Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2022-08-12 CVE-2022-37042 Path Traversal vulnerability in Zimbra Collaboration 8.8.15/9.0.0
Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it.
network
low complexity
zimbra CWE-22
critical
9.8
2022-08-12 CVE-2022-37423 Path Traversal vulnerability in Neo4J Awesome Procedures on Cypher
Neo4j APOC (Awesome Procedures on Cypher) before 4.3.0.7 and 4.x before 4.4.0.8 allows Directory Traversal to sibling directories via apoc.log.stream.
network
low complexity
neo4j CWE-22
7.5
2022-08-10 CVE-2022-38129 Path Traversal vulnerability in Keysight Sensor Management Server 2.4.0
A path traversal vulnerability exists in the com.keysight.tentacle.licensing.LicenseManager.addLicenseFile() method in the Keysight Sensor Management Server (SMS).
network
low complexity
keysight CWE-22
critical
9.8
2022-08-10 CVE-2022-29804 Path Traversal vulnerability in Golang GO
Incorrect conversion of certain invalid paths to valid, absolute paths in Clean in path/filepath before Go 1.17.11 and Go 1.18.3 on Windows allows potential directory traversal attack.
network
low complexity
golang CWE-22
7.5
2022-08-10 CVE-2022-34365 Path Traversal vulnerability in Dell Wyse Management Suite
WMS 3.7 contains a Path Traversal Vulnerability in Device API.
network
low complexity
dell CWE-22
6.5
2022-08-10 CVE-2022-20816 Path Traversal vulnerability in Cisco Unified Communications Manager
A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an authenticated, remote attacker to delete arbitrary files from an affected system.
network
low complexity
cisco CWE-22
8.1
2022-08-05 CVE-2021-27798 Path Traversal vulnerability in Broadcom Fabric Operating System 7.3.1D/7.4.1B
A vulnerability in Brocade Fabric OS versions v7.4.1b and v7.3.1d could allow local users to conduct privileged directory transversal.
local
low complexity
broadcom CWE-22
5.5
2022-08-05 CVE-2022-2531 Path Traversal vulnerability in Gitlab
An issue has been discovered in GitLab EE affecting all versions starting from 12.5 before 15.0.5, all versions starting from 15.1 before 15.1.4, all versions starting from 15.2 before 15.2.1.
network
low complexity
gitlab CWE-22
5.3
2022-08-05 CVE-2022-31662 Path Traversal vulnerability in VMWare products
VMware Workspace ONE Access, Identity Manager, Connectors and vRealize Automation contain a path traversal vulnerability.
network
low complexity
vmware CWE-22
7.5
2022-08-05 CVE-2022-36831 Path Traversal vulnerability in Samsung Notes
Path traversal vulnerability in UriFileUtils of Samsung Notes prior to version 4.3.14.39 allows attacker to access some file as Samsung Notes permission.
local
low complexity
samsung CWE-22
5.5