VYPR

CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

BaseStableLikelihood: High

Description

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-126 · CAPEC-64 · CAPEC-76 · CAPEC-78 · CAPEC-79

CVEs mapped to this weakness (10,485)

page 333 of 525
  • CVE-2023-33777MedJul 25, 2023
    risk 0.35cvss 5.3epss 0.01

    An issue in /functions/fbaorder.php of Prestashop amazon before v5.2.24 allows attackers to execute a directory traversal attack.

  • CVE-2023-22887MedJul 12, 2023
    risk 0.35cvss 6.5epss 0.02

    Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows an attacker to perform unauthorized file access outside the intended directory structure by manipulating the run_id parameter. This vulnerability is considered low since it requires an…

  • CVE-2023-36822MedJul 5, 2023
    risk 0.35cvss 6.5epss 0.01

    Uptime Kuma, a self-hosted monitoring tool, has a path traversal vulnerability in versions prior to 1.22.1. Uptime Kuma allows authenticated users to install plugins from an official list of plugins. This feature is currently disabled in the web interface, but the corresponding…

  • CVE-2023-3331MedJun 28, 2023
    risk 0.35cvss 5.4epss 0.01

    Improper Limitation of a Pathname to a Restricted Directory vulnerability in NEC Corporation Aterm Aterm WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, WR8175N and WR8170N all…

  • CVE-2023-35840MedJun 19, 2023
    risk 0.35cvss 6.5epss 0.02

    _joinPath in elFinderVolumeLocalFileSystem.class.php in elFinder before 2.1.62 allows path traversal in the PHP LocalVolumeDriver connector.

  • CVE-2023-33524MedJun 5, 2023
    risk 0.35cvss 5.3epss 0.01

    Advent/SSC Inc. Tamale RMS < 23.1 is vulnerable to Directory Traversal. If one traverses to the affected URL, one enumerates Contact information on the host which contains usernames, e-mail addresses, and other internal information stored within the web app.

  • CVE-2022-36243MedMay 30, 2023
    risk 0.35cvss 5.3epss 0.01

    Shop Beat Solutions (pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Directory Traversal via server.shopbeat.co.za. Information Exposure Through Directory Listing vulnerability in "studio" software of Shop Beat. This issue affects: Shop Beat studio studio…

  • CVE-2023-29986MedMay 11, 2023
    risk 0.35cvss 5.3epss 0.01

    spring-boot-actuator-logview 0.2.13 allows Directory Traversal to sibling directories via LogViewEndpoint.view.

  • CVE-2023-27562MedMay 10, 2023
    risk 0.35cvss 6.5epss 0.02

    The n8n package 0.218.0 for Node.js allows Directory Traversal.

  • CVE-2023-30855MedMay 8, 2023
    risk 0.35cvss 6.5epss 0.01

    Pimcore is an open source data and experience management platform. Versions of Pimcore prior to 10.5.18 are vulnerable to path traversal. The impact of this path traversal and arbitrary extension is limited to creation of arbitrary files and appending data to existing files.…

  • CVE-2023-2336MedApr 27, 2023
    risk 0.35cvss 6.5epss 0.01

    Path Traversal in GitHub repository pimcore/pimcore prior to 10.5.21.

  • CVE-2023-26559MedApr 14, 2023
    risk 0.35cvss 5.3epss 0.01

    A directory traversal vulnerability in Oxygen XML Web Author before 25.0.0.3 build 2023021715 and Oxygen Content Fusion before 5.0.3 build 2023022015 allows an attacker to read files from a WEB-INF directory via a crafted HTTP request. (XML Web Author 24.1.0.3 build 2023021714…

  • CVE-2023-1956MedApr 8, 2023
    risk 0.35cvss 5.4epss 0.01

    A vulnerability classified as critical was found in SourceCodester Online Computer and Laptop Store 1.0. Affected by this vulnerability is an unknown functionality of the file /classes/Master.php?f=delete_img of the component Image Handler. The manipulation of the argument path…

  • CVE-2022-25937MedFeb 13, 2023
    risk 0.35cvss 6.5epss 0.01

    Versions of the package glance before 3.0.9 are vulnerable to Directory Traversal that allows users to read files outside the public root directory. This is related to but distinct from the vulnerability reported in [CVE-2018-3715](https://security.snyk.io/vuln/npm:glance:2018012…

  • CVE-2021-36425MedFeb 3, 2023
    risk 0.35cvss 5.4epss 0.01

    Directory traversal vulnerability in phpcms 1.9.25 allows remote attackers to delete arbitrary files via unfiltered $file parameter to unlink method in include/inc_act/act_ftptakeover.php file.

  • CVE-2022-2712MedJan 27, 2023
    risk 0.35cvss 6.5epss 0.01

    In Eclipse GlassFish versions 5.1.0 to 6.2.5, there is a vulnerability in relative path traversal because it does not filter request path starting with './'. Successful exploitation could allow an remote unauthenticated attacker to access critical data, such as configuration…

  • CVE-2022-4511MedDec 15, 2022
    risk 0.35cvss 5.3epss 0.01

    A vulnerability has been found in RainyGao DocSys and classified as critical. Affected by this vulnerability is an unknown functionality of the component com.DocSystem.controller.UserController#getUserImg. The manipulation leads to path traversal: '../filedir'. The attack can be…

  • CVE-2022-32938MedNov 1, 2022
    risk 0.35cvss 5.3epss 0.01

    A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13. A shortcut may be able to check the existence of an arbitrary path on the file system.

  • CVE-2022-26884MedOct 28, 2022
    risk 0.35cvss 6.5epss 0.02

    Users can read any files by log server, Apache DolphinScheduler users should upgrade to version 2.0.6 or higher.

  • CVE-2022-38423MedOct 14, 2022
    risk 0.35cvss 4.9epss 0.45

    Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in information disclosure. Exploitation of this issue does not require…