Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2019-05-15 CVE-2019-1717 Path Traversal vulnerability in Cisco Video Surveillance Manager 7.21
A vulnerability in the web-based management interface of Cisco Video Surveillance Manager could allow an unauthenticated, remote attacker to access sensitive information.
network
low complexity
cisco CWE-22
7.5
2019-05-14 CVE-2019-11397 Path Traversal vulnerability in multiple products
GetFile.aspx in Rapid4 RapidFlows Enterprise Application Builder 4.5M.23 (when used with .NET Framework 4.5) allows Local File Inclusion via the FileDesc parameter.
network
low complexity
rapidflows microsoft CWE-22
6.5
2019-05-14 CVE-2018-6885 Path Traversal vulnerability in Microstrategy web Services
An issue was discovered in MicroStrategy Web Services (the Microsoft Office plugin) before 10.4 Hotfix 7, and before 10.11.
network
low complexity
microstrategy CWE-22
critical
9.8
2019-05-13 CVE-2019-9618 Path Traversal vulnerability in Gracemedia Media Player Project Gracemedia Media Player 1.0
The GraceMedia Media Player plugin 1.0 for WordPress allows Local File Inclusion via the "cfg" parameter.
network
low complexity
gracemedia-media-player-project CWE-22
critical
9.8
2019-05-13 CVE-2019-8952 Path Traversal vulnerability in Bosch products
A Path Traversal vulnerability located in the webserver affects several Bosch hardware and software products.
network
low complexity
bosch CWE-22
6.5
2019-05-13 CVE-2019-9726 Path Traversal vulnerability in Eq-3 Ccu3 Firmware
Directory Traversal / Arbitrary File Read in eQ-3 AG Homematic CCU3 3.43.15 and earlier allows remote attackers to read arbitrary files of the device's filesystem.
network
low complexity
eq-3 CWE-22
7.5
2019-05-13 CVE-2015-9287 Path Traversal vulnerability in CAM the University of Cambridge web Authentication System Apache Authentication Agent
Directory Traversal was discovered in University of Cambridge mod_ucam_webauth before 2.0.2.
network
low complexity
cam CWE-22
critical
9.8
2019-05-13 CVE-2012-6652 Path Traversal vulnerability in Page Flip Book Project Page Flip Book
Directory traversal vulnerability in pageflipbook.php script from index.php in Page Flip Book plugin for WordPress (wppageflip) allows remote attackers to include and execute arbitrary local files via a ..
network
low complexity
page-flip-book-project CWE-22
critical
9.8
2019-05-13 CVE-2018-12298 Path Traversal vulnerability in Seagate NAS OS 4.3.15.1
Directory Traversal in filebrowser in Seagate NAS OS 4.3.15.1 allows attackers to read files within the application's container via a URL path.
network
low complexity
seagate CWE-22
7.5
2019-05-10 CVE-2019-11082 Path Traversal vulnerability in Dkpro-Core Project Dkpro-Core
core/api/datasets/internal/actions/Explode.java in the Dataset API in DKPro Core through 1.10.0 allows Directory Traversal, resulting in the overwrite of local files with the contents of an archive.
network
low complexity
dkpro-core-project CWE-22
7.5