Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2024-08-13 CVE-2024-43135 Path Traversal vulnerability in Themewinter Wpcafe
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themewinter WPCafe allows PHP Local File Inclusion.This issue affects WPCafe: from n/a through 2.2.28.
network
low complexity
themewinter CWE-22
8.8
2024-08-13 CVE-2024-41938 Path Traversal vulnerability in Siemens Sinec NMS 1.0/1.0.3/2.0
A vulnerability has been identified in SINEC NMS (All versions < V3.0).
network
low complexity
siemens CWE-22
3.8
2024-08-12 CVE-2024-42474 Path Traversal vulnerability in Snowflake Streamlit
Streamlit is a data oriented application development framework for python.
network
low complexity
snowflake CWE-22
6.5
2024-08-12 CVE-2023-7249 Path Traversal vulnerability in Opentext Directory Services
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in OpenText OpenText Directory Services allows Path Traversal.This issue affects OpenText Directory Services: from 16.4.2 before 24.1.
network
low complexity
opentext CWE-22
critical
9.8
2024-08-12 CVE-2024-42485 Path Traversal vulnerability in Pxlrbt Filament Excel
Filament Excel enables excel export for Filament admin resources.
network
low complexity
pxlrbt CWE-22
7.5
2024-08-12 CVE-2024-33535 Path Traversal vulnerability in Zimbra Collaboration
An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0.
network
low complexity
zimbra CWE-22
7.5
2024-08-12 CVE-2024-0113 Path Traversal vulnerability in Nvidia products
NVIDIA Mellanox OS, ONYX, Skyway, and MetroX-3 XCC contain a vulnerability in the web support, where an attacker can cause a CGI path traversal by a specially crafted URI.
network
low complexity
nvidia CWE-22
8.8
2024-08-12 CVE-2024-21876 Path Traversal vulnerability in Enphase IQ Gateway Firmware
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability via a URL parameter in Enphase IQ Gateway (formerly known as Envoy) allows an unautheticated attacker to access or create arbitratry files.This issue affects Envoy: from 4.x to 8.x and < 8.2.4225.
network
low complexity
enphase CWE-22
critical
9.1
2024-08-12 CVE-2024-21877 Path Traversal vulnerability in Enphase IQ Gateway Firmware
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability through a url parameter in Enphase IQ Gateway (formerly known as Envoy) allows File Manipulation.
network
low complexity
enphase CWE-22
6.5
2024-08-12 CVE-2024-41936 Path Traversal vulnerability in Vonets products
A directory traversal vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to read arbitrary files and bypass authentication.
network
low complexity
vonets CWE-22
7.5