Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2019-11-14 CVE-2019-3662 Path Traversal vulnerability in Mcafee Advanced Threat Defense
Path Traversal: '/absolute/pathname/here' vulnerability in McAfee Advanced Threat Defense (ATD) prior to 4.8 allows remote authenticated attacker to gain unintended access to files on the system via carefully constructed HTTP requests.
network
low complexity
mcafee CWE-22
6.5
2019-11-13 CVE-2019-18951 Path Traversal vulnerability in Sibsoft Xfilesharing 2.5.1
SibSoft Xfilesharing through 2.5.1 allows op=page&tmpl=../ directory traversal to read arbitrary files.
network
low complexity
sibsoft CWE-22
7.5
2019-11-13 CVE-2013-4657 Path Traversal vulnerability in Netgear Wnr3500L Firmware and Wnr3500U Firmware
Symlink Traversal vulnerability in NETGEAR WNR3500U and WNR3500L due to misconfiguration in the SMB service.
network
low complexity
netgear CWE-22
critical
9.8
2019-11-13 CVE-2013-4654 Path Traversal vulnerability in Tp-Link Tl-1043Nd Firmware and Tl-Wdr4300 Firmware
Symlink Traversal vulnerability in TP-LINK TL-WDR4300 and TL-1043ND..
network
low complexity
tp-link CWE-22
critical
9.8
2019-11-13 CVE-2013-4656 Path Traversal vulnerability in Asus Rt-Ac66U Firmware and Rt-N56U Firmware
Symlink Traversal vulnerability in ASUS RT-AC66U and RT-N56U due to misconfiguration in the SMB service.
network
low complexity
asus CWE-22
critical
9.8
2019-11-12 CVE-2019-18924 Path Traversal vulnerability in Systematic Iris Webforms 5.4
Systematic IRIS WebForms 5.4 is vulnerable to directory traversal.
network
low complexity
systematic CWE-22
5.3
2019-11-08 CVE-2019-17327 Path Traversal vulnerability in Tmaxsoft Jeus 7/8
JEUS 7 Fix#0~5 and JEUS 8Fix#0~1 versions contains a directory traversal vulnerability caused by improper input parameter check when uploading installation file in administration web page.
network
low complexity
tmaxsoft CWE-22
7.2
2019-11-07 CVE-2019-16876 Path Traversal vulnerability in Portainer
Portainer before 1.22.1 allows Directory Traversal.
network
low complexity
portainer CWE-22
7.5
2019-11-07 CVE-2019-15004 Path Traversal vulnerability in Atlassian Jira Service Desk
The Customer Context Filter in Atlassian Jira Service Desk Server and Jira Service Desk Data Center before 3.9.17, from 3.10.0 before 3.16.10, from 4.0.0 before 4.2.6, from 4.3.0 before 4.3.5, from 4.4.0 before 4.4.3, and from 4.5.0 before 4.5.1 allows remote attackers with portal access to view arbitrary issues in Jira Service Desk projects via a path traversal vulnerability.
network
low complexity
atlassian CWE-22
7.5
2019-11-07 CVE-2019-15003 Path Traversal vulnerability in Atlassian Jira Service Desk
The Customer Context Filter in Atlassian Jira Service Desk Server and Jira Service Desk Data Center before 3.9.17, from 3.10.0 before 3.16.10, from 4.0.0 before 4.2.6, from 4.3.0 before 4.3.5, from 4.4.0 before 4.4.3, and from 4.5.0 before 4.5.1 allows remote attackers with portal access to view arbitrary issues in Jira Service Desk projects via authorization bypass.
network
low complexity
atlassian CWE-22
5.3