CWE-426 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-426 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2012-1854Untrusted search path vulnerability in VBE6.dll in Microsoft Office 2003 SP3, 2007 SP2 and SP3, and …21.0%높음7.8● 실제 악용이 확인됨CVE-2022-22047Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability18.8%높음7.8● 실제 악용이 확인됨CVE-2022-23748mDNSResponder.exe is vulnerable to DLL Sideloading attack. Executable improperly specifies how to lo…9.1%높음7.8CVE-2026-68492An untrusted search path vulnerability in Plesk from 18.0.34 before 18.0.80.8 and 18.0.81 before 18.…0.4%높음8.7CVE-2026-69785Untrusted search path in Windows Smart Card allows an authorized attacker to elevate privileges loca…0.3%높음7.8CVE-2026-69328Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally…0.3%높음7.8CVE-2026-59265A code execution issue in the Java integration in Apache OpenOffice v4.1.16 and earlier allows a cra…0.2%미평가CVE-2026-92587n8n is a workflow automation platform. In versions before 1.123.76, 2.37.7, and 2.38.2, the Git node…0.2%보통5.3
전체 목록
17건
CVE-2026-19547Ghostscript for Windows is vulnerable to local privilege escalation through PostScript resource file hijacking…0.2%높음7.0
CVE-2026-84226OpenVPN version 2.5.0 through 2.6.22 and 2.7_alpha1 through 2.7.6 on Windows allows local authenticated users …0.1%높음8.5
CVE-2026-81192`OpenTelemetry.Resources.Host` NuGet package, which provides OpenTelemetry resource detectors for host, is aff…0.1%높음7.0
CVE-2026-100310GNU libextractor before 1.16 loads plugins from an untrusted search path specified by the LIBEXTRACTOR_PREFIX …0.1%높음7.3
CVE-2026-80159Acrobat Reader is affected by an Untrusted Search Path vulnerability that could result in privilege escalation…0.1%보통4.0
CVE-2026-87723In Google fuse-archive versions prior to 1.24, an attacker who can prepend a directory to PATH or write a mali…0.1%보통5.4
CVE-2026-0307Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allows a loca…0.1%보통5.9
CVE-2026-78574The Okta Hyperdrive Integration plugin resolves a required assembly using a registry path within the current u…0.1%높음7.5
CVE-2026-100584OpenClaw is an npm-distributed agent runtime. In versions >= 2026.2.26 and < 2026.7.1, PowerShell command anal…0.1%보통5.4
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.