Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2021-08-03 CVE-2021-32814 Path Traversal vulnerability in Skytable
Skytable is a NoSQL database with automated snapshots and TLS.
network
low complexity
skytable CWE-22
8.1
2021-08-03 CVE-2021-36156 Path Traversal vulnerability in Grafana Loki
An issue was discovered in Grafana Loki through 2.2.1.
network
low complexity
grafana CWE-22
5.3
2021-08-03 CVE-2021-36157 Path Traversal vulnerability in Linuxfoundation Cortex
An issue was discovered in Grafana Cortex through 1.9.0.
network
low complexity
linuxfoundation CWE-22
5.3
2021-07-31 CVE-2020-26806 Path Traversal vulnerability in Objectplanet Opinio
admin/file.do in ObjectPlanet Opinio before 7.15 allows Unrestricted File Upload of executable JSP files, resulting in remote code execution, because filePath can have directory traversal and fileContent can be valid JSP code.
network
low complexity
objectplanet CWE-22
8.8
2021-07-30 CVE-2021-28966 Path Traversal vulnerability in Ruby-Lang Ruby
In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with TmpDir.
network
low complexity
ruby-lang CWE-22
7.5
2021-07-30 CVE-2021-30483 Path Traversal vulnerability in Isomorphic-Git
isomorphic-git before 1.8.2 allows Directory Traversal via a crafted repository.
network
low complexity
isomorphic-git CWE-22
5.3
2021-07-28 CVE-2021-23415 Path Traversal vulnerability in Elfinder.Aspnet Project Elfinder.Aspnet
This affects the package elFinder.AspNet before 1.1.1.
network
low complexity
elfinder-aspnet-project CWE-22
7.5
2021-07-25 CVE-2021-37439 Path Traversal vulnerability in NCH Flexiserver 6.00
NCH FlexiServer v6.00 suffers from a syslog?file=/..
network
low complexity
nch CWE-22
6.5
2021-07-25 CVE-2021-37440 Path Traversal vulnerability in NCH Axon PBX 2.02
NCH Axon PBX v2.22 and earlier allows path traversal for file disclosure via the logprop?file=/..
network
low complexity
nch CWE-22
6.5
2021-07-25 CVE-2021-37441 Path Traversal vulnerability in NCH Axon PBX 2.02
NCH Axon PBX v2.22 and earlier allows path traversal for file deletion via the logdelete?file=/..
network
low complexity
nch CWE-22
8.8