Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-01-31 | CVE-2021-34805 | Path Traversal vulnerability in Land-Software Faust Iserver An issue was discovered in FAUST iServer before 9.0.019.019.7. | 7.5 |
2022-01-31 | CVE-2022-23409 | Path Traversal vulnerability in Ethercreative Logs The Logs plugin before 3.0.4 for Craft CMS allows remote attackers to read arbitrary files via input to actionStream in Controller.php. | 4.9 |
2022-01-28 | CVE-2021-23484 | Path Traversal vulnerability in Zip-Local Project Zip-Local The package zip-local before 0.3.5 are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) which can lead to an extraction of a crafted file outside the intended extraction directory. | 9.8 |
2022-01-28 | CVE-2022-22790 | Path Traversal vulnerability in Synel Eharmony 8.0.2.3 SYNEL - eharmony Directory Traversal. | 7.5 |
2022-01-26 | CVE-2021-32841 | Path Traversal vulnerability in Sharpziplib Project Sharpziplib 1.3.0/1.3.1/1.3.2 SharpZipLib (or #ziplib) is a Zip, GZip, Tar and BZip2 library. | 5.3 |
2022-01-26 | CVE-2021-32840 | Path Traversal vulnerability in Sharpziplib Project Sharpziplib SharpZipLib (or #ziplib) is a Zip, GZip, Tar and BZip2 library. | 9.8 |
2022-01-26 | CVE-2021-32842 | Path Traversal vulnerability in Sharpziplib Project Sharpziplib SharpZipLib (or #ziplib) is a Zip, GZip, Tar and BZip2 library. | 5.3 |
2022-01-26 | CVE-2022-22932 | Path Traversal vulnerability in Apache Karaf Apache Karaf obr:* commands and run goal on the karaf-maven-plugin have partial path traversal which allows to break out of expected folder. | 5.3 |
2022-01-24 | CVE-2020-17383 | Path Traversal vulnerability in Telosalliance Z/Ip ONE Firmware A directory traversal vulnerability on Telos Z/IP One devices through 4.0.0r grants an unauthenticated individual root level access to the device's file system. | 9.8 |
2022-01-21 | CVE-2021-23631 | Path Traversal vulnerability in Convert-Svg-Core Project Convert-Svg-Core This affects all versions of package convert-svg-core; all versions of package convert-svg-to-png; all versions of package convert-svg-to-jpeg. | 7.5 |