← Back
CWE-22

9,563 CVEs • Abstraction: Base • Likelihood of Exploit: High

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

JSON object

Loading...

CVEs (9,563)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Nchsoftware
1Quorum
Jun 17, 2026
Jul 25, 2021
N/A· v4
8.1 HIGH· v3
5.5 MEDIUM· v2
In NCH Quorum v2.03 and earlier, an authenticated user can use directory traversal via documentdelete?file=/.. for file deletion.
1Nchsoftware
1Quorum
Jun 17, 2026
Jul 25, 2021
N/A· v4
4.3 MEDIUM· v3
4.0 MEDIUM· v2
In NCH Quorum v2.03 and earlier, an authenticated user can use directory traversal via documentprop?file=/.. for file reading.
1Nchsoftware
1Quorum
Jun 17, 2026
Jul 25, 2021
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
In NCH Quorum v2.03 and earlier, an authenticated user can use directory traversal via logprop?file=/.. for file reading.
1Nchsoftware
1Ivm Attendant
Jun 17, 2026
Jul 25, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
NCH IVM Attendant v5.12 and earlier suffers from a directory traversal weakness upon uploading plugins in a ZIP archive. This can lead to code execution if a ZIP element's pathname is set to a Windows startup folder, a f...Show more
NCH IVM Attendant v5.12 and earlier suffers from a directory traversal weakness upon uploading plugins in a ZIP archive. This can lead to code execution if a ZIP element's pathname is set to a Windows startup folder, a file for the inbuilt Out-Going Message function, or a file for the the inbuilt Autodial function.Show less
1Nchsoftware
1Ivm Attendant
Jun 17, 2026
Jul 25, 2021
N/A· v4
8.1 HIGH· v3
5.5 MEDIUM· v2
NCH IVM Attendant v5.12 and earlier allows path traversal via the logdeleteselected check0 parameter for file deletion.
1Nchsoftware
1Ivm Attendant
Jun 17, 2026
Jul 25, 2021
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
NCH IVM Attendant v5.12 and earlier allows path traversal via viewfile?file=/.. to read files.
1Nch
1Axon Pbx
Jun 17, 2026
Jul 25, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
NCH Axon PBX v2.22 and earlier allows path traversal for file deletion via the logdelete?file=/.. substring.
1Nch
1Axon Pbx
Jun 17, 2026
Jul 25, 2021
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
NCH Axon PBX v2.22 and earlier allows path traversal for file disclosure via the logprop?file=/.. substring.
1Nch
1Flexiserver
Jun 17, 2026
Jul 25, 2021
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
NCH FlexiServer v6.00 suffers from a syslog?file=/.. path traversal vulnerability.
1Nch
1Webdictate
Jun 17, 2026
Jul 25, 2021
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
In NCH WebDictate v2.13 and earlier, authenticated users can abuse logprop?file=/.. path traversal to read files on the filesystem.
1Dell
1Emc Openmanage Enterprise
Jun 17, 2026
Jul 22, 2021
N/A· v4
6.8 MEDIUM· v3
6.0 MEDIUM· v2
Dell EMC OpenManage Enterprise (OME) versions prior to 3.4 contain an arbitrary file overwrite vulnerability. A remote authenticated malicious user with high privileges could potentially exploit this vulnerability to ove...Show more
Dell EMC OpenManage Enterprise (OME) versions prior to 3.4 contain an arbitrary file overwrite vulnerability. A remote authenticated malicious user with high privileges could potentially exploit this vulnerability to overwrite arbitrary files via directory traversal sequences using a crafted tar file to inject malicious RPMs which may cause a denial of service or perform unauthorized actions.Show less
1Cisco
1Intersight Virtual Appliance
Jun 17, 2026
Jul 22, 2021
N/A· v4
6.5 MEDIUM· v3
5.5 MEDIUM· v2
Multiple vulnerabilities in the web-based management interface of Cisco Intersight Virtual Appliance could allow an authenticated, remote attacker to conduct a path traversal or command injection attack on an affected sy...Show more
Multiple vulnerabilities in the web-based management interface of Cisco Intersight Virtual Appliance could allow an authenticated, remote attacker to conduct a path traversal or command injection attack on an affected system. These vulnerabilities are due to insufficient input validation. An attacker could exploit these vulnerabilities by using the web-based management interface to do one or both of the following: Execute a command using crafted input Upload a file that has been altered using path traversal techniques A successful exploit could allow the attacker to read and write arbitrary files or execute arbitrary commands as root on an affected system. For more information about these vulnerabilities, see the Details section of this advisory.Show less
1Idemia
6Morphowave Compact Md Firmware
Morphowave Compact Mdpi M FirmwareMorphowave Compact Mdpi Firmware+3 more
Jun 17, 2026
Jul 22, 2021
N/A· v4
5.9 MEDIUM· v3
4.9 MEDIUM· v2
A path traversal in Thrift command handlers in IDEMIA Morpho Wave Compact and VisionPass devices before 2.6.2 allows remote authenticated attackers to achieve denial of services and information disclosure via TCP/IP pack...Show more
A path traversal in Thrift command handlers in IDEMIA Morpho Wave Compact and VisionPass devices before 2.6.2 allows remote authenticated attackers to achieve denial of services and information disclosure via TCP/IP packets.Show less
1Minecraft
1Minecraft
Jun 17, 2026
Jul 20, 2021
N/A· v4
7.5 HIGH· v3
4.3 MEDIUM· v2
Minecraft before 1.17.1, when online-mode=false is configured, allows path traversal for deletion of arbitrary JSON files.
1Aat
1Novus Management System
Jun 17, 2026
Jul 19, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Web Path Directory Traversal in the Novus HTTP Server. The Novus HTTP Server is affected by the Directory Traversal for Arbitrary File Access vulnerability. A remote, unauthenticated attacker using an HTTP GET request ma...Show more
Web Path Directory Traversal in the Novus HTTP Server. The Novus HTTP Server is affected by the Directory Traversal for Arbitrary File Access vulnerability. A remote, unauthenticated attacker using an HTTP GET request may be able to exploit this issue to access sensitive data. The issue was discovered in the NMS (Novus Management System) software through 1.51.2Show less
1Learningdigital
1Orca Hcm
Jun 17, 2026
Jul 19, 2021
N/A· v4
4.3 MEDIUM· v3
4.0 MEDIUM· v2
The directory list page parameter of the Orca HCM digital learning platform fails to filter special characters properly. Remote attackers can access the system directory thru Path Traversal with users’ privileges.
1Learningdigital
1Orca Hcm
Jun 17, 2026
Jul 19, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
The directory page parameter of the Orca HCM digital learning platform does not filter special characters. Remote attackers can access the system directory thru Path Traversal without logging in.
1Include Me Project
1Include Me
Jun 17, 2026
Jul 19, 2021
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
The Include Me WordPress plugin through 1.2.1 is vulnerable to path traversal / local file inclusion, which can lead to Remote Code Execution (RCE) of the system due to log poisoning and therefore potentially a full comp...Show more
The Include Me WordPress plugin through 1.2.1 is vulnerable to path traversal / local file inclusion, which can lead to Remote Code Execution (RCE) of the system due to log poisoning and therefore potentially a full compromise of the underlying structureShow less
1Silkypress
1Wp Image Zoom
Jun 17, 2026
Jul 19, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
The WP Image Zoom WordPress plugin before 1.47 did not validate its tab parameter before using it in the include_once() function, leading to a local file inclusion issue in the admin dashboard
1Objectcomputing
1Micronaut
Jun 17, 2026
Jul 16, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Micronaut is a JVM-based, full stack Java framework designed for building JVM applications. A path traversal vulnerability exists in versions prior to 2.5.9. With a basic configuration, it is possible to access any file...Show more
Micronaut is a JVM-based, full stack Java framework designed for building JVM applications. A path traversal vulnerability exists in versions prior to 2.5.9. With a basic configuration, it is possible to access any file from a filesystem, using "/../../" in the URL. This occurs because Micronaut does not restrict file access to configured paths. The vulnerability is patched in version 2.5.9. As a workaround, do not use `**` in mapping, use only `*`, which exposes only flat structure of a directory not allowing traversal. If using Linux, another workaround is to run micronaut in chroot.Show less