Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2019-05-23 CVE-2019-12309 Path Traversal vulnerability in Dotcms
dotCMS before 5.1.0 has a path traversal vulnerability exploitable by an administrator to create files.
network
low complexity
dotcms CWE-22
4.9
2019-05-23 CVE-2019-7106 Path Traversal vulnerability in Adobe XD 16.0
Adobe XD versions 16.0 and earlier have a path traversal vulnerability.
network
low complexity
adobe CWE-22
critical
9.8
2019-05-23 CVE-2019-7105 Path Traversal vulnerability in Adobe XD 16.0
Adobe XD versions 16.0 and earlier have a path traversal vulnerability.
network
low complexity
adobe CWE-22
critical
9.8
2019-05-22 CVE-2019-11231 Path Traversal vulnerability in Get-Simple Getsimple CMS
An issue was discovered in GetSimple CMS through 3.3.15.
network
low complexity
get-simple CWE-22
critical
9.8
2019-05-22 CVE-2019-12277 Path Traversal vulnerability in Blogifier 2.3
Blogifier 2.3 before 2019-05-11 does not properly restrict APIs, as demonstrated by missing checks for ..
network
low complexity
blogifier CWE-22
critical
9.8
2019-05-18 CVE-2019-12173 Path Traversal vulnerability in Macdown Project Macdown 0.7.1
MacDown 0.7.1 (870) allows remote code execution via a file:\\\ URI, with a .app pathname, in the HREF attribute of an A element.
network
low complexity
macdown-project CWE-22
8.8
2019-05-17 CVE-2019-12172 Path Traversal vulnerability in Typora 0.9.9.21.1
Typora 0.9.9.21.1 (1913) allows arbitrary code execution via a modified file: URL syntax in the HREF attribute of an AREA element, as demonstrated by file:\\\ on macOS or Linux, or file://C| on Windows.
local
low complexity
typora CWE-22
7.8
2019-05-17 CVE-2019-5936 Path Traversal vulnerability in Cybozu Garoon
Directory traversal vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated attackers to obtain files without access privileges via the application 'Work Flow'.
network
low complexity
cybozu CWE-22
5.4
2019-05-17 CVE-2018-17180 Path Traversal vulnerability in Open-Emr Openemr
An issue was discovered in OpenEMR before 5.0.1 Patch 7.
network
low complexity
open-emr CWE-22
5.3
2019-05-17 CVE-2019-8925 Path Traversal vulnerability in Zohocorp Manageengine Netflow Analyzer 7.0.0.2
An issue was discovered in Zoho ManageEngine Netflow Analyzer Professional 7.0.0.2.
network
low complexity
zohocorp CWE-22
4.3