Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2024-08-26 CVE-2024-8163 Path Traversal vulnerability in Beikeshop
A vulnerability classified as critical was found in Chengdu Everbrite Network Technology BeikeShop up to 1.5.5.
network
low complexity
beikeshop CWE-22
8.1
2024-08-23 CVE-2024-45189 Path Traversal vulnerability in Mage Mage-Ai
Mage AI allows remote users with the "Viewer" role to leak arbitrary files from the Mage server due to a path traversal in the "Git Content" request
network
low complexity
mage CWE-22
6.5
2024-08-22 CVE-2023-7260 Path Traversal vulnerability in Opentext Cx-E Voice
Path Traversal vulnerability discovered in OpenTextâ„¢ CX-E Voice, affecting all version through 22.4.
network
low complexity
opentext CWE-22
7.5
2024-08-21 CVE-2024-6141 Path Traversal vulnerability in Windscribe 2.9.9
Windscribe Directory Traversal Local Privilege Escalation Vulnerability.
local
low complexity
windscribe CWE-22
7.8
2024-08-21 CVE-2024-7600 Path Traversal vulnerability in Logsign Unified Secops Platform 6.4.20
Logsign Unified SecOps Platform Directory Traversal Arbitrary File Deletion Vulnerability.
network
low complexity
logsign CWE-22
8.1
2024-08-21 CVE-2024-7601 Path Traversal vulnerability in Logsign Unified Secops Platform 6.4.20
Logsign Unified SecOps Platform Directory data_export_delete_all Traversal Arbitrary File Deletion Vulnerability.
network
low complexity
logsign CWE-22
8.1
2024-08-21 CVE-2024-7602 Path Traversal vulnerability in Logsign Unified Secops Platform 6.4.20
Logsign Unified SecOps Platform Directory Traversal Information Disclosure Vulnerability.
network
low complexity
logsign CWE-22
6.5
2024-08-21 CVE-2024-7603 Path Traversal vulnerability in Logsign Unified Secops Platform 6.4.20
Logsign Unified SecOps Platform Directory Traversal Arbitrary Directory Deletion Vulnerability.
network
low complexity
logsign CWE-22
8.1
2024-08-20 CVE-2024-7777 Path Traversal vulnerability in Bitapps Contact Form Builder
The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder plugin for WordPress is vulnerable to arbitrary file read and deletion due to insufficient file path validation in multiple functions in versions 2.0 to 2.13.9.
network
low complexity
bitapps CWE-22
critical
9.0
2024-08-20 CVE-2024-7782 Path Traversal vulnerability in Bitapps Contact Form Builder
The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the iconRemove function in versions 2.0 to 2.13.4.
network
low complexity
bitapps CWE-22
6.5