Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2017-08-28 CVE-2014-8163 Path Traversal vulnerability in Redhat Satellite 5.0
Directory traversal vulnerability in the XMLRPC interface in Red Hat Satellite 5.
network
low complexity
redhat CWE-22
6.5
2017-08-28 CVE-2015-1876 Path Traversal vulnerability in Estrongs ES File Explorer 3.2.4.1
Directory traversal vulnerability in ES File Explorer 3.2.4.1.
network
low complexity
estrongs CWE-22
7.5
2017-08-28 CVE-2015-1386 Path Traversal vulnerability in Unshield Project Unshield 1.01
Directory traversal vulnerability in unshield 1.0-1.
network
low complexity
unshield-project CWE-22
7.5
2017-08-28 CVE-2015-1199 Path Traversal vulnerability in Ppmd Project Ppmd 10.15
Directory traversal vulnerability in ppmd 10.1-5.
network
low complexity
ppmd-project CWE-22
7.5
2017-08-28 CVE-2015-1198 Path Traversal vulnerability in Linux-Ha HA 0.999P+Dfsg5
Multiple directory traversal vulnerabilities in ha 0.999p+dfsg-5.
network
low complexity
linux-ha CWE-22
7.5
2017-08-28 CVE-2014-8871 Path Traversal vulnerability in SAP Hybris
Directory traversal vulnerability in hybris Commerce software suite 5.0.3.3 and earlier, 5.0.0.3 and earlier, 5.0.4.4 and earlier, 5.1.0.1 and earlier, 5.1.1.2 and earlier, 5.2.0.3 and earlier, and 5.3.0.1 and earlier.
network
low complexity
sap CWE-22
7.5
2017-08-28 CVE-2014-5302 Path Traversal vulnerability in Manageengine products
Directory traversal vulnerability in ServiceDesk Plus and Plus MSP v5 through v9.0 v9030; AssetExplorer v4 to v6.1; SupportCenter v5 to v7.9; IT360 v8 to v10.4 allows remote authenticated users to execute arbitrary code.
network
low complexity
manageengine CWE-22
8.8
2017-08-28 CVE-2014-5301 Path Traversal vulnerability in Manageengine products
Directory traversal vulnerability in ServiceDesk Plus MSP v5 to v9.0 v9030; AssetExplorer v4 to v6.1; SupportCenter v5 to v7.9; IT360 v8 to v10.4.
network
low complexity
manageengine CWE-22
8.8
2017-08-26 CVE-2017-7693 Path Traversal vulnerability in Riverbed Opnet APP Response Xpert 9.6.1
Directory traversal vulnerability in viewer_script.jsp in Riverbed OPNET App Response Xpert (ARX) version 9.6.1 allows remote authenticated users to inject arbitrary commands to read OS files.
network
low complexity
riverbed CWE-22
6.5
2017-08-25 CVE-2017-9640 Path Traversal vulnerability in multiple products
A Path Traversal issue was discovered in Automated Logic Corporation (ALC) ALC WebCTRL, i-Vu, SiteScan Web prior to 6.5; ALC WebCTRL, SiteScan Web 6.1 and prior; ALC WebCTRL, i-Vu 6.0 and prior; ALC WebCTRL, i-Vu, SiteScan Web 5.5 and prior; and ALC WebCTRL, i-Vu, SiteScan Web 5.2 and prior.
network
low complexity
automatedlogic carrier CWE-22
6.3