Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2019-10-16 CVE-2019-15266 Path Traversal vulnerability in Cisco Wireless LAN Controller Software
A vulnerability in the CLI of Cisco Wireless LAN Controller (WLC) Software could allow an authenticated, local attacker to view system files that should be restricted.
local
low complexity
cisco CWE-22
4.4
2019-10-16 CVE-2019-12704 Path Traversal vulnerability in Cisco Spa112 Firmware and Spa122 Firmware
A vulnerability in the web-based management interface of Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote attacker to view the contents of arbitrary files on an affected device.
network
low complexity
cisco CWE-22
6.5
2019-10-14 CVE-2019-16279 Path Traversal vulnerability in Nazgul Nostromo Nhttpd
A memory error in the function SSL_accept in nostromo nhttpd through 1.9.6 allows an attacker to trigger a denial of service via a crafted HTTP request.
network
low complexity
nazgul CWE-22
7.5
2019-10-14 CVE-2019-16278 Path Traversal vulnerability in Nazgul Nostromo Nhttpd
Directory Traversal in the function http_verify in nostromo nhttpd through 1.9.6 allows an attacker to achieve remote code execution via a crafted HTTP request.
network
low complexity
nazgul CWE-22
critical
9.8
2019-10-13 CVE-2019-17538 Path Traversal vulnerability in Jnoj Jiangnan Online Judge 0.8.0
Jiangnan Online Judge (aka jnoj) 0.8.0 has Directory Traversal for file reading via the web/polygon/problem/viewfile?id=1&name=../ substring.
network
low complexity
jnoj CWE-22
7.5
2019-10-13 CVE-2019-17537 Path Traversal vulnerability in Jnoj Jiangnan Online Judge 0.8.0
Jiangnan Online Judge (aka jnoj) 0.8.0 has Directory Traversal for file deletion via the web/polygon/problem/deletefile?id=1&name=../ substring.
network
low complexity
jnoj CWE-22
7.5
2019-10-11 CVE-2010-5335 Path Traversal vulnerability in Icewarp Webclient 10.0/10.1.3/10.2.0
IceWarp Webclient before 10.2.1 has a directory traversal vulnerability.
network
low complexity
icewarp CWE-22
7.5
2019-10-11 CVE-2010-5334 Path Traversal vulnerability in Icewarp Webclient 10.0/10.1.3/10.2.0
IceWarp Webclient before 10.2.1 has a directory traversal vulnerability.
network
low complexity
icewarp CWE-22
7.5
2019-10-10 CVE-2015-9480 Path Traversal vulnerability in Robot-Cpa Robotcpa 5
The RobotCPA plugin 5 for WordPress has directory traversal via the f.php l parameter.
network
low complexity
robot-cpa CWE-22
7.5
2019-10-10 CVE-2015-9473 Path Traversal vulnerability in Estrutura-Basica Project Estrutura-Basica 20150913
The estrutura-basica theme through 2015-09-13 for WordPress has directory traversal via the scripts/download.php arquivo parameter.
network
low complexity
estrutura-basica-project CWE-22
7.5