Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2024-09-18 CVE-2024-46986 Path Traversal vulnerability in Tuzitio Camaleon CMS
Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails.
network
low complexity
tuzitio CWE-22
critical
9.9
2024-09-18 CVE-2024-46987 Path Traversal vulnerability in Tuzitio Camaleon CMS 2.8.0
Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails.
network
low complexity
tuzitio CWE-22
7.7
2024-09-17 CVE-2024-45816 Path Traversal vulnerability in Linuxfoundation Backstage
Backstage is an open framework for building developer portals.
network
low complexity
linuxfoundation CWE-22
6.5
2024-09-17 CVE-2024-45604 Path Traversal vulnerability in Contao
Contao is an Open Source CMS.
network
low complexity
contao CWE-22
4.3
2024-09-17 CVE-2021-27916 Path Traversal vulnerability in Acquia Mautic
Prior to the patched version, logged in users of Mautic are vulnerable to Relative Path Traversal/Arbitrary File Deletion.
network
low complexity
acquia CWE-22
8.1
2024-09-17 CVE-2024-44190 Path Traversal vulnerability in Apple Macos
A path handling issue was addressed with improved validation.
local
low complexity
apple CWE-22
5.5
2024-09-16 CVE-2024-8752 Path Traversal vulnerability in Smart-Hmi Webiq 2.15.9
The Windows version of WebIQ 2.15.9 is affected by a directory traversal vulnerability that allows remote attackers to read any file on the system.
network
low complexity
smart-hmi CWE-22
7.5
2024-09-16 CVE-2024-8778 Path Traversal vulnerability in Syscomgo Omflow
OMFLOW from The SYSCOM Group does not properly validate user input of the download functionality, allowing remote attackers with regular privileges to read arbitrary system files.
network
low complexity
syscomgo CWE-22
6.5
2024-09-15 CVE-2024-8875 Path Traversal vulnerability in Wcms
A vulnerability classified as critical was found in vedees wcms up to 0.3.2.
network
low complexity
wcms CWE-22
critical
9.1
2024-09-15 CVE-2024-8876 Path Traversal vulnerability in Xiaohe4966 Tpmecms
A vulnerability, which was classified as problematic, has been found in xiaohe4966 TpMeCMS up to 1.3.3.1.
network
low complexity
xiaohe4966 CWE-22
7.5