Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2021-12-07 CVE-2021-37099 Path Traversal vulnerability in Huawei Harmonyos
There is a Path Traversal vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to delete any file.
network
low complexity
huawei CWE-22
critical
9.1
2021-12-06 CVE-2021-43800 Path Traversal vulnerability in Requarks Wiki.Js
Wiki.js is a wiki app built on Node.js.
network
low complexity
requarks CWE-22
7.5
2021-12-03 CVE-2021-43676 Path Traversal vulnerability in Swoole PHP Framework 3.0.5
matyhtf framework v3.0.5 is affected by a path manipulation vulnerability in Smarty.class.php.
network
low complexity
swoole CWE-22
critical
9.8
2021-12-03 CVE-2021-43674 Path Traversal vulnerability in Thinkupapp Thinkup 2.0
ThinkUp 2.0-beta.10 is affected by a path manipulation vulnerability in Smarty.class.php.
network
low complexity
thinkupapp CWE-22
critical
9.8
2021-12-03 CVE-2021-44278 Path Traversal vulnerability in Librenms 21.11.0
Librenms 21.11.0 is affected by a path manipulation vulnerability in includes/html/pages/device/showconfig.inc.php.
network
low complexity
librenms CWE-22
critical
9.8
2021-11-29 CVE-2021-43691 Path Traversal vulnerability in Tripexpress Project Tripexpress 1.1
tripexpress v1.1 is affected by a path manipulation vulnerability in file system/helpers/dompdf/load_font.php.
network
low complexity
tripexpress-project CWE-22
critical
9.8
2021-11-29 CVE-2021-32061 Path Traversal vulnerability in S3Scanner Project S3Scanner
S3Scanner before 2.0.2 allows Directory Traversal via a crafted bucket, as demonstrated by a <Key>../ substring in a ListBucketResult element.
network
low complexity
s3scanner-project CWE-22
5.3
2021-11-23 CVE-2021-37023 Path Traversal vulnerability in Huawei Harmonyos 2.0
There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause media files which can be reads and writes in non-distributed directories on any device on the network..
network
low complexity
huawei CWE-22
6.5
2021-11-22 CVE-2020-7882 Path Traversal vulnerability in Hancom Anysign4Pc 1.1.1.0/1.1.2.6/1.1.2.7
Using the parameter of getPFXFolderList function, attackers can see the information of authorization certification and delete the files.
network
low complexity
hancom CWE-22
critical
9.1
2021-11-22 CVE-2021-33491 Path Traversal vulnerability in Open-Xchange OX APP Suite 7.10.5
OX App Suite through 7.10.5 allows Directory Traversal via ../ in an OOXML or ODF ZIP archive, because of the mishandling of relative paths in mail addresses in conjunction with auto-configuration DNS records.
network
low complexity
open-xchange CWE-22
6.5