Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2019-10-13 CVE-2019-17537 Path Traversal vulnerability in Jnoj Jiangnan Online Judge 0.8.0
Jiangnan Online Judge (aka jnoj) 0.8.0 has Directory Traversal for file deletion via the web/polygon/problem/deletefile?id=1&name=../ substring.
network
low complexity
jnoj CWE-22
7.5
2019-10-11 CVE-2010-5335 Path Traversal vulnerability in Icewarp Webclient 10.0/10.1.3/10.2.0
IceWarp Webclient before 10.2.1 has a directory traversal vulnerability.
network
low complexity
icewarp CWE-22
7.5
2019-10-11 CVE-2010-5334 Path Traversal vulnerability in Icewarp Webclient 10.0/10.1.3/10.2.0
IceWarp Webclient before 10.2.1 has a directory traversal vulnerability.
network
low complexity
icewarp CWE-22
7.5
2019-10-10 CVE-2015-9480 Path Traversal vulnerability in Robot-Cpa Robotcpa 5
The RobotCPA plugin 5 for WordPress has directory traversal via the f.php l parameter.
network
low complexity
robot-cpa CWE-22
7.5
2019-10-10 CVE-2015-9473 Path Traversal vulnerability in Estrutura-Basica Project Estrutura-Basica 20150913
The estrutura-basica theme through 2015-09-13 for WordPress has directory traversal via the scripts/download.php arquivo parameter.
network
low complexity
estrutura-basica-project CWE-22
7.5
2019-10-10 CVE-2015-9470 Path Traversal vulnerability in Ionadas History Collection 1.0.1/1.0.2/1.1.1
The history-collection plugin through 1.1.1 for WordPress has directory traversal via the download.php var parameter.
network
low complexity
ionadas CWE-22
7.5
2019-10-10 CVE-2015-9463 Path Traversal vulnerability in S3Bubble S3Bubble-Amazon-S3-Audio-Streaming 2.0
The s3bubble-amazon-s3-audio-streaming plugin 2.0 for WordPress has directory traversal via the adverts/assets/plugins/ultimate/content/downloader.php path parameter.
network
low complexity
s3bubble CWE-22
7.5
2019-10-10 CVE-2015-9464 Path Traversal vulnerability in S3Bubble S3Bubble-Amazon-S3-Html-5-Video-With-Adverts 0.7
The s3bubble-amazon-s3-html-5-video-with-adverts plugin 0.7 for WordPress has directory traversal via the adverts/assets/plugins/ultimate/content/downloader.php path parameter.
network
low complexity
s3bubble CWE-22
7.5
2019-10-09 CVE-2019-17109 Path Traversal vulnerability in Koji Project Koji
Koji through 1.18.0 allows remote Directory Traversal, with resultant Privilege Escalation.
network
low complexity
koji-project CWE-22
6.5
2019-10-09 CVE-2019-0074 Path Traversal vulnerability in Juniper Junos
A path traversal vulnerability in NFX150 Series and QFX10K Series, EX9200 Series, MX Series and PTX Series devices with Next-Generation Routing Engine (NG-RE) allows a local authenticated user to read sensitive system files.
local
low complexity
juniper CWE-22
5.5