VYPR

CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

BaseStableLikelihood: High

Description

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-126 · CAPEC-64 · CAPEC-76 · CAPEC-78 · CAPEC-79

CVEs mapped to this weakness (10,395)

page 149 of 520
  • CVE-2024-37728HigSep 10, 2024
    risk 0.49cvss 7.5epss 0.02

    Arbitrary File Read vulnerability in Xi'an Daxi Information Technology Co., Ltd OfficeWeb365 v.7.18.23.0 and v8.6.1.0 allows a remote attacker to obtain sensitive information via the "Pic/Indexes" interface

  • CVE-2024-44720HigSep 9, 2024
    risk 0.49cvss 7.5epss 0.01

    SeaCMS v13.1 was discovered to an arbitrary file read vulnerability via the component admin_safe.php.

  • CVE-2024-6445HigSep 6, 2024
    risk 0.49cvss 7.5epss 0.01

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in DataFlowX Technology DataDiodeX allows Path Traversal. This issue affects DataDiodeX: from v3.0.0 before v3.1.7.

  • CVE-2024-45401HigSep 5, 2024
    risk 0.49cvss 7.5epss 0.00

    stripe-cli is a command-line tool for the payment processor Stripe. A vulnerability exists in stripe-cli starting in version 1.11.1 and prior to version 1.21.3 where a plugin package containing a manifest with a malformed plugin shortname installed using the --archive-url or…

  • CVE-2023-7260HigAug 22, 2024
    risk 0.49cvss 7.5epss 0.01

    Path Traversal vulnerability discovered in OpenText™ CX-E Voice, affecting all version through 22.4. The vulnerability could allow arbitrarily access files on the system.

  • CVE-2024-43022HigAug 21, 2024
    risk 0.49cvss 7.5epss 0.01

    An issue in the downloader.php component of TOSEI online store management system v4.02, v4.03, and v4.04 allows attackers to execute a directory traversal.

  • CVE-2024-43345HigAug 19, 2024
    risk 0.49cvss 7.5epss 0.01

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in PluginOps Landing Page Builder allows PHP Local File Inclusion.This issue affects Landing Page Builder: from n/a through 1.5.2.0.

  • CVE-2024-27120HigAug 14, 2024
    risk 0.49cvss 7.5epss 0.01

    A Local File Inclusion vulnerability has been found in ComfortKey, a product of Celsius Benelux. Using this vulnerability, an unauthenticated attacker may retrieve sensitive information about the underlying system. The vulnerability has been remediated in version 24.1.2.

  • CVE-2024-43140HigAug 13, 2024
    risk 0.49cvss 7.5epss 0.01

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in G5Theme Ultimate Bootstrap Elements for Elementor allows PHP Local File Inclusion.This issue affects Ultimate Bootstrap Elements for Elementor: from n/a through 1.4.4.

  • CVE-2024-43135HigAug 13, 2024
    risk 0.49cvss 7.5epss 0.01

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themewinter WPCafe allows PHP Local File Inclusion.This issue affects WPCafe: from n/a through 2.2.28.

  • CVE-2024-33535HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0. The vulnerability involves unauthenticated local file inclusion (LFI) in a web application, specifically impacting the handling of the packages parameter. Attackers can exploit this flaw to include arbitrary…

  • CVE-2024-7693HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.01

    Raiden MAILD Remote Management System from Team Johnlong Software has a Relative Path Traversal vulnerability, allowing unauthenticated remote attackers to read arbitrary file on the remote server.

  • CVE-2024-41936HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.02

    A directory traversal vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to read arbitrary files and bypass authentication.

  • CVE-2024-0113HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.01

    NVIDIA Mellanox OS, ONYX, Skyway, and MetroX-3 XCC contain a vulnerability in the web support, where an attacker can cause a CGI path traversal by a specially crafted URI. A successful exploit of this vulnerability might lead to escalation of privileges and information…

  • CVE-2024-41310HigAug 2, 2024
    risk 0.49cvss 7.5epss 0.01

    AndServer 2.1.12 is vulnerable to Directory Traversal.

  • CVE-2024-41695HigJul 30, 2024
    risk 0.49cvss 7.5epss 0.01

    Cybonet - CWE-22: Improper Limitation of a Pathname to a Restricted Directory

  • CVE-2024-41726HigJul 29, 2024
    risk 0.49cvss 7.5epss 0.01

    Path traversal vulnerability exists in SKYSEA Client View Ver.3.013.00 to Ver.19.210.04e. If this vulnerability is exploited, an arbitrary executable file may be executed by a user who can log in to the PC where the product's Windows client is installed.

  • CVE-2024-5882HigJul 29, 2024
    risk 0.49cvss 7.5epss 0.01

    The Ultimate Classified Listings WordPress plugin before 1.3 does not validate the `ucl_page` and `layout` parameters allowing unauthenticated users to access PHP files on the server from the listings page

  • CVE-2024-41628HigJul 26, 2024
    risk 0.49cvss 7.5epss 0.07

    Directory Traversal vulnerability in Severalnines Cluster Control 1.9.8 before 1.9.8-9778, 2.0.0 before 2.0.0-9779, and 2.1.0 before 2.1.0-9780 allows a remote attacker to include and display file content in an HTTP request via the CMON API.

  • CVE-2024-40051HigJul 22, 2024
    risk 0.49cvss 7.5epss 0.01

    IP Guard v4.81.0307.0 was discovered to contain an arbitrary file read vulnerability via the file name parameter.