VYPR

CWE-23

Relative Path Traversal

BaseDraft

Description

The product uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize sequences such as ".." that can resolve to a location that is outside of that directory.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-139 · CAPEC-76

CVEs mapped to this weakness (525)

page 18 of 27
  • CVE-2026-48681MedJun 4, 2026
    risk 0.38cvss 5.9epss 0.01

    OpenStack Ironic through before 35.0.2 allows file overwrite via directory traversal during deployment with a crafted ISO image.

  • CVE-2025-59336MedSep 16, 2025
    risk 0.38cvss —epss 0.00

    Luanox is a module host for Lua packages. Prior to 0.1.1, a file traversal vulnerability can cause potential denial of service by overwriting Phoenix runtime files. Package names like ../../package are not properly filtered and pass the validity check of the rockspec…

  • CVE-2025-49466MedJun 5, 2025
    risk 0.38cvss 5.8epss 0.01

    aerc before 93bec0d allows directory traversal in commands/msgview/open.go because of direct path concatenation of the name of an attachment part,

  • CVE-2022-34836MedAug 24, 2022
    risk 0.38cvss 5.9epss 0.01

    Relative Path Traversal vulnerability in ABB Zenon 8.20 allows the user to access files on the Zenon system and user also can add own log messages and e.g., flood the log entries. An attacker who successfully exploit the vulnerability could access the Zenon runtime activities…

  • CVE-2018-18990MedFeb 5, 2019
    risk 0.38cvss 5.3epss 0.39

    LCDS Laquis SCADA prior to version 4.1.0.4150 allows a user-supplied path in file operations prior to proper validation. An attacker can leverage this vulnerability to disclose sensitive information under the context of the web server process.

  • CVE-2026-77113MedAug 20, 2026
    risk 0.37cvss —epss 0.00

    Path traversal in apport-unpack in Canonical Apport before 2.36.0, 2.34.2, and 2.28.4 on Linux allows an attacker to create or overwrite arbitrary files with the privileges of the executing user via an attacker controlled key names in crash report files.

  • CVE-2026-62843MedJul 15, 2026
    risk 0.37cvss 6.8epss 0.00

    File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. From 2.63.6 to 2.63.16, File Browser's archive builder uses strings.ReplaceAll(nameInArchive, "\", "/"), which turns a POSIX filename such as…

  • CVE-2025-24819MedApr 7, 2026
    risk 0.37cvss 5.7epss 0.00

    Nokia MantaRay NM is vulnerable to a Relative Path Traversal vulnerability due to improper validation of input parameter on the file system in Software Manager application.

  • CVE-2025-59456MedSep 17, 2025
    risk 0.37cvss 5.5epss 0.13

    In JetBrains TeamCity before 2025.07.2 path traversal was possible during project archive upload

  • CVE-2024-25944MedMar 29, 2024
    risk 0.37cvss 5.7epss 0.01

    Dell OpenManage Enterprise, v4.0 and prior, contain(s) a path traversal vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, to gain unauthorized access to the files stored on the server filesystem, with the privileges of the running…

  • CVE-2024-24942MedFeb 6, 2024
    risk 0.37cvss 5.3epss 0.32

    In JetBrains TeamCity before 2023.11.3 path traversal allowed reading data within JAR archives

  • CVE-2023-23784MedFeb 16, 2023
    risk 0.37cvss 5.7epss 0.01

    A relative path traversal in Fortinet FortiWeb version 7.0.0 through 7.0.2, FortiWeb version 6.3.6 through 6.3.20, FortiWeb 6.4 all versions allows attacker to information disclosure via specially crafted web requests.

  • CVE-2022-1648MedJul 26, 2022
    risk 0.37cvss 5.7epss 0.01

    Pandora FMS v7.0NG.760 and below allows a relative path traversal in File Manager where a privileged user could upload a .php file outside the intended images directory which is restricted to execute the .php file. The impact could lead to a Remote Code Execution with running…

  • CVE-2026-21082MedAug 10, 2026
    risk 0.36cvss 5.5epss 0.00

    Relative path traversal in Samsung Health prior to version 7.0.0 allows local attackers to access sensitive information.

  • CVE-2026-41612MedMay 12, 2026
    risk 0.36cvss 5.5epss 0.01

    Relative path traversal in Visual Studio Code allows an unauthorized attacker to disclose information locally.

  • CVE-2024-46664MedJan 14, 2025
    risk 0.36cvss 5.5epss 0.01

    A relative path traversal in Fortinet FortiRecorder [CWE-23] version 7.2.0 through 7.2.1 and before 7.0.4 allows a privileged attacker to read files from the underlying filesystem via crafted HTTP or HTTPs requests.

  • CVE-2024-32115MedJan 14, 2025
    risk 0.36cvss 5.5epss 0.01

    A relative path traversal vulnerability [CWE-23] in Fortinet FortiManager version 7.4.0 through 7.4.2 and before 7.2.5 allows a privileged attacker to delete files from the underlying filesystem via crafted HTTP or HTTPs requests.

  • CVE-2024-43614MedOct 8, 2024
    risk 0.36cvss 5.5epss 0.01

    Relative path traversal in Microsoft Defender for Endpoint allows an authorized attacker to perform spoofing locally.

  • CVE-2023-23391MedMar 14, 2023
    risk 0.36cvss 5.5epss 0.01

    Office for Android Spoofing Vulnerability

  • CVE-2023-20040MedJan 20, 2023
    risk 0.36cvss 5.5epss 0.01

    A vulnerability in the NETCONF service of Cisco Network Services Orchestrator (NSO) could allow an authenticated, remote attacker to cause a denial of service (DoS) on an affected system that is running as the root user. To exploit this vulnerability, the attacker must be a…