Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2020-07-23 CVE-2020-15492 Path Traversal vulnerability in Inneo Startup Tools 12.0.66.3784/13.0.70.3804
An issue was discovered in INNEO Startup TOOLS 2017 M021 12.0.66.3784 through 2018 M040 13.0.70.3804.
network
low complexity
inneo CWE-22
critical
9.8
2020-07-23 CVE-2020-15908 Path Traversal vulnerability in Cauldrondevelopment C!
tar/TarFileReader.cpp in Cauldron cbang (aka C-Bang or C!) before 1.6.0 allows Directory Traversal during extraction from a TAR archive.
network
low complexity
cauldrondevelopment CWE-22
7.5
2020-07-22 CVE-2020-9663 Path Traversal vulnerability in Adobe Reader
Adobe Reader Mobile versions 20.0.1 and earlier have a directory traversal vulnerability.
network
low complexity
adobe CWE-22
5.3
2020-07-22 CVE-2020-3452 Path Traversal vulnerability in Cisco Adaptive Security Appliance Software
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct directory traversal attacks and read sensitive files on a targeted system.
network
low complexity
cisco CWE-22
7.5
2020-07-22 CVE-2020-15124 Path Traversal vulnerability in Intranda Goobi Viewer Core
In Goobi Viewer Core before version 4.8.3, a path traversal vulnerability allows for remote attackers to access files on the server via the application.
network
low complexity
intranda CWE-22
6.5
2020-07-21 CVE-2016-7063 Path Traversal vulnerability in Pritunl Pritunl-Client
A flaw was found in pritunl-client before version 1.0.1116.6.
network
low complexity
pritunl CWE-22
critical
9.8
2020-07-21 CVE-2020-12499 Path Traversal vulnerability in Phoenixcontact Plcnext Engineer 202031
In PHOENIX CONTACT PLCnext Engineer version 2020.3.1 and earlier an improper path sanitation vulnerability exists on import of project files.
local
low complexity
phoenixcontact CWE-22
7.3
2020-07-20 CVE-2020-8214 Path Traversal vulnerability in Servey Project Servey 2.2.0
A path traversal vulnerability in servey version < 3 allows an attacker to read content of any arbitrary file.
network
low complexity
servey-project CWE-22
7.5
2020-07-17 CVE-2020-9252 Path Traversal vulnerability in Huawei products
HUAWEI Mate 20 versions earlier than 10.1.0.160(C00E160R3P8), HUAWEI Mate 20 X versions earlier than 10.1.0.135(C00E135R2P8), HUAWEI Mate 20 RS versions earlier than 10.1.0.160(C786E160R3P8), and Honor Magic2 smartphones versions earlier than 10.1.0.160(C00E160R2P11) have a path traversal vulnerability.
local
low complexity
huawei CWE-22
2.3
2020-07-17 CVE-2020-7684 Path Traversal vulnerability in Rollup-Plugin-Serve Project Rollup-Plugin-Serve
This affects all versions of package rollup-plugin-serve.
network
low complexity
rollup-plugin-serve-project CWE-22
critical
9.8