VYPR

CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

BaseStableLikelihood: High

Description

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-126 · CAPEC-64 · CAPEC-76 · CAPEC-78 · CAPEC-79

CVEs mapped to this weakness (10,483)

page 279 of 525
  • CVE-2019-13396MedJul 10, 2019
    risk 0.42cvss 5.3epss 0.63

    FlightPath 4.x and 5.0-x allows directory traversal and Local File Inclusion through the form_include parameter in an index.php?q=system-handle-form-submit POST request because of an include_once in system_handle_form_submit in modules/system/system.module.

  • CVE-2018-18863MedJun 19, 2019
    risk 0.42cvss 6.5epss 0.01

    NGA ResourceLink 20.0.2.1 allows local file inclusion.

  • CVE-2019-8952MedMay 13, 2019
    risk 0.42cvss 6.5epss 0.01

    A Path Traversal vulnerability located in the webserver affects several Bosch hardware and software products. The vulnerability potentially allows a remote authorized user to access arbitrary files on the system via the network interface. Affected hardware products: Bosch DIVAR…

  • CVE-2019-9005MedApr 18, 2019
    risk 0.42cvss 6.5epss 0.02

    The Cprime Power Scripts app before 4.0.14 for Atlassian Jira allows Directory Traversal.

  • CVE-2019-4178MedApr 15, 2019
    risk 0.42cvss 6.4epss 0.03

    IBM Cognos Analytics 11 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request to write or view arbitrary files on the system. IBM X-Force ID: 158919.

  • CVE-2019-10632MedApr 9, 2019
    risk 0.42cvss 6.5epss 0.01

    A directory traversal vulnerability in the file browser component on the Zyxel NAS 326 version 5.21 and below allows a lower privileged user to change the location of any other user's files.

  • CVE-2018-20647MedMar 21, 2019
    risk 0.42cvss 6.5epss 0.02

    PHP Scripts Mall Car Rental Script 2.0.8 has directory traversal via a direct request for a listing of an image directory such as an images/ directory.

  • CVE-2018-20646MedMar 21, 2019
    risk 0.42cvss 6.5epss 0.02

    PHP Scripts Mall Basic B2B Script 2.0.9 has has directory traversal via a direct request for a listing of an image directory such as an uploads/ directory.

  • CVE-2018-20643MedMar 21, 2019
    risk 0.42cvss 6.5epss 0.02

    PHP Scripts Mall Entrepreneur Job Portal Script 3.0.1 has directory traversal via a direct request for a listing of an image directory such as an assets/ directory.

  • CVE-2018-20638MedMar 21, 2019
    risk 0.42cvss 6.5epss 0.01

    PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 has directory traversal via a direct request for a listing of an image directory such as an assets/ directory.

  • CVE-2018-20626MedMar 21, 2019
    risk 0.42cvss 6.5epss 0.02

    PHP Scripts Mall Consumer Reviews Script 4.0.3 has directory traversal via a direct request for a listing of an uploads directory such as the wp-content/uploads/2018/12 directory.

  • CVE-2019-9611MedMar 6, 2019
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in OFCMS before 1.1.3. It allows admin/cms/template/getTemplates.html?res_path=res directory traversal, with ../ in the dir parameter, to write arbitrary content (in the file_content parameter) into an arbitrary file (specified by the file_name…

  • CVE-2019-8407MedFeb 17, 2019
    risk 0.42cvss 6.5epss 0.01

    HongCMS 3.0.0 allows arbitrary file read and write operations via a ../ in the filename parameter to the admin/index.php/language/edit URI.

  • CVE-2019-7387MedFeb 4, 2019
    risk 0.42cvss 6.5epss 0.01

    A local file inclusion vulnerability exists in the web interface of Systrome Cumilon ISG-600C, ISG-600H, and ISG-800W 1.1-R2.1_TRUNK-20180914.bin devices. When the export function is called from system/maintenance/export.php, it accepts the path provided by the user, leading to…

  • CVE-2019-1000009MedFeb 4, 2019
    risk 0.42cvss 6.5epss 0.01

    Helm ChartMuseum version >=0.1.0 and < 0.8.1 contains a CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in HTTP API to save charts that can result in a specially crafted chart could be uploaded and saved outside the intended…

  • CVE-2019-1000008MedFeb 4, 2019
    risk 0.42cvss 6.5epss 0.01

    All versions of Helm between Helm >=2.0.0 and < 2.12.2 contains a CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The commands `helm fetch --untar` and `helm lint some.tgz` that can result when chart archive files are…

  • CVE-2018-16485MedFeb 1, 2019
    risk 0.42cvss 6.5epss 0.01

    Path Traversal vulnerability in module m-server <1.4.1 allows malicious user to access unauthorized content of any file in the directory tree e.g. /etc/passwd by appending slashes to the URL request.

  • CVE-2018-1000850HigDec 20, 2018
    risk 0.42cvss 7.5epss 0.04

    Square Retrofit version versions from (including) 2.0 and 2.5.0 (excluding) contains a Directory Traversal vulnerability in RequestBuilder class, method addPathParameter that can result in By manipulating the URL an attacker could add or delete resources otherwise unavailable to…

  • CVE-2018-20303HigDec 20, 2018
    risk 0.42cvss 7.5epss 0.03

    In pkg/tool/path.go in Gogs before 0.11.82.1218, a directory traversal in the file-upload functionality can allow an attacker to create a file under data/sessions on the server, a similar issue to CVE-2018-18925.

  • CVE-2018-20227HigDec 19, 2018
    risk 0.42cvss 7.5epss 0.02

    RDF4J 2.4.2 allows Directory Traversal via ../ in an entry in a ZIP archive.