Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2019-09-21 CVE-2019-16679 Path Traversal vulnerability in Gilacms Gila CMS
Gila CMS before 1.11.1 allows admin/fm/?f=../ directory traversal, leading to Local File Inclusion.
network
low complexity
gilacms CWE-22
4.9
2019-09-20 CVE-2015-9406 Path Traversal vulnerability in Mtheme-Unus Project Mtheme-Unus
Directory traversal vulnerability in the mTheme-Unus theme before 2.3 for WordPress allows an attacker to read arbitrary files via a ..
network
low complexity
mtheme-unus-project CWE-22
7.5
2019-09-20 CVE-2014-10397 Path Traversal vulnerability in Para Antioch 20140907
The Antioch theme through 2014-09-07 for WordPress allows arbitrary file downloads via the file parameter to lib/scripts/download.php.
network
low complexity
para CWE-22
7.5
2019-09-20 CVE-2014-10396 Path Traversal vulnerability in Organizedthemes Epic
The epic theme through 2014-09-07 for WordPress allows arbitrary file downloads via the file parameter to includes/download.php.
network
low complexity
organizedthemes CWE-22
7.5
2019-09-20 CVE-2019-11327 Path Traversal vulnerability in Topcon Net-G5 Firmware 5.2.2
An issue was discovered on Topcon Positioning Net-G5 GNSS Receiver devices with firmware 5.2.2.
network
low complexity
topcon CWE-22
4.9
2019-09-20 CVE-2019-14914 Path Traversal vulnerability in Prise Adas 1.7.0
An issue was discovered in PRiSE adAS 1.7.0.
network
low complexity
prise CWE-22
critical
9.1
2019-09-19 CVE-2019-16511 Path Traversal vulnerability in Firegiant WIX Toolset
An issue was discovered in DTF in FireGiant WiX Toolset before 3.11.2.
local
low complexity
firegiant CWE-22
5.5
2019-09-19 CVE-2019-14994 Path Traversal vulnerability in Atlassian Jira Service Desk
The Customer Context Filter in Atlassian Jira Service Desk Server and Jira Service Desk Data Center before version 3.9.16, from version 3.10.0 before version 3.16.8, from version 4.0.0 before version 4.1.3, from version 4.2.0 before version 4.2.5, from version 4.3.0 before version 4.3.4, and version 4.4.0 allows remote attackers with portal access to view arbitrary issues in Jira Service Desk projects via a path traversal vulnerability.
network
low complexity
atlassian CWE-22
7.5
2019-09-18 CVE-2018-1847 Path Traversal vulnerability in IBM Financial Transaction Manager for Multiplatform
IBM Financial Transaction Manager (FTM) for Multi-Platform (MP) v2.0.0.0 through 2.0.0.5, v2.1.0.0 through 2.1.0.4, v2.1.1.0 through 2.1.1.4, and v3.0.0.0 through 3.0.0.8 could allow a remote attacker to traverse directories on the system.
network
low complexity
ibm CWE-22
6.5
2019-09-17 CVE-2019-4442 Path Traversal vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9,0 could allow a remote attacker to traverse directories on the file system.
network
low complexity
ibm CWE-22
4.3