VYPR

CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

BaseStableLikelihood: High

Description

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-126 · CAPEC-64 · CAPEC-76 · CAPEC-78 · CAPEC-79

CVEs mapped to this weakness (10,395)

page 162 of 520
  • CVE-2022-35216HigAug 4, 2022
    risk 0.49cvss 7.5epss 0.01

    OMICARD EDM’s mail image relay function has a path traversal vulnerability. An unauthenticated remote attacker can exploit this vulnerability to by-pass authentication and access arbitrary system files.

  • CVE-2022-32963HigAug 4, 2022
    risk 0.49cvss 7.5epss 0.01

    OMICARD EDM’s mail file relay function has a path traversal vulnerability. An unauthenticated remote attacker can exploit this vulnerability to by-pass authentication and access arbitrary system files.

  • CVE-2021-22650HigJul 28, 2022
    risk 0.49cvss 7.5epss 0.01

    An attacker may use TWinSoft and a malicious source project file (TPG) to extract files on machine executing Ovarro TWinSoft, which could lead to code execution.

  • CVE-2022-24992HigJul 25, 2022
    risk 0.49cvss 7.5epss 0.01

    A vulnerability in the component process.php of QR Code Generator v5.2.7 allows attackers to perform directory traversal.

  • CVE-2022-29834HigJul 20, 2022
    risk 0.49cvss 7.5epss 0.02

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Mitsubishi Electric GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electric Iconics Digital Solutions GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electric ICONICS Suite versions…

  • CVE-2022-24659HigJul 20, 2022
    risk 0.49cvss 7.5epss 0.02

    Goldshell ASIC Miners v2.2.1 and below was discovered to contain a path traversal vulnerability which allows unauthenticated attackers to retrieve arbitrary files from the device.

  • CVE-2022-31578HigJul 11, 2022
    risk 0.49cvss 7.5epss 0.01

    The piaoyunsoft/bt_lnmp repository through 2019-10-10 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.

  • CVE-2022-32551HigJul 2, 2022
    risk 0.49cvss 7.5epss 0.04

    Zoho ManageEngine ServiceDesk Plus MSP before 10604 allows path traversal (to WEBINF/web.xml from sample/WEB-INF/web.xml or sample/META-INF/web.xml).

  • CVE-2022-2120HigJun 24, 2022
    risk 0.49cvss 7.5epss 0.03

    OFFIS DCMTK's (All versions prior to 3.6.7) service class user (SCU) is vulnerable to relative path traversal, allowing an attacker to write DICOM files into arbitrary directories under controlled names. This could allow remote code execution.

  • CVE-2022-2119HigJun 24, 2022
    risk 0.49cvss 7.5epss 0.03

    OFFIS DCMTK's (All versions prior to 3.6.7) service class provider (SCP) is vulnerable to path traversal, allowing an attacker to write DICOM files into arbitrary directories under controlled names. This could allow remote code execution.

  • CVE-2022-33995HigJun 21, 2022
    risk 0.49cvss 7.5epss 0.02

    A path traversal issue in entry attachments in Devolutions Remote Desktop Manager before 2022.2 allows attackers to create or overwrite files in an arbitrary location.

  • CVE-2022-29509HigJun 14, 2022
    risk 0.49cvss 7.5epss 0.03

    Directory traversal vulnerability in T&D Data Server (Japanese Edition) Ver.2.22 and earlier, T&D Data Server (English Edition) Ver.2.30 and earlier, THERMO RECORDER DATA SERVER (Japanese Edition) Ver.2.13 and earlier, and THERMO RECORDER DATA SERVER (English Edition) Ver.2.13…

  • CVE-2022-1993HigJun 9, 2022
    risk 0.49cvss 8.1epss 0.36

    Path Traversal in GitHub repository gogs/gogs prior to 0.12.9.

  • CVE-2022-32275HigJun 6, 2022
    risk 0.49cvss 7.5epss 0.10

    Grafana 8.4.3 allows reading files via (for example) a /dashboard/snapshot/%7B%7Bconstructor.constructor'/.. /.. /.. /.. /.. /.. /.. /.. /etc/passwd URI. NOTE: the vendor's position is that there is no vulnerability; this request yields a benign error page, not /etc/passwd…

  • CVE-2022-30321HigMay 25, 2022
    risk 0.49cvss 8.6epss 0.03

    go-getter up to 1.5.11 and 2.0.2 allowed arbitrary host access via go-getter path traversal, symlink processing, and command injection flaws. Fixed in 1.6.1 and 2.1.0.

  • CVE-2021-33005HigMay 13, 2022
    risk 0.49cvss 7.5epss 0.02

    mySCADA myPRO versions prior to 8.20.0 allows an unauthenticated remote attacker to upload arbitrary files to arbitrary directories.

  • CVE-2021-42183HigMay 5, 2022
    risk 0.49cvss 7.5epss 0.05

    MasaCMS 7.2.1 is affected by a path traversal vulnerability in /index.cfm/_api/asset/image/.

  • CVE-2021-46421HigApr 27, 2022
    risk 0.49cvss 7.5epss 0.06

    Franklin Fueling Systems FFS T5 Series 1.8.7.7299 is affected by an unauthenticated directory traversal vulnerability, which allows an attacker to obtain sensitive information.

  • CVE-2021-46420HigApr 27, 2022
    risk 0.49cvss 7.5epss 0.06

    Franklin Fueling Systems FFS TS-550 evo 2.23.4.8936 is affected by an unauthenticated directory traversal vulnerability, which allows an attacker to obtain sensitive information.

  • CVE-2022-24424HigApr 21, 2022
    risk 0.49cvss 7.5epss 0.02

    Dell EMC AppSync versions from 3.9 to 4.3 contain a path traversal vulnerability in AppSync server. A remote unauthenticated attacker may potentially exploit this vulnerability to gain unauthorized read access to the files stored on the server filesystem, with the privileges of…