Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2021-07-19 CVE-2021-34820 Path Traversal vulnerability in AAT Novus Management System
Web Path Directory Traversal in the Novus HTTP Server.
network
low complexity
aat CWE-22
7.5
2021-07-16 CVE-2021-32769 Path Traversal vulnerability in Objectcomputing Micronaut
Micronaut is a JVM-based, full stack Java framework designed for building JVM applications.
network
low complexity
objectcomputing CWE-22
7.5
2021-07-15 CVE-2021-20511 Path Traversal vulnerability in IBM Security Verify Access 10.0.0
IBM Security Verify Access Docker 10.0.0 could allow a remote attacker to traverse directories on the system.
network
low complexity
ibm CWE-22
4.9
2021-07-15 CVE-2021-21586 Path Traversal vulnerability in Dell Wyse Management Suite
Wyse Management Suite versions 3.2 and earlier contain an absolute path traversal vulnerability.
network
low complexity
dell CWE-22
6.5
2021-07-14 CVE-2021-22867 Path Traversal vulnerability in Github Enterprise Server
A path traversal vulnerability was identified in GitHub Enterprise Server that could be exploited when building a GitHub Pages site.
network
low complexity
github CWE-22
6.5
2021-07-14 CVE-2021-23407 Path Traversal vulnerability in Elfinder.Net.Core Project Elfinder.Net.Core
This affects the package elFinder.Net.Core from 0 and before 1.2.4.
network
low complexity
elfinder-net-core-project CWE-22
7.5
2021-07-14 CVE-2021-33211 Path Traversal vulnerability in Element-It Http Commander 5.3.3
A Directory Traversal vulnerability in the Unzip feature in Elements-IT HTTP Commander 5.3.3 allows remote authenticated users to write files to arbitrary directories via relative paths in ZIP archives.
network
low complexity
element-it CWE-22
6.5
2021-07-13 CVE-2021-22440 Path Traversal vulnerability in Huawei products
There is a path traversal vulnerability in some Huawei products.
low complexity
huawei CWE-22
4.6
2021-07-12 CVE-2021-32746 Path Traversal vulnerability in Icinga
Icinga Web 2 is an open source monitoring web interface, framework and command-line interface.
network
high complexity
icinga CWE-22
5.3
2021-07-12 CVE-2021-33807 Path Traversal vulnerability in Gespage
Cartadis Gespage through 8.2.1 allows Directory Traversal in gespage/doDownloadData and gespage/webapp/doDownloadData.
network
low complexity
gespage CWE-22
7.5