CWE-552
Files or Directories Accessible to External Parties
Description
The product makes files or directories accessible to unauthorized actors, even though they should not be.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-150 · CAPEC-639
CVEs mapped to this weakness (518)
page 8 of 26| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-10403 | Hig | 0.49 | 7.5 | 0.01 | Nov 21, 2024 | Brocade Fabric OS versions before 8.2.3e2, versions 9.0.0 through 9.2.0c, and 9.2.1 through 9.2.1a can capture the SFTP/FTP server password used for a firmware download operation initiated by SANnav or through WebEM in a weblinker core dump that is later captured via… | ||
| CVE-2024-49359 | Hig | 0.49 | 7.5 | 0.01 | Oct 24, 2024 | ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all prior versions, the API endpoint `http://<Zima_Server_IP:PORT>/v2_1/file` in ZimaOS is vulnerable to a directory traversal attack, allowing authenticated users… | ||
| CVE-2024-7107 | Hig | 0.49 | 7.5 | 0.00 | Sep 26, 2024 | Files or Directories Accessible to External Parties vulnerability in National Keep Cyber Security Services CyberMath allows Collect Data from Common Resource Locations. This issue affects CyberMath: before CYBM.240816253. | ||
| CVE-2023-49198 | Hig | 0.49 | 7.5 | 0.01 | Aug 21, 2024 | Mysql security vulnerability in Apache SeaTunnel. Attackers can read files on the MySQL server by modifying the information in the MySQL URL allowLoadLocalInfile=true&allowUrlInLocalInfile=true&allowLoadLocalInfileInPath=/&maxAllowedPacket=655360 This issue affects Apache… | ||
| CVE-2024-7729 | Hig | 0.49 | 7.5 | 0.01 | Aug 14, 2024 | The CAYIN Technology CMS lacks proper access control, allowing unauthenticated remote attackers to download arbitrary CGI files. | ||
| CVE-2024-38429 | Hig | 0.49 | 7.5 | 0.00 | Jul 30, 2024 | Matrix Tafnit v8 - CWE-552: Files or Directories Accessible to External Parties | ||
| CVE-2024-6911 | Hig | 0.49 | 7.5 | 0.05 | Jul 22, 2024 | Files on the Windows system are accessible without authentication to external parties due to a local file inclusion in PerkinElmer ProcessPlus.This issue affects ProcessPlus: through 1.11.6507.0. | ||
| CVE-2024-6421 | Hig | 0.49 | 7.5 | 0.01 | Jul 10, 2024 | An unauthenticated remote attacker can read out sensitive device information through a incorrectly configured FTP service. | ||
| CVE-2024-4836 | Hig | 0.49 | 7.5 | 0.03 | Jul 2, 2024 | Web services managed by Edito CMS (Content Management System) in versions from 3.5 through 3.25 leak sensitive data as they allow downloading configuration files by an unauthenticated user. The issue in versions 3.5 - 3.25 was removed in releases which dates from 10th of January… | ||
| CVE-2024-2759 | Hig | 0.49 | 7.5 | 0.01 | Apr 4, 2024 | Improper access control vulnerability in Apaczka plugin for PrestaShop allows information gathering from saved templates without authentication.This issue affects Apaczka plugin for PrestaShop from v1 through v4. | ||
| CVE-2024-2052 | Hig | 0.49 | 7.5 | 0.01 | Mar 18, 2024 | CWE-552: Files or Directories Accessible to External Parties vulnerability exists that could allow unauthenticated files and logs exfiltration and download of files when an attacker modifies the URL to download to a different location. | ||
| CVE-2024-24161 | Hig | 0.49 | 7.5 | 0.01 | Feb 2, 2024 | MRCMS 3.0 contains an Arbitrary File Read vulnerability in /admin/file/edit.do as the incoming path parameter is not filtered. | ||
| CVE-2023-4550 | Hig | 0.49 | 7.5 | 0.00 | Jan 29, 2024 | Improper Input Validation, Files or Directories Accessible to External Parties vulnerability in OpenText AppBuilder on Windows, Linux allows Probe System Files. An unauthenticated or authenticated user can abuse a page of AppBuilder to read arbitrary files on the server on… | ||
| CVE-2023-6266 | Hig | 0.49 | 7.5 | 0.02 | Jan 11, 2024 | The Backup Migration plugin for WordPress is vulnerable to unauthorized access of data due to insufficient path and file validation on the BMI_BACKUP case of the handle_downloading function in all versions up to, and including, 1.3.6. This makes it possible for unauthenticated… | ||
| CVE-2023-26580 | Hig | 0.49 | 7.5 | 0.01 | Oct 25, 2023 | Unauthenticated arbitrary file read in the IDAttend’s IDWeb application 3.1.013 allows the retrieval of any file present on the web server by unauthenticated attackers. | ||
| CVE-2023-33517 | Hig | 0.49 | 7.5 | 0.01 | Oct 23, 2023 | carRental 1.0 is vulnerable to Incorrect Access Control (Arbitrary File Read on the Back-end System). | ||
| CVE-2023-43856 | Hig | 0.49 | 7.5 | 0.01 | Sep 27, 2023 | Dreamer CMS v4.1.3 was discovered to contain an arbitrary file read vulnerability via the component /admin/TemplateController.java. | ||
| CVE-2023-4475 | Hig | 0.49 | 7.5 | 0.00 | Aug 22, 2023 | An Arbitrary File Movement vulnerability was found in ASUSTOR Data Master (ADM) allows an attacker to exploit the file renaming feature to move files to unintended directories. Affected products and versions include: ADM 4.0.6.RIS1, 4.1.0 and below as well as ADM 4.2.2.RI61 and… | ||
| CVE-2023-38952 | Hig | 0.49 | 7.5 | 0.03 | Aug 3, 2023 | Insecure access control in ZKTeco BioTime through 9.0.1 allows authenticated attackers to escalate their privileges due to the fact that session ids are not validated for the type of user accessing the application by default. Privilege restrictions between non-admin and admin… | ||
| CVE-2023-34645 | Hig | 0.49 | 7.5 | 0.01 | Jun 16, 2023 | jfinal CMS 5.1.0 has an arbitrary file read vulnerability. |
- risk 0.49cvss 7.5epss 0.01
Brocade Fabric OS versions before 8.2.3e2, versions 9.0.0 through 9.2.0c, and 9.2.1 through 9.2.1a can capture the SFTP/FTP server password used for a firmware download operation initiated by SANnav or through WebEM in a weblinker core dump that is later captured via…
- risk 0.49cvss 7.5epss 0.01
ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all prior versions, the API endpoint `http://<Zima_Server_IP:PORT>/v2_1/file` in ZimaOS is vulnerable to a directory traversal attack, allowing authenticated users…
- risk 0.49cvss 7.5epss 0.00
Files or Directories Accessible to External Parties vulnerability in National Keep Cyber Security Services CyberMath allows Collect Data from Common Resource Locations. This issue affects CyberMath: before CYBM.240816253.
- risk 0.49cvss 7.5epss 0.01
Mysql security vulnerability in Apache SeaTunnel. Attackers can read files on the MySQL server by modifying the information in the MySQL URL allowLoadLocalInfile=true&allowUrlInLocalInfile=true&allowLoadLocalInfileInPath=/&maxAllowedPacket=655360 This issue affects Apache…
- risk 0.49cvss 7.5epss 0.01
The CAYIN Technology CMS lacks proper access control, allowing unauthenticated remote attackers to download arbitrary CGI files.
- risk 0.49cvss 7.5epss 0.00
Matrix Tafnit v8 - CWE-552: Files or Directories Accessible to External Parties
- risk 0.49cvss 7.5epss 0.05
Files on the Windows system are accessible without authentication to external parties due to a local file inclusion in PerkinElmer ProcessPlus.This issue affects ProcessPlus: through 1.11.6507.0.
- risk 0.49cvss 7.5epss 0.01
An unauthenticated remote attacker can read out sensitive device information through a incorrectly configured FTP service.
- risk 0.49cvss 7.5epss 0.03
Web services managed by Edito CMS (Content Management System) in versions from 3.5 through 3.25 leak sensitive data as they allow downloading configuration files by an unauthenticated user. The issue in versions 3.5 - 3.25 was removed in releases which dates from 10th of January…
- risk 0.49cvss 7.5epss 0.01
Improper access control vulnerability in Apaczka plugin for PrestaShop allows information gathering from saved templates without authentication.This issue affects Apaczka plugin for PrestaShop from v1 through v4.
- risk 0.49cvss 7.5epss 0.01
CWE-552: Files or Directories Accessible to External Parties vulnerability exists that could allow unauthenticated files and logs exfiltration and download of files when an attacker modifies the URL to download to a different location.
- risk 0.49cvss 7.5epss 0.01
MRCMS 3.0 contains an Arbitrary File Read vulnerability in /admin/file/edit.do as the incoming path parameter is not filtered.
- risk 0.49cvss 7.5epss 0.00
Improper Input Validation, Files or Directories Accessible to External Parties vulnerability in OpenText AppBuilder on Windows, Linux allows Probe System Files. An unauthenticated or authenticated user can abuse a page of AppBuilder to read arbitrary files on the server on…
- risk 0.49cvss 7.5epss 0.02
The Backup Migration plugin for WordPress is vulnerable to unauthorized access of data due to insufficient path and file validation on the BMI_BACKUP case of the handle_downloading function in all versions up to, and including, 1.3.6. This makes it possible for unauthenticated…
- risk 0.49cvss 7.5epss 0.01
Unauthenticated arbitrary file read in the IDAttend’s IDWeb application 3.1.013 allows the retrieval of any file present on the web server by unauthenticated attackers.
- risk 0.49cvss 7.5epss 0.01
carRental 1.0 is vulnerable to Incorrect Access Control (Arbitrary File Read on the Back-end System).
- risk 0.49cvss 7.5epss 0.01
Dreamer CMS v4.1.3 was discovered to contain an arbitrary file read vulnerability via the component /admin/TemplateController.java.
- risk 0.49cvss 7.5epss 0.00
An Arbitrary File Movement vulnerability was found in ASUSTOR Data Master (ADM) allows an attacker to exploit the file renaming feature to move files to unintended directories. Affected products and versions include: ADM 4.0.6.RIS1, 4.1.0 and below as well as ADM 4.2.2.RI61 and…
- risk 0.49cvss 7.5epss 0.03
Insecure access control in ZKTeco BioTime through 9.0.1 allows authenticated attackers to escalate their privileges due to the fact that session ids are not validated for the type of user accessing the application by default. Privilege restrictions between non-admin and admin…
- risk 0.49cvss 7.5epss 0.01
jfinal CMS 5.1.0 has an arbitrary file read vulnerability.