VYPR

CWE-552

Files or Directories Accessible to External Parties

BaseDraft

Description

The product makes files or directories accessible to unauthorized actors, even though they should not be.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-150 · CAPEC-639

CVEs mapped to this weakness (493)

page 24 of 25
  • CVE-2024-2364LowMar 10, 2024
    risk 0.12cvss 1.8epss 0.00

    A vulnerability classified as problematic has been found in Musicshelf 1.0/1.1 on Android. Affected is an unknown function of the file androidmanifest.xml of the component Backup Handler. The manipulation leads to exposure of backup file to an unauthorized control sphere. It is…

  • CVE-2023-32684LowMay 30, 2023
    risk 0.11cvss 2.7epss 0.00

    Lima launches Linux virtual machines, typically on macOS, for running containerd. Prior to version 0.16.0, a virtual machine instance with a malicious disk image could read a single file on the host filesystem, even when no filesystem is mounted from the host. The official…

  • CVE-2020-15175HigOct 7, 2020
    risk 0.06cvss 7.4epss 0.71

    In GLPI before version 9.5.2, the `​pluginimage.send.php​` endpoint allows a user to specify an image from a plugin. The parameters can be maliciously crafted to instead delete the .htaccess file for the files directory. Any user becomes able to read all the files and…

  • CVE-2009-3597Oct 8, 2009
    risk 0.03cvss epss 0.03

    Digitaldesign CMS 0.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for autoconfig.dd.

  • CVE-2026-14849LowJul 31, 2026
    risk 0.00cvss 3.7epss 0.00

    The Paid Membership Subscriptions WordPress plugin before 3.0.7 does not protect the member and payment export files it writes to a predictable location in the uploads directory, allowing unauthenticated users to download the exported member and payment data (including PII)…

  • CVE-2026-11841CriJul 28, 2026
    risk 0.00cvss 9.4epss 0.00

    An attacker may perform unauthenticated read and write operations on sensitive filesystem areas via the AppEngine Fileaccess over HTTP due to improper access restrictions. A critical filesystem directory was unintentionally exposed through the HTTP-based file access feature,…

  • CVE-2026-57990HigJul 26, 2026
    risk 0.00cvss 7.4epss 0.01

    Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-15342MedJul 21, 2026
    risk 0.00cvss 6.5epss 0.00

    Plane contains a multi‑tenant authorization flaw in its asset‑management API that allows authenticated users from one workspace to access, delete, or duplicate assets belonging to another workspace by providing only the victim workspace slug and asset ID. The affected…

  • CVE-2026-59703HigJul 8, 2026
    risk 0.00cvss 7.5epss 0.00

    repomix contains a local file inclusion vulnerability in the git clone endpoint that allows unauthenticated attackers to read arbitrary local git repositories. The isValidRemoteValue function in src/core/git/gitRemoteParse.ts fails to block file:// URLs, permitting attackers to…

  • CVE-2026-13533MedJun 29, 2026
    risk 0.00cvss 5.3epss 0.00

    A security vulnerability has been detected in agentejo Cockpit CMS up to 0.12.2. Affected by this issue is the function Spyc::YAMLLoad of the file /config/config.yaml of the component htaccess Handler. Such manipulation leads to files or directories accessible. It is possible to…

  • CVE-2025-53536HigJul 7, 2025
    risk 0.00cvss 8.1epss 0.01

    Roo Code is an AI-powered autonomous coding agent. Prior to 3.22.6, if the victim had "Write" auto-approved, an attacker with the ability to submit prompts to the agent could write to VS Code settings files and trigger code execution. There were multiple ways to achieve that.…

  • CVE-2025-40908CriJun 1, 2025
    risk 0.00cvss 9.1epss 0.00

    YAML-LibYAML prior to 0.903.0 for Perl uses 2-args open, allowing existing files to be modified

  • CVE-2025-26525HigFeb 24, 2025
    risk 0.00cvss 8.6epss 0.00

    Insufficient sanitizing in the TeX notation filter resulted in an arbitrary file read risk on sites where pdfTeX is available (such as those with TeX Live installed).

  • CVE-2023-48710CriApr 15, 2024
    risk 0.00cvss 9.8epss 0.01

    iTop is an IT service management platform. Files from the `env-production` folder can be retrieved even though they should have restricted access. Hopefully, there is no sensitive files stored in that folder natively, but there could be from a third-party module. The…

  • CVE-2022-23508HigJan 9, 2023
    risk 0.00cvss 8.8epss 0.00

    Weave GitOps is a simple open source developer platform for people who want cloud native applications, without needing Kubernetes expertise. A vulnerability in GitOps run could allow a local user or process to alter a Kubernetes cluster's resources. GitOps run has a local S3…

  • CVE-2022-3287MedSep 28, 2022
    risk 0.00cvss 6.5epss 0.01

    When creating an OPERATOR user account on the BMC, the redfish plugin saved the auto-generated password to /etc/fwupd/redfish.conf without proper restriction, allowing any user on the system to read the same configuration file.

  • CVE-2022-39208HigSep 13, 2022
    risk 0.00cvss 7.5epss 0.01

    Onedev is an open source, self-hosted Git Server with CI/CD and Kanban. All files in the /opt/onedev/sites/ directory are exposed and can be read by unauthenticated users. This directory contains all projects, including their bare git repos and build artifacts. This file…

  • CVE-2022-1117HigAug 29, 2022
    risk 0.00cvss 8.4epss 0.00

    A vulnerability was found in fapolicyd. The vulnerability occurs due to an assumption on how glibc names the runtime linker, a build time regular expression may not correctly detect the runtime linker. The consequence is that the pattern detection for applications launched by…

  • CVE-2021-3996MedAug 23, 2022
    risk 0.00cvss 5.5epss 0.01

    A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows a local user on a vulnerable system to unmount other users' filesystems that are either world-writable themselves (like…

  • CVE-2021-3995MedAug 23, 2022
    risk 0.00cvss 5.5epss 0.01

    A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount FUSE filesystems that belong to certain other users who have a UID that is a…