CWE-22
9,562 CVEs • Abstraction: Base • Likelihood of Exploit: High
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.
CVEs (9,562)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A vulnerability in the application data endpoints of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to write arbitrary files to an affected system. The vulnerability is due to improper valida...Show more |
1Silver Peak 1Unity Orchestrator Jun 17, 2026 Nov 5, 2020 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can make unauthorized MySQL queries against the Orchestrator database using the /sqlExecution REST API, which had be...Show more |
1Silver Peak 1Unity Orchestrator Jun 17, 2026 Nov 5, 2020 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can access, modify, and delete restricted files on the Orchestrator server using the/debugFiles REST API. |
This affects the package phantom-html-to-pdf before 0.6.1. |
1Jsreport 1Jsreport Chrome Pdf Jun 17, 2026 Nov 5, 2020 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 This affects the package jsreport-chrome-pdf before 1.10.0. |
This affects versions of package browserless-chrome before 1.40.2-chrome-stable. User input flowing from the workspace endpoint gets used to create a file path filePath and this is fetched and then sent back to a user. T...Show more |
This affects all versions of package droppy. It is possible to traverse directories to fetch configuration files from a droopy server. |
The Module Olea Gift On Order module through 5.0.8 for PrestaShop enables an unauthenticated user to read arbitrary files on the server via getfile.php?file=/.. directory traversal. |
There is no input validation on the Locale property in an apt transaction. An unprivileged user can supply a full path to a writable directory, which lets aptd read a file as root. Having a symlink in place results in an...Show more |
In CommCell in Commvault before 14.68, 15.x before 15.58, 16.x before 16.44, 17.x before 17.29, and 18.x before 18.13, Directory Traversal can occur such that an attempt to view a log file can instead view a file outside...Show more |
Hrsale 2.0.0 allows download?type=files&filename=../ directory traversal to read arbitrary files. |
An issue was discovered in QSC Q-SYS Core Manager 8.2.1. By utilizing the TFTP service running on UDP port 69, a remote attacker can perform a directory traversal and obtain operating system files via a TFTP GET request,...Show more |
1Ibm 1Websphere Application Server Jun 17, 2026 Oct 28, 2020 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to...Show more |
1Pulsesecure 1Pulse Secure Desktop Client Jun 17, 2026 Oct 28, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A vulnerability in the Pulse Secure Desktop Client < 9.1R9 has Remote Code Execution (RCE) if users can be convinced to connect to a malicious server. This vulnerability only affects Windows PDC.To improve the security o...Show more |
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. A...Show more |
1Westerndigital 1My Cloud Firmware Jun 17, 2026 Oct 27, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Addressed remote code execution vulnerability in AvailableApps.php that allowed escalation of privileges in Western Digital My Cloud NAS devices prior to 5.04.114 (issue 3 of 3). |
1Apple 4Ipados Iphone OsMac Os X+1 moreJun 17, 2026 Oct 22, 2020 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 A path handling issue was addressed with improved validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, watchOS 6.2.8. A malicious mail server may overwrite arbitrary mail files. |
AtomXCMS 2.0 is affected by Arbitrary File Read via admin/dump.php |
1Cisco 2Firepower Threat Defense Secure Firewall Management CenterJun 17, 2026 Oct 21, 2020 N/A· v4 8.1 HIGH· v3 5.5 MEDIUM· v2 A vulnerability in the sfmgr daemon of Cisco Firepower Management Center (FMC) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to perform directory traversal and a...Show more |
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Installation). Supported versions that are affected are 5.5.0.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily ex...Show more |