Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2024-09-21 CVE-2024-6786 Path Traversal vulnerability in Moxa Mxview ONE
The vulnerability allows an attacker to craft MQTT messages that include relative path traversal sequences, enabling them to read arbitrary files on the system.
network
low complexity
moxa CWE-22
6.5
2024-09-20 CVE-2024-9032 Path Traversal vulnerability in Oretnom23 Simple Forum/Discussion System 1.0
A vulnerability, which was classified as critical, was found in SourceCodester Simple Forum-Discussion System 1.0.
network
low complexity
oretnom23 CWE-22
8.8
2024-09-19 CVE-2024-33109 Path Traversal vulnerability in multiple products
Directory Traversal in the web interface of the Tiptel IP 286 with firmware version 2.61.13.10 allows attackers to overwrite arbitrary files on the phone via the Ringtone upload function.
network
low complexity
ergophone yealink CWE-22
critical
9.8
2024-09-19 CVE-2024-8963 Path Traversal vulnerability in Ivanti Endpoint Manager Cloud Services Appliance 4.6
Path Traversal in the Ivanti CSA before 4.6 Patch 519 allows a remote unauthenticated attacker to access restricted functionality.
network
low complexity
ivanti CWE-22
critical
9.1
2024-09-18 CVE-2024-46986 Path Traversal vulnerability in Tuzitio Camaleon CMS
Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails.
network
low complexity
tuzitio CWE-22
critical
9.9
2024-09-18 CVE-2024-46987 Path Traversal vulnerability in Tuzitio Camaleon CMS
Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails.
network
low complexity
tuzitio CWE-22
7.7
2024-09-17 CVE-2024-45816 Path Traversal vulnerability in Backstage
Backstage is an open framework for building developer portals.
network
low complexity
backstage CWE-22
6.5
2024-09-17 CVE-2024-45604 Path Traversal vulnerability in Contao
Contao is an Open Source CMS.
network
low complexity
contao CWE-22
4.3
2024-09-17 CVE-2021-27916 Path Traversal vulnerability in Acquia Mautic
Prior to the patched version, logged in users of Mautic are vulnerable to Relative Path Traversal/Arbitrary File Deletion.
network
low complexity
acquia CWE-22
8.1
2024-09-17 CVE-2024-44190 Path Traversal vulnerability in Apple Macos
A path handling issue was addressed with improved validation.
local
low complexity
apple CWE-22
5.5