VYPR

CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

BaseStableLikelihood: High

Description

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-126 · CAPEC-64 · CAPEC-76 · CAPEC-78 · CAPEC-79

CVEs mapped to this weakness (10,395)

page 155 of 520
  • CVE-2023-42487HigSep 27, 2023
    risk 0.49cvss 7.5epss 0.01

    Soundminer – CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

  • CVE-2023-41302HigSep 25, 2023
    risk 0.49cvss 7.5epss 0.00

    Redirection permission verification vulnerability in the home screen module. Successful exploitation of this vulnerability may cause features to perform abnormally.

  • CVE-2023-42280HigSep 21, 2023
    risk 0.49cvss 7.5epss 0.01

    mee-admin 1.5 is vulnerable to Directory Traversal. The download method in the CommonFileController.java file does not verify the incoming data, resulting in arbitrary file reading.

  • CVE-2023-4152HigSep 21, 2023
    risk 0.49cvss 7.5epss 0.01

    Frauscher Sensortechnik GmbH FDS101 for FAdC/FAdCi v1.4.24 and all previous versions are vulnerable to a path traversal vulnerability of the web interface by a crafted URL without authentication. This enables an remote attacker to read all files on the filesystem of the FDS101…

  • CVE-2023-32558HigSep 12, 2023
    risk 0.49cvss 7.5epss 0.02

    The use of the deprecated API `process.binding()` can bypass the permission model through path traversal. This vulnerability affects all users using the experimental permission model in Node.js 20.x. Please note that at the time this CVE was issued, the permission model is an…

  • CVE-2023-41578HigSep 8, 2023
    risk 0.49cvss 7.5epss 0.01

    Jeecg boot up to v3.5.3 was discovered to contain an arbitrary file read vulnerability via the interface /testConnection.

  • CVE-2023-40924HigSep 8, 2023
    risk 0.49cvss 7.5epss 0.03

    SolarView Compact < 6.00 is vulnerable to Directory Traversal.

  • CVE-2023-4616HigSep 4, 2023
    risk 0.49cvss 7.5epss 0.02

    This vulnerability allows remote attackers to disclose sensitive information on affected installations of LG LED Assistant. Authentication is not required to exploit this vulnerability. The specific flaw exists within the /api/thumbnail endpoint. The issue results from the lack…

  • CVE-2023-4615HigSep 4, 2023
    risk 0.49cvss 7.5epss 0.02

    This vulnerability allows remote attackers to disclose sensitive information on affected installations of LG LED Assistant. Authentication is not required to exploit this vulnerability. The specific flaw exists within the /api/download/updateFile endpoint. The issue results from…

  • CVE-2023-20890HigAug 29, 2023
    risk 0.49cvss 7.2epss 0.20

    Aria Operations for Networks contains an arbitrary file write vulnerability. An authenticated malicious actor with administrative access to VMware Aria Operations for Networks can write files to arbitrary locations resulting in remote code execution.

  • CVE-2023-40826HigAug 28, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue in pf4j pf4j v.3.9.0 and before allows a remote attacker to obtain sensitive information and execute arbitrary code via the zippluginPath parameter.

  • CVE-2023-32756HigAug 25, 2023
    risk 0.49cvss 7.5epss 0.01

    e-Excellence U-Office Force has a path traversal vulnerability within its file uploading and downloading functions. An unauthenticated remote attacker can exploit this vulnerability to read arbitrary system files, but can’t control system or disrupt service.

  • CVE-2023-39141HigAug 22, 2023
    risk 0.49cvss 7.5epss 0.03

    webui-aria2 commit 4fe2e was discovered to contain a path traversal vulnerability.

  • CVE-2021-26504HigAug 11, 2023
    risk 0.49cvss 7.5epss 0.01

    Directory Traversal vulnerability in Foddy node-red-contrib-huemagic version 3.0.0, allows remote attackers to gain sensitive information via crafted request in res.sendFile API in hue-magic.js.

  • CVE-2023-39964HigAug 10, 2023
    risk 0.49cvss 7.5epss 0.01

    1Panel is an open source Linux server operation and maintenance management panel. In version 1.4.3, arbitrary file reads allow an attacker to read arbitrary important configuration files on the server. In the `api/v1/file.go` file, there is a function called `LoadFromFile`,…

  • CVE-2023-33756HigAug 8, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue in the SpreadSheetPlugin component of Foswiki v2.1.7 and below allows attackers to execute a directory traversal.

  • CVE-2023-24698HigAug 8, 2023
    risk 0.49cvss 7.5epss 0.01

    Insufficient parameter validation in the Foswiki::Sandbox component of Foswiki v2.1.7 and below allows attackers to perform a directory traversal via supplying a crafted web request.

  • CVE-2023-0956HigAug 3, 2023
    risk 0.49cvss 7.5epss 0.01

    External input could be used on TEL-STER TelWin SCADA WebInterface to construct paths to files and directories without properly neutralizing special elements within the pathname, which could allow an unauthenticated attacker to read files on the system.

  • CVE-2023-33365HigAug 3, 2023
    risk 0.49cvss 7.5epss 0.01

    A path traversal vulnerability exists in Suprema BioStar 2 before 2.9.1, which allows unauthenticated attackers to fetch arbitrary files from the server's web server.

  • CVE-2023-38956HigAug 3, 2023
    risk 0.49cvss 7.5epss 0.01

    A path traversal vulnerability in ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to read arbitrary files via supplying a crafted payload.