February 23, 2025)
Uncontrolled search path element vulnerability in Samsung Update prior to version 3.0.77.0 allows attackers to execute arbitrary code as Samsung Update permission.
0
Attacker Value
Unknown
CVE-2022-27843
Disclosure Date: April 11, 2022 (last updated February 23, 2025)
DLL hijacking vulnerability in Kies prior to version 2.6.4.22014_2 allows attacker to execute abitrary code.
0
Attacker Value
Unknown
CVE-2022-27842
Disclosure Date: April 11, 2022 (last updated February 23, 2025)
DLL hijacking vulnerability in Smart Switch PC prior to version 4.2.22022_4 allows attacker to execute abitrary code.
0
Attacker Value
Unknown
CVE-2022-25154
Disclosure Date: April 05, 2022 (last updated February 23, 2025)
A DLL hijacking vulnerability in Samsung portable SSD T5 PC software before 1.6.9 could allow a local attacker to escalate privileges. (An attacker must already have user privileges on Windows 7, 10, or 11 to exploit this vulnerability.)
0
Attacker Value
Unknown
CVE-2022-28128
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
Untrusted search path vulnerability in AttacheCase ver.3.6.1.0 and earlier allows an attacker to gain privileges and execute arbitrary code via a Trojan horse DLL in an unspecified directory.
0
Attacker Value
Unknown
CVE-2022-25348
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
Untrusted search path vulnerability in AttacheCase ver.4.0.2.7 and earlier allows an attacker to gain privileges and execute arbitrary code via a Trojan horse DLL in an unspecified directory.
0
Attacker Value
Unknown
CVE-2022-22996
Disclosure Date: March 30, 2022 (last updated February 23, 2025)
The G-RAID 4/8 Software Utility setups for Windows were affected by a DLL hijacking vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the system user.
0