Vulnerabilities > Files or Directories Accessible to External Parties

DATE CVE VULNERABILITY TITLE RISK
2024-08-14 CVE-2024-7729 The CAYIN Technology CMS lacks proper access control, allowing unauthenticated remote attackers to download arbitrary CGI files.
network
low complexity
CWE-552
7.5
2024-08-02 CVE-2024-27182 Files or Directories Accessible to External Parties vulnerability in Apache Linkis 1.3.2/1.4.0/1.5.0
In Apache Linkis <= 1.5.0, Arbitrary file deletion in Basic management services on A user with an administrator account could delete any file accessible by the Linkis system user . Users are recommended to upgrade to version 1.6.0, which fixes this issue.
network
low complexity
apache CWE-552
4.9
2024-07-22 CVE-2024-6911 Files or Directories Accessible to External Parties vulnerability in Perkinelmer Processplus
Files on the Windows system are accessible without authentication to external parties due to a local file inclusion in PerkinElmer ProcessPlus.This issue affects ProcessPlus: through 1.11.6507.0.
network
low complexity
perkinelmer CWE-552
7.5
2024-06-05 CVE-2024-5262 Files or Directories Accessible to External Parties vulnerability in Projectdiscovery Interactsh
Files or Directories Accessible to External Parties vulnerability in smb server in ProjectDiscovery Interactsh allows remote attackers to read/write any files in the directory and subdirectories of where the victim runs interactsh-server via anonymous login.
network
low complexity
projectdiscovery CWE-552
critical
9.8
2024-05-14 CVE-2024-3037 Files or Directories Accessible to External Parties vulnerability in Papercut MF
An arbitrary file deletion vulnerability exists in PaperCut NG/MF, specifically affecting Windows servers with Web Print enabled.
local
low complexity
papercut CWE-552
7.8
2024-05-03 CVE-2024-34066 Files or Directories Accessible to External Parties vulnerability in Pterodactyl Wings
Pterodactyl wings is the server control plane for Pterodactyl Panel.
network
low complexity
pterodactyl CWE-552
8.4
2024-04-15 CVE-2023-48710 Files or Directories Accessible to External Parties vulnerability in Combodo Itop
iTop is an IT service management platform.
network
low complexity
combodo CWE-552
critical
9.8
2024-03-10 CVE-2024-2364 Files or Directories Accessible to External Parties vulnerability in Kirillmakarov Musicshelf 1.1
A vulnerability classified as problematic has been found in Musicshelf 1.0/1.1 on Android.
low complexity
kirillmakarov CWE-552
4.6
2024-02-06 CVE-2024-22240 Files or Directories Accessible to External Parties vulnerability in VMWare Aria Operations for Networks
Aria Operations for Networks contains a local file read vulnerability. A malicious actor with admin privileges may exploit this vulnerability leading to unauthorized access to sensitive information.
network
low complexity
vmware CWE-552
4.9
2024-02-02 CVE-2024-24161 Files or Directories Accessible to External Parties vulnerability in Mrcms 3.0
MRCMS 3.0 contains an Arbitrary File Read vulnerability in /admin/file/edit.do as the incoming path parameter is not filtered.
network
low complexity
mrcms CWE-552
7.5