VYPR

CWE-31

Path Traversal: 'dir\..\..\filename'

VariantDraft

Description

The product uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize 'dir\..\..\filename' (multiple internal backslash dot dot) sequences that can resolve to a location that is outside of that directory.

Hierarchy (View 1000)

Parents

Children

none

CVEs mapped to this weakness (11)

  • CVE-2024-2044CriMar 7, 2024
    risk 0.67cvss 9.9epss 0.79

    pgAdmin <= 8.3 is affected by a path-traversal vulnerability while deserializing users’ sessions in the session handling code. If the server is running on Windows, an unauthenticated attacker can load and deserialize remote pickle objects and gain code execution. If the server…

  • CVE-2024-41376HigAug 5, 2024
    risk 0.57cvss 8.8epss 0.01

    dzzoffice 2.02.1 is vulnerable to Directory Traversal via user/space/about.php.

  • CVE-2024-24998HigApr 19, 2024
    risk 0.57cvss 8.8epss 0.03

    A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM.

  • CVE-2024-36857HigJun 4, 2024
    risk 0.49cvss 7.5epss 0.02

    Jan v0.4.12 was discovered to contain an arbitrary file read vulnerability via the /v1/app/readFileSync interface.

  • CVE-2024-35431HigMay 30, 2024
    risk 0.49cvss 7.5epss 0.01

    ZKTeco ZKBio CVSecurity 6.1.1 is vulnerable to Directory Traversal via photoBase64. An unauthenticated user can download local files from the server. NOTE: Third parties have indicated other versions are also vulnerable including up to 6.4.1.

  • CVE-2019-6268HigMar 8, 2024
    risk 0.49cvss 7.5epss 0.01

    RAD SecFlow-2 devices with Hardware 0202, Firmware 4.1.01.63, and U-Boot 2010.12 allow URIs beginning with /.. for Directory Traversal, as demonstrated by reading /etc/shadow.

  • CVE-2024-25840HigFeb 27, 2024
    risk 0.49cvss 7.5epss 0.01

    In the module "Account Manager | Sales Representative & Dealers | CRM" (prestasalesmanager) up to 9.0 from Presta World for PrestaShop, a guest can download personal information without restriction by performing a path traversal attack.

  • CVE-2024-28088HigMar 4, 2024
    risk 0.46cvss 8.1epss 0.02

    LangChain through 0.1.10 allows ../ directory traversal by an actor who is able to control the final part of the path parameter in a load_chain call. This bypasses the intended behavior of loading configurations only from the hwchase17/langchain-hub GitHub repository. The…

  • CVE-2024-35429MedMay 30, 2024
    risk 0.42cvss 6.5epss 0.01

    ZKTeco ZKBio CVSecurity 6.1.1 is vulnerable to Directory Traversal via eventRecord.

  • CVE-2023-35860MedJun 13, 2024
    risk 0.35cvss 5.3epss 0.01

    A Directory Traversal vulnerability in Modern Campus - Omni CMS 2023.1 allows a remote, unauthenticated attacker to enumerate file system information via the dir parameter to listing.php or rss.php.

  • CVE-2024-22723MedFeb 28, 2024
    risk 0.32cvss 4.9epss 0.01

    Webtrees 2.1.18 is vulnerable to Directory Traversal. By manipulating the "media_folder" parameter in the URL, an attacker (in this case, an administrator) can navigate beyond the intended directory (the 'media/' directory) to access sensitive files in other parts of the…