Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2022-03-04 CVE-2021-32008 Path Traversal vulnerability in Secomea Gatemanager 9.6.621421014
This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions.
network
low complexity
secomea CWE-22
8.7
2022-03-04 CVE-2022-26484 Path Traversal vulnerability in Veritas Infoscale Operations Manager
An issue was discovered in Veritas InfoScale Operations Manager (VIOM) before 7.4.2 Patch 600 and 8.x before 8.0.0 Patch 100.
network
low complexity
veritas CWE-22
4.9
2022-03-04 CVE-2021-46381 Path Traversal vulnerability in Dlink Dap-1620 Firmware
Local File Inclusion due to path traversal in D-Link DAP-1620 leads to unauthorized internal files reading [/etc/passwd] and [/etc/shadow].
network
low complexity
dlink CWE-22
7.5
2022-03-03 CVE-2021-3762 Path Traversal vulnerability in Redhat Clair and Quay
A directory traversal vulnerability was found in the ClairCore engine of Clair.
network
low complexity
redhat CWE-22
critical
9.8
2022-03-02 CVE-2021-41002 Path Traversal vulnerability in HPE Arubaos-Cx
Multiple authenticated remote path traversal vulnerabilities were discovered in the AOS-CX command line interface in Aruba CX 6200F Switch Series, Aruba 6300 Switch Series, Aruba 6400 Switch Series, Aruba 8320 Switch Series, Aruba 8325 Switch Series, Aruba 8400 Switch Series, Aruba CX 8360 Switch Series version(s): AOS-CX 10.06.xxxx: 10.06.0170 and below, AOS-CX 10.07.xxxx: 10.07.0050 and below, AOS-CX 10.08.xxxx: 10.08.1030 and below, AOS-CX 10.09.xxxx: 10.09.0002 and below.
network
low complexity
hpe CWE-22
8.1
2022-03-02 CVE-2021-43070 Path Traversal vulnerability in Fortinet Fortiwlm
Multiple relative path traversal vulnerabilities [CWE-23] in FortiWLM management interface 8.6.2 and below, 8.5.2 and below, 8.4.2 and below, 8.3.3 and below, 8.2.2 may allow an authenticated attacker to retrieve arbitrary files from the underlying filesystem via specially crafted web requests.
network
low complexity
fortinet CWE-22
6.5
2022-03-02 CVE-2022-25634 Path Traversal vulnerability in QT
Qt through 5.15.8 and 6.x through 6.2.3 can load system library files from an unintended working directory.
network
low complexity
qt CWE-22
7.5
2022-03-01 CVE-2021-42767 Path Traversal vulnerability in Neo4J Awesome Procedures 4.2.0.0/4.3.0.0/4.4.0.0
A directory traversal vulnerability in the apoc plugins in Neo4J Graph database before 4.4.0.1 allows attackers to read local files, and sometimes create local files.
network
low complexity
neo4j CWE-22
critical
9.1
2022-02-28 CVE-2022-25412 Path Traversal vulnerability in Max-3000 Maxsite CMS 108
Maxsite CMS v180 was discovered to contain multiple arbitrary file deletion vulnerabilities in /admin_page/all-files-update-ajax.php via the dir and deletefile parameters.
network
low complexity
max-3000 CWE-22
8.1
2022-02-28 CVE-2022-26315 Path Traversal vulnerability in Qrcp Project Qrcp
qrcp through 0.8.4, in receive mode, allows ../ Directory Traversal via the file name specified by the uploader.
network
low complexity
qrcp-project CWE-22
5.3