Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2021-07-25 CVE-2021-37446 Path Traversal vulnerability in Nchsoftware Quorum
In NCH Quorum v2.03 and earlier, an authenticated user can use directory traversal via documentprop?file=/..
network
low complexity
nchsoftware CWE-22
4.3
2021-07-25 CVE-2021-37447 Path Traversal vulnerability in Nchsoftware Quorum
In NCH Quorum v2.03 and earlier, an authenticated user can use directory traversal via documentdelete?file=/..
network
low complexity
nchsoftware CWE-22
8.1
2021-07-25 CVE-2021-37469 Path Traversal vulnerability in NCH Webdictate
In NCH WebDictate v2.13 and earlier, authenticated users can abuse logprop?file=/..
network
low complexity
nch CWE-22
6.5
2021-07-22 CVE-2020-5370 Path Traversal vulnerability in Dell EMC Openmanage Enterprise
Dell EMC OpenManage Enterprise (OME) versions prior to 3.4 contain an arbitrary file overwrite vulnerability.
network
low complexity
dell CWE-22
6.8
2021-07-22 CVE-2021-1617 Path Traversal vulnerability in Cisco Intersight Virtual Appliance 1.0.9148/1.0.9150/1.0.9230
Multiple vulnerabilities in the web-based management interface of Cisco Intersight Virtual Appliance could allow an authenticated, remote attacker to conduct a path traversal or command injection attack on an affected system.
network
low complexity
cisco CWE-22
6.5
2021-07-22 CVE-2021-35521 Path Traversal vulnerability in Idemia products
A path traversal in Thrift command handlers in IDEMIA Morpho Wave Compact and VisionPass devices before 2.6.2 allows remote authenticated attackers to achieve denial of services and information disclosure via TCP/IP packets.
network
high complexity
idemia CWE-22
5.9
2021-07-20 CVE-2021-35054 Path Traversal vulnerability in Minecraft
Minecraft before 1.17.1, when online-mode=false is configured, allows path traversal for deletion of arbitrary JSON files.
network
low complexity
minecraft CWE-22
7.5
2021-07-19 CVE-2021-34820 Path Traversal vulnerability in AAT Novus Management System
Web Path Directory Traversal in the Novus HTTP Server.
network
low complexity
aat CWE-22
7.5
2021-07-16 CVE-2021-32769 Path Traversal vulnerability in Objectcomputing Micronaut
Micronaut is a JVM-based, full stack Java framework designed for building JVM applications.
network
low complexity
objectcomputing CWE-22
7.5
2021-07-15 CVE-2021-20511 Path Traversal vulnerability in IBM Security Verify Access 10.0.0
IBM Security Verify Access Docker 10.0.0 could allow a remote attacker to traverse directories on the system.
network
low complexity
ibm CWE-22
4.9