Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2024-02-16 CVE-2023-49508 Directory Traversal vulnerability in YetiForceCompany YetiForceCRM versions 6.4.0 and before allows a remote authenticated attacker to obtain sensitive information via the license parameter in the LibraryLicense.php component.
network
low complexity
CWE-22
6.5
2024-02-15 CVE-2024-23477 Path Traversal vulnerability in Solarwinds Access Rights Manager
The SolarWinds Access Rights Manager (ARM) was found to be susceptible to a Directory Traversal Remote Code Execution Vulnerability.
low complexity
solarwinds CWE-22
critical
9.6
2024-02-14 CVE-2023-35003 Path Traversal vulnerability in Intel Virtual Raid on CPU 8.0.0.4035
Path transversal in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-22
7.8
2024-02-14 CVE-2024-23787 Path Traversal vulnerability in Sharp Jh-Rv11 Firmware and Jh-Rvb1 Firmware
Path traversal vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to obtain an arbitrary file in the affected product.
low complexity
sharp CWE-22
6.5
2024-02-14 CVE-2024-25125 Path Traversal vulnerability in Treasuredata Digdag
Digdag is an open source tool that to build, run, schedule, and monitor complex pipelines of tasks across various platforms.
network
low complexity
treasuredata CWE-22
5.3
2024-02-14 CVE-2024-1485 Path Traversal vulnerability in multiple products
A flaw was found in the decompression function of registry-support.
network
low complexity
redhat devfile CWE-22
critical
9.3
2024-02-13 CVE-2024-1082 Path Traversal vulnerability in Github Enterprise Server
A path traversal vulnerability was identified in GitHub Enterprise Server that allowed an attacker to gain unauthorized read permission to files by deploying arbitrary symbolic links to a GitHub Pages site with a specially crafted artifact tarball.
network
low complexity
github CWE-22
6.5
2024-02-13 CVE-2024-1163 Path Traversal vulnerability in Mapshaper
The attacker may exploit a path traversal vulnerability leading to information disclosure.
local
low complexity
mapshaper CWE-22
7.1
2024-02-12 CVE-2024-22226 Path Traversal vulnerability in Dell Unity Operating Environment
Dell Unity, versions prior to 5.4, contain a path traversal vulnerability in its svc_supportassist utility.
network
low complexity
dell CWE-22
6.5
2024-02-08 CVE-2023-40264 Path Traversal vulnerability in Unify Openscape Voice Trace Manager V8
An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11.
network
low complexity
unify CWE-22
4.3