Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-05-20 | CVE-2020-21055 | Path Traversal vulnerability in Fusionpbx 4.5.7 A Directory Traversal vulnerability exists in FusionPBX 4.5.7 allows malicoius users to rename any file of the system.via the (1) folder, (2) filename, and (3) newfilename variables in app\edit\filerename.php. | 6.5 |
2021-05-20 | CVE-2020-21056 | Path Traversal vulnerability in Fusionpbx 4.5.7 Directory Traversal vulnerability exists in FusionPBX 4.5.7, which allows a remote malicious user to create folders via the folder variale to app\edit\foldernew.php. | 4.3 |
2021-05-20 | CVE-2020-21057 | Path Traversal vulnerability in Fusionpbx 4.5.7 Directory Traversal vulnerability in FusionPBX 4.5.7, which allows a remote malicious user to delete folders on the system via the folder variable to app/edit/folderdelete.php. | 8.1 |
2021-05-20 | CVE-2020-35580 | Path Traversal vulnerability in Searchblox A local file inclusion vulnerability in the FileServlet in all SearchBlox before 9.2.2 allows remote, unauthenticated users to read arbitrary files from the operating system via a /searchblox/servlet/FileServlet?col=url= request. | 7.5 |
2021-05-20 | CVE-2021-3426 | Path Traversal vulnerability in multiple products There's a flaw in Python 3's pydoc. | 5.7 |
2021-05-19 | CVE-2020-36364 | Path Traversal vulnerability in Smartstore Smartstorenet An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0. | 9.1 |
2021-05-18 | CVE-2020-18178 | Path Traversal vulnerability in Hongcms Project Hongcms 4.0.0 Path Traversal in HongCMS v4.0.0 allows remote attackers to view, edit, and delete arbitrary files via a crafted POST request to the component "/hcms/admin/index.php/language/ajax." | 9.8 |
2021-05-12 | CVE-2021-32572 | Path Traversal vulnerability in Specotech web Viewer Speco Web Viewer through 2021-05-12 allows Directory Traversal via GET request for a URI with /.. | 7.5 |
2021-05-10 | CVE-2020-23575 | Path Traversal vulnerability in Kyocera D-Copia253Mf Plus Firmware A directory traversal vulnerability exists in Kyocera Printer d-COPIA253MF plus. | 7.5 |
2021-05-06 | CVE-2021-28149 | Path Traversal vulnerability in Hongdian H8922 Firmware 3.0.5 Hongdian H8922 3.0.5 devices allow Directory Traversal. | 6.5 |