Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2021-11-22 CVE-2021-38146 Path Traversal vulnerability in Wipro Holmes 20.4.1
The File Download API in Wipro Holmes Orchestrator 20.4.1 (20.4.1_02_11_2020) allows remote attackers to read arbitrary files via absolute path traversal in the SearchString JSON field in /home/download POST data.
network
low complexity
wipro CWE-22
7.5
2021-11-19 CVE-2021-43555 Path Traversal vulnerability in Myscada Mydesigner
mySCADA myDESIGNER Versions 8.20.0 and prior fails to properly validate contents of an imported project file, which may make the product vulnerable to a path traversal payload.
local
low complexity
myscada CWE-22
7.8
2021-11-19 CVE-2021-22028 Path Traversal vulnerability in Greenplum
In versions of Greenplum database prior to 5.28.6 and 6.14.0, greenplum database contains a file path traversal vulnerability leading to information disclosure from the file system.
network
low complexity
greenplum CWE-22
critical
9.1
2021-11-18 CVE-2021-37938 Path Traversal vulnerability in Elastic Kibana
It was discovered that on Windows operating systems specifically, Kibana was not validating a user supplied path, which would load .pbf files.
network
low complexity
elastic CWE-22
4.3
2021-11-17 CVE-2021-41277 Path Traversal vulnerability in Metabase
Metabase is an open source data analytics platform.
network
low complexity
metabase CWE-22
7.5
2021-11-15 CVE-2021-41950 Path Traversal vulnerability in Montala Resourcespace 9.6
A directory traversal issue in ResourceSpace 9.6 before 9.6 rev 18277 allows remote unauthenticated attackers to delete arbitrary files on the ResourceSpace server via the provider and variant parameters in pages/ajax/tiles.php.
network
low complexity
montala CWE-22
critical
9.1
2021-11-15 CVE-2021-43495 Path Traversal vulnerability in Alquistai Alquist 20170613
AlquistManager branch as of commit 280d99f43b11378212652e75f6f3159cde9c1d36 is affected by a directory traversal vulnerability in alquist/IO/input.py.
network
low complexity
alquistai CWE-22
7.5
2021-11-12 CVE-2021-43492 Path Traversal vulnerability in Alquistai Alquist 20170613
AlquistManager branch as of commit 280d99f43b11378212652e75f6f3159cde9c1d36 is affected by a directory traversal vulnerability.
network
low complexity
alquistai CWE-22
7.5
2021-11-12 CVE-2021-43493 Path Traversal vulnerability in Servermanagement Project Servermanagement 20191113
ServerManagement master branch as of commit 49491cc6f94980e6be7791d17be947c27071eb56 is affected by a directory traversal vulnerability.
network
low complexity
servermanagement-project CWE-22
7.5
2021-11-12 CVE-2021-43494 Path Traversal vulnerability in Codingforentrepreneurs Opencv Rest API 20200124
OpenCV-REST-API master branch as of commit 69be158c05d4dd5a4aff38fdc680a162dd6b9e49 is affected by a directory traversal vulnerability.
network
low complexity
codingforentrepreneurs CWE-22
7.5