Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2022-04-14 CVE-2021-43289 Path Traversal vulnerability in Thoughtworks Gocd
An issue was discovered in ThoughtWorks GoCD before 21.3.0.
network
low complexity
thoughtworks CWE-22
7.5
2022-04-14 CVE-2021-43290 Path Traversal vulnerability in Thoughtworks Gocd
An issue was discovered in ThoughtWorks GoCD before 21.3.0.
network
low complexity
thoughtworks CWE-22
critical
9.8
2022-04-13 CVE-2022-24843 Path Traversal vulnerability in Gin-Vue-Admin Project Gin-Vue-Admin
Gin-vue-admin is a backstage management system based on vue and gin, which separates the front and rear of the full stack.
network
low complexity
gin-vue-admin-project CWE-22
7.5
2022-04-13 CVE-2022-28052 Path Traversal vulnerability in Roothub 2.6.0
Directory Traversal vulnerability in file cn/roothub/store/FileSystemStorageService in function store in Roothub 2.6.0 allows remote attackers with low privlege to arbitrarily upload files via /common/upload API, which could lead to remote arbitrary code execution.
network
low complexity
roothub CWE-22
8.0
2022-04-13 CVE-2021-43741 Path Traversal vulnerability in Cmsimple 5.4
CMSimple 5.4 is vulnerable to Directory Traversal.
network
low complexity
cmsimple CWE-22
critical
9.8
2022-04-13 CVE-2022-22279 Path Traversal vulnerability in Sonicwall products
A post-authentication arbitrary file read vulnerability impacting end-of-life Secure Remote Access (SRA) products and older firmware versions of Secure Mobile Access (SMA) 100 series products, specifically the SRA appliances running all 8.x, 9.0.0.5-19sv and earlier versions and Secure Mobile Access (SMA) 100 series products running older firmware 9.0.0.9-26sv and earlier versions
network
low complexity
sonicwall CWE-22
4.9
2022-04-12 CVE-2022-24247 Path Traversal vulnerability in Ritecms
RiteCMS version 3.1.0 and below suffers from an arbitrary file overwrite via path traversal vulnerability in Admin Panel.
network
low complexity
ritecms CWE-22
6.5
2022-04-12 CVE-2022-24248 Path Traversal vulnerability in Ritecms
RiteCMS version 3.1.0 and below suffers from an arbitrary file deletion via path traversal vulnerability in Admin Panel.
network
low complexity
ritecms CWE-22
6.5
2022-04-11 CVE-2022-27844 Path Traversal vulnerability in Wpvivid Migration, Backup, Staging
Arbitrary File Read vulnerability in WPvivid Team Migration, Backup, Staging – WPvivid (WordPress plugin) versions <= 0.9.70
network
low complexity
wpvivid CWE-22
7.5
2022-04-11 CVE-2022-28543 Path Traversal vulnerability in Samsung Flow 4.8.03.5/4.8.5.0
Path traversal vulnerability in Samsung Flow prior to version 4.8.07.4 allows local attackers to read arbitrary files as Samsung Flow permission.
local
low complexity
samsung CWE-22
5.5