VYPR

CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

BaseStableLikelihood: High

Description

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-126 · CAPEC-64 · CAPEC-76 · CAPEC-78 · CAPEC-79

CVEs mapped to this weakness (10,395)

page 176 of 520
  • CVE-2019-5910HigFeb 13, 2019
    risk 0.49cvss 7.5epss 0.02

    Directory traversal vulnerability in HOUSE GATE App for iOS 1.7.8 and earlier allows remote attackers to read arbitrary files via unspecified vectors.

  • CVE-2018-20769HigFeb 10, 2019
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices before R18-05 073.xxx.0487.15000. There is a Local File Inclusion vulnerability.

  • CVE-2018-16493HigFeb 1, 2019
    risk 0.49cvss 7.5epss 0.02

    A path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the server by appending slashes in the URL.

  • CVE-2018-16482HigFeb 1, 2019
    risk 0.49cvss 7.5epss 0.02

    A server directory traversal vulnerability was found on node module mcstatic <=0.0.20 that would allow an attack to access sensitive information in the file system by appending slashes in the URL path.

  • CVE-2018-16479HigFeb 1, 2019
    risk 0.49cvss 7.5epss 0.02

    Path traversal vulnerability in http-live-simulator <1.0.7 causes unauthorized access to arbitrary files on disk by appending extra slashes after the URL.

  • CVE-2018-0722HigFeb 1, 2019
    risk 0.49cvss 7.5epss 0.02

    Path Traversal vulnerability in Photo Station versions: 5.7.2 and earlier in QTS 4.3.4, 5.4.4 and earlier in QTS 4.3.3, 5.2.8 and earlier in QTS 4.2.6 could allow remote attackers to access sensitive information on the device.

  • CVE-2019-7237HigJan 30, 2019
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in idreamsoft iCMS 7.0.13 on Windows. editor/editor.admincp.php allows admincp.php?app=files&do=browse ..\ Directory Traversal.

  • CVE-2019-7236HigJan 30, 2019
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in idreamsoft iCMS 7.0.13. editor/editor.admincp.php allows admincp.php?app=editor&do=fileManager dir=../ Directory Traversal.

  • CVE-2019-7235HigJan 30, 2019
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in idreamsoft iCMS 7.0.13. admincp.php?app=apps&do=save allows directory traversal via _app=/../ to designate an arbitrary directory because of an apps.admincp.php error. This directory can then be deleted via an admincp.php?app=apps&do=uninstall request.

  • CVE-2019-6500HigJan 21, 2019
    risk 0.49cvss 7.5epss 0.04

    In Axway File Transfer Direct 2.7.1, an unauthenticated Directory Traversal vulnerability can be exploited by issuing a specially crafted HTTP GET request with %2e instead of '.' characters, as demonstrated by an initial /h2hdocumentation//%2e%2e/ substring.

  • CVE-2019-5887HigJan 10, 2019
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in ShopXO 1.2.0. In the UnlinkDir method of the FileUtil.php file, the input parameters are not checked, resulting in input mishandling by the rmdir method. Attackers can delete arbitrary files by using "../" directory traversal.

  • CVE-2018-0704HigJan 9, 2019
    risk 0.49cvss 7.5epss 0.02

    Directory traversal vulnerability in Cybozu Office 10.0.0 to 10.8.1 allows remote attackers to delete arbitrary files via Keitai Screen.

  • CVE-2018-0703HigJan 9, 2019
    risk 0.49cvss 7.5epss 0.02

    Directory traversal vulnerability in Cybozu Office 10.0.0 to 10.8.1 allows remote attackers to delete arbitrary files via HTTP requests.

  • CVE-2018-0702HigJan 9, 2019
    risk 0.49cvss 7.5epss 0.02

    Directory traversal vulnerability in Cybozu Mailwise 5.0.0 to 5.4.5 allows remote attackers to delete arbitrary files via unspecified vectors.

  • CVE-2019-3580HigJan 3, 2019
    risk 0.49cvss 7.5epss 0.02

    OpenRefine through 3.1 allows arbitrary file write because Directory Traversal can occur during the import of a crafted project file.

  • CVE-2018-20437HigDec 25, 2018
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in the fileDownload function in the CommonController class in FEBS-Shiro before 2018-11-05. An attacker can download a file via a request of the form /common/download?filename=1.jsp&delete=false. NOTE: the software maintainer disputes the significance of…

  • CVE-2018-7835HigDec 24, 2018
    risk 0.49cvss 7.5epss 0.02

    An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in IIoT Monitor 3.1.38 which could allow access to files available to SYSTEM user.

  • CVE-2018-1000817HigDec 20, 2018
    risk 0.49cvss 7.5epss 0.03

    Asset Pipeline Grails Plugin Asset-pipeline plugin version Prior to 2.14.1.1, 2.15.1 and 3.0.6 contains a Incorrect Access Control vulnerability in Applications deployed in Jetty that can result in Download .class files and any arbitrary file. This attack appear to be…

  • CVE-2018-20092HigDec 17, 2018
    risk 0.49cvss 7.5epss 0.02

    PTC ThingWorx Platform through 8.3.0 is vulnerable to a directory traversal attack on ZIP files via a POST request.

  • CVE-2018-19003HigDec 14, 2018
    risk 0.49cvss 7.5epss 0.03

    GE Mark VIe, EX2100e, EX2100e_Reg, and LS2100e Versions 03.03.28C to 05.02.04C, EX2100e All versions prior to v04.09.00C, EX2100e_Reg All versions prior to v04.09.00C, and LS2100e All versions prior to v04.09.00C The affected versions of the application have a path traversal…