VYPR

CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

BaseStableLikelihood: High

Description

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-126 · CAPEC-64 · CAPEC-76 · CAPEC-78 · CAPEC-79

CVEs mapped to this weakness (10,395)

page 174 of 520
  • CVE-2019-1010205HigJul 23, 2019
    risk 0.49cvss 7.5epss 0.03

    LINAGORA hublin latest (commit 72ead897082403126bf8df9264e70f0a9de247ff) is affected by: Directory Traversal. The impact is: The vulnerability allows an attacker to access any file (with a fixed extension) on the server. The component is: A web-view renderer; details here:…

  • CVE-2019-14206HigJul 21, 2019
    risk 0.49cvss 7.5epss 0.05

    An Arbitrary File Deletion vulnerability in the Nevma Adaptive Images plugin before 0.6.67 for WordPress allows remote attackers to delete arbitrary files via the $REQUEST['adaptive-images-settings'] parameter in adaptive-images-script.php.

  • CVE-2019-4430HigJul 17, 2019
    risk 0.49cvss 7.5epss 0.03

    IBM Maximo Asset Management 7.6 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 162887.

  • CVE-2019-9886HigJul 11, 2019
    risk 0.49cvss 7.5epss 0.02

    Any URLs with download_attachment.php under templates or home folders can allow arbitrary files downloaded without login in BroadLearning eClass before version ip.2.5.10.2.1.

  • CVE-2019-4252HigJun 27, 2019
    risk 0.49cvss 7.5epss 0.03

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM…

  • CVE-2019-3737HigJun 19, 2019
    risk 0.49cvss 7.5epss 0.02

    Dell EMC Avamar ADMe Web Interface 1.0.50 and 1.0.51 are affected by an LFI vulnerability which may allow a malicious user to download arbitrary files from the affected system by sending a specially crafted request to the Web Interface application.

  • CVE-2019-10257HigJun 19, 2019
    risk 0.49cvss 7.5epss 0.02

    Zucchetti HR Portal through 2019-03-15 allows Directory Traversal. Unauthenticated users can escape outside of the restricted location (dot-dot-slash notation) to access files or directories that are elsewhere on the system. Through this vulnerability it is possible to read the…

  • CVE-2019-12145HigJun 11, 2019
    risk 0.49cvss 7.5epss 0.05

    A Directory Traversal issue was discovered in SSHServerAPI.dll in Progress ipswitch WS_FTP Server 2018 before 8.6.1. An attacker can supply a string using special patterns via the SCP protocol to disclose path names on the host operating system.

  • CVE-2018-12298HigMay 13, 2019
    risk 0.49cvss 7.5epss 0.02

    Directory Traversal in filebrowser in Seagate NAS OS 4.3.15.1 allows attackers to read files within the application's container via a URL path.

  • CVE-2019-11082HigMay 10, 2019
    risk 0.49cvss 7.5epss 0.02

    core/api/datasets/internal/actions/Explode.java in the Dataset API in DKPro Core through 1.10.0 allows Directory Traversal, resulting in the overwrite of local files with the contents of an archive.

  • CVE-2018-16961HigMay 2, 2019
    risk 0.49cvss 7.5epss 0.03

    An issue was discovered in Open XDMoD through 7.5.0. html/gui/general/dl_publication.php allows Path traversal via the file parameter, allowing remote attackers to read PDF files in arbitrary directories.

  • CVE-2019-11612HigApr 30, 2019
    risk 0.49cvss 7.5epss 0.03

    doorGets 7.0 has an arbitrary file deletion vulnerability in /fileman/php/deletefile.php. A remote unauthenticated attacker can exploit this vulnerability to delete arbitrary files.

  • CVE-2019-11611HigApr 30, 2019
    risk 0.49cvss 7.5epss 0.04

    doorGets 7.0 has a sensitive information disclosure vulnerability in /fileman/php/download.php. A remote unauthenticated attacker can exploit this vulnerability to obtain server-sensitive information.

  • CVE-2019-11610HigApr 30, 2019
    risk 0.49cvss 7.5epss 0.04

    doorGets 7.0 has a sensitive information disclosure vulnerability in /fileman/php/downloaddir.php. A remote unauthenticated attacker can exploit this vulnerability to obtain server-sensitive information.

  • CVE-2019-11607HigApr 30, 2019
    risk 0.49cvss 7.5epss 0.04

    doorGets 7.0 has a sensitive information disclosure vulnerability in /fileman/php/copydir.php. A remote unauthenticated attacker can exploit this vulnerability to obtain server-sensitive information.

  • CVE-2019-11606HigApr 30, 2019
    risk 0.49cvss 7.5epss 0.04

    doorGets 7.0 has a sensitive information disclosure vulnerability in /fileman/php/copyfile.php. A remote unauthenticated attacker can exploit this vulnerability to obtain server-sensitive information.

  • CVE-2014-5436HigApr 8, 2019
    risk 0.49cvss 7.5epss 0.03

    A directory traversal vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.2, which could lead to possible information disclosure. Honeywell strongly encourages and recommends all customers running…

  • CVE-2019-9489HigApr 5, 2019
    risk 0.49cvss 7.5epss 0.02

    A directory traversal vulnerability in Trend Micro Apex One, OfficeScan (versions XG and 11.0), and Worry-Free Business Security (versions 10.0, 9.5 and 9.0) could allow an attacker to modify arbitrary files on the affected product's management console.

  • CVE-2018-20229HigApr 4, 2019
    risk 0.49cvss 7.5epss 0.02

    GitLab Community and Enterprise Edition before 11.3.14, 11.4.x before 11.4.12, and 11.5.x before 11.5.5 allows Directory Traversal.

  • CVE-2019-5423HigApr 3, 2019
    risk 0.49cvss 7.5epss 0.03

    Path traversal vulnerability in http-live-simulator npm package version 1.0.5 allows arbitrary path to be accessed on the file system by a remote attacker.