Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2024-08-20 CVE-2024-7777 Path Traversal vulnerability in Bitapps Contact Form Builder
The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder plugin for WordPress is vulnerable to arbitrary file read and deletion due to insufficient file path validation in multiple functions in versions 2.0 to 2.13.9.
network
low complexity
bitapps CWE-22
critical
9.0
2024-08-20 CVE-2024-7782 Path Traversal vulnerability in Bitapps Contact Form Builder
The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the iconRemove function in versions 2.0 to 2.13.4.
network
low complexity
bitapps CWE-22
6.5
2024-08-19 CVE-2024-7928 Path Traversal vulnerability in Fastadmin
A vulnerability, which was classified as problematic, has been found in FastAdmin up to 1.3.3.20220121.
network
low complexity
fastadmin CWE-22
7.5
2024-08-19 CVE-2024-7926 Path Traversal vulnerability in Zzcms 2023
A vulnerability classified as critical has been found in ZZCMS 2023.
network
low complexity
zzcms CWE-22
7.5
2024-08-19 CVE-2024-7927 Path Traversal vulnerability in Zzcms 2023
A vulnerability classified as critical was found in ZZCMS 2023.
network
low complexity
zzcms CWE-22
7.5
2024-08-19 CVE-2024-43248 Path Traversal vulnerability in Bitapps BIT Form
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Bit Apps Bit Form Pro allows File Manipulation.This issue affects Bit Form Pro: from n/a through 2.6.4.
network
low complexity
bitapps CWE-22
critical
9.1
2024-08-19 CVE-2024-7924 Path Traversal vulnerability in Zzcms 2023
A vulnerability was found in ZZCMS 2023.
network
low complexity
zzcms CWE-22
7.5
2024-08-19 CVE-2024-43399 Path Traversal vulnerability in Opensecurity Mobile Security Framework
Mobile Security Framework (MobSF) is a pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
network
low complexity
opensecurity CWE-22
critical
9.8
2024-08-16 CVE-2024-7145 Path Traversal vulnerability in Crocoblock Jetelements
The JetElements plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.6.20 via the 'progress_type' parameter.
network
low complexity
crocoblock CWE-22
8.8
2024-08-15 CVE-2024-43373 Path Traversal vulnerability in J4K0Xb Webcrack
webcrack is a tool for reverse engineering javascript.
local
low complexity
j4k0xb CWE-22
7.8