Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-01-06 | CVE-2020-5512 | Path Traversal vulnerability in Gilacms Gila CMS 1.11.8 Gila CMS 1.11.8 allows /admin/media?path=../ Path Traversal. | 6.8 |
2020-01-06 | CVE-2020-5840 | Path Traversal vulnerability in Hashbrowncms Hashbrown CMS An issue was discovered in HashBrown CMS before 1.3.2. | 7.5 |
2020-01-06 | CVE-2019-15982 | Path Traversal vulnerability in Cisco Data Center Network Manager Multiple vulnerabilities in the REST and SOAP API endpoints and the Application Framework feature of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to conduct directory traversal attacks on an affected device. | 7.2 |
2020-01-06 | CVE-2019-15981 | Path Traversal vulnerability in Cisco Data Center Network Manager Multiple vulnerabilities in the REST and SOAP API endpoints and the Application Framework feature of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to conduct directory traversal attacks on an affected device. | 7.2 |
2020-01-06 | CVE-2019-15980 | Path Traversal vulnerability in Cisco Data Center Network Manager Multiple vulnerabilities in the REST and SOAP API endpoints and the Application Framework feature of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to conduct directory traversal attacks on an affected device. | 7.2 |
2020-01-06 | CVE-2019-20354 | Path Traversal vulnerability in Pisignage The web application component of piSignage before 2.6.4 allows a remote attacker (authenticated as a low-privilege user) to download arbitrary files from the Raspberry Pi via api/settings/log?file=../ path traversal. | 4.3 |
2020-01-05 | CVE-2019-19628 | Path Traversal vulnerability in Gitlab In GitLab EE 11.3 through 12.5.3, 12.4.5, and 12.3.8, insufficient parameter sanitization for the Maven package registry could lead to privilege escalation and remote code execution vulnerabilities under certain conditions. | 9.8 |
2020-01-03 | CVE-2019-11994 | Path Traversal vulnerability in HP products A security vulnerability has been identified in HPE SimpliVity 380 Gen 9, HPE SimpliVity 380 Gen 10, HPE SimpliVity 380 Gen 10 G, HPE SimpliVity 2600 Gen 10, SimpliVity OmniCube, SimpliVity OmniStack for Cisco, SimpliVity OmniStack for Lenovo and SimpliVity OmniStack for Dell nodes. | 9.8 |
2020-01-03 | CVE-2019-19088 | Path Traversal vulnerability in Gitlab Gitlab Enterprise Edition (EE) 11.3 through 12.4.2 allows Directory Traversal. | 9.8 |
2019-12-31 | CVE-2019-7751 | Path Traversal vulnerability in Ricoh Fusionpro VDP A directory traversal and local file inclusion vulnerability in FPProducerInternetServer.exe in Ricoh MarcomCentral, formerly PTI Marketing, FusionPro VDP before 10.0 allows a remote attacker to list or enumerate sensitive contents of files. | 7.5 |