CWE-73
514 CVEs • Abstraction: Base • Likelihood of Exploit: High
External Control of File Name or Path
The product allows user input to control or influence paths or file names that are used in filesystem operations.
CVEs (514)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Windows Installer Elevation of Privilege Vulnerability |
2Fedoraproject Paloaltonetworks2Cortex Xsoar FedoraJun 17, 2026 Feb 8, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A file disclosure vulnerability in the Palo Alto Networks Cortex XSOAR server software enables an authenticated user with access to the web interface to read local files from the server. |
A vulnerability has been identified in Automation License Manager V5 (All versions), Automation License Manager V6 (All versions < V6.0 SP9 Upd4), TeleControl Server Basic V3 (All versions < V3.1.2). The affected compone...Show more |
1Sternenblog Project 1Sternenblog Nov 21, 2024 Jan 7, 2023 N/A· v4 9.8 CRITICAL· v3 4.6 MEDIUM· v2 A vulnerability, which was classified as problematic, has been found in sternenseemann sternenblog. This issue affects the function blog_index of the file main.c. The manipulation of the argument post_path leads to file...Show more |
1Wing Tight Project 1Wing Tight Nov 21, 2024 Jan 5, 2023 N/A· v4 9.8 CRITICAL· v3 6.5 MEDIUM· v2 A vulnerability, which was classified as critical, was found in soshtolsus wing-tight. This affects an unknown part of the file index.php. The manipulation of the argument p leads to file inclusion. It is possible to ini...Show more |
perfSONAR before 4.4.6 inadvertently supports the parse option for a file:// URL. |
NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular user can access or modify system files or other files that are critical to the application, which may l...Show more |
1Mozilla 3Firefox Firefox EsrThunderbirdJun 17, 2026 Dec 22, 2022 N/A· v4 8.8 HIGH· v3 N/A· v2 When downloading files on Windows, the % character was not escaped, which could have lead to a download incorrectly being saved to attacker-influenced paths that used variables such as %HOMEPATH% or %APPDATA%.<br>*This b...Show more |
Cortex provides multi-tenant, long term storage for Prometheus. A local file inclusion vulnerability exists in Cortex versions 1.13.0, 1.13.1 and 1.14.0, where a malicious actor could remotely read local files as a resul...Show more |
1Siemens 1Syngo Dynamics Cardiovascular Imaging And Information System Jun 17, 2026 Nov 17, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hosts a web service using an operation with improper write access control that could allow to write dat...Show more |
1Siemens 1Syngo Dynamics Cardiovascular Imaging And Information System Jun 17, 2026 Nov 17, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hosts a web service using an operation with improper write access control that could allow to write dat...Show more |
1Siemens 1Syngo Dynamics Cardiovascular Imaging And Information System Jun 17, 2026 Nov 17, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hosts a web service using an operation with improper write access control that could allow to write dat...Show more |
1Siemens 1Syngo Dynamics Cardiovascular Imaging And Information System Jun 17, 2026 Nov 17, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hosts a web service using an operation with improper read access control that could allow files to be r...Show more |
1Siemens 1Syngo Dynamics Cardiovascular Imaging And Information System Jun 17, 2026 Nov 17, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hosts a web service using an operation with improper read access control that could allow files to be r...Show more |
The Download Manager plugin for WordPress is vulnerable to arbitrary file deletion in versions up to, and including 3.2.50. This is due to insufficient file type and path validation on the deleteFiles() function found in...Show more |
The Export All URLs WordPress plugin before 4.4 does not validate the path of the file to be removed on the system which is supposed to be the CSV file. This could allow high privilege users to delete arbitrary file from...Show more |
An information disclosure vulnerability exists in the aVideoEncoderReceiveImage functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary file read. An attac...Show more |
An information disclosure vulnerability exists in the chunkFile functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary file read. An attacker can send an...Show more |
External Control of File Name or Path in GitHub repository dompdf/dompdf prior to 2.0.0. |
1Schneider Electric 2Opc Ua Module For M580 Firmware X80 Advanced Rtu Module FirmwareJun 17, 2026 Jul 13, 2022 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A CWE-73: External Control of File Name or Path vulnerability exists that could cause loading of unauthorized firmware images when user-controlled data is written to the file path. Affected Products: X80 advanced RTU Com...Show more |