Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2024-02-13 CVE-2024-1082 Path Traversal vulnerability in Github Enterprise Server
A path traversal vulnerability was identified in GitHub Enterprise Server that allowed an attacker to gain unauthorized read permission to files by deploying arbitrary symbolic links to a GitHub Pages site with a specially crafted artifact tarball.
network
low complexity
github CWE-22
6.5
2024-02-13 CVE-2024-1163 Path Traversal vulnerability in Mapshaper
The attacker may exploit a path traversal vulnerability leading to information disclosure.
local
low complexity
mapshaper CWE-22
7.1
2024-02-12 CVE-2024-22226 Path Traversal vulnerability in Dell Unity Operating Environment
Dell Unity, versions prior to 5.4, contain a path traversal vulnerability in its svc_supportassist utility.
network
low complexity
dell CWE-22
6.5
2024-02-11 CVE-2024-1433 Path Traversal vulnerability in KDE Plasma-Workspace
A vulnerability, which was classified as problematic, was found in KDE Plasma Workspace up to 5.93.0.
network
high complexity
kde CWE-22
3.7
2024-02-08 CVE-2023-40264 Path Traversal vulnerability in Unify Openscape Voice Trace Manager V8
An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11.
network
low complexity
unify CWE-22
4.3
2024-02-08 CVE-2023-40266 Path Traversal vulnerability in Mitel Unify Openscape Xpressions Webassistant
An issue was discovered in Atos Unify OpenScape Xpressions WebAssistant V7 before V7R1 FR5 HF42 P911.
network
low complexity
mitel CWE-22
critical
9.8
2024-02-07 CVE-2024-24311 Path Traversal vulnerability in Lineagrafica Multilingual and Multistore Sitemap PRO
Path Traversal vulnerability in Linea Grafica "Multilingual and Multistore Sitemap Pro - SEO" (lgsitemaps) module for PrestaShop before version 1.6.6, a guest can download personal information without restriction.
network
low complexity
lineagrafica CWE-22
7.5
2024-02-07 CVE-2024-0849 Path Traversal vulnerability in Leanote Desktop 2.7.0
Leanote version 2.7.0 allows obtaining arbitrary local files.
local
low complexity
leanote CWE-22
5.5
2024-02-06 CVE-2024-22514 Path Traversal vulnerability in Ispyconnect Agent DVR 5.1.6.0
An issue discovered in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to run arbitrary files by restoring a crafted backup file.
network
low complexity
ispyconnect CWE-22
8.8
2024-02-06 CVE-2024-24591 Path Traversal vulnerability in Clear Clearml 1.14.1/1.4.0
A path traversal vulnerability in versions 1.4.0 to 1.14.1 of the client SDK of Allegro AI’s ClearML platform enables a maliciously uploaded dataset to write local or remote files to an arbitrary location on an end user’s system when interacted with.
network
low complexity
clear CWE-22
8.8