Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2016-08-31 CVE-2016-5332 Path Traversal vulnerability in VMWare Vrealize LOG Insight
Directory traversal vulnerability in VMware vRealize Log Insight 2.x and 3.x before 3.6.0 allows remote attackers to read arbitrary files via unspecified vectors.
network
low complexity
vmware CWE-22
5.3
2016-08-26 CVE-2016-5664 Path Traversal vulnerability in Accellion Kiteworks Appliance Kw2016.03.00
Directory traversal vulnerability on Accellion Kiteworks appliances before kw2016.03.00 allows remote attackers to read files via a crafted URI.
network
low complexity
accellion CWE-22
4.3
2016-08-26 CVE-2016-5049 Path Traversal vulnerability in Readydesk 9.1
Directory traversal vulnerability in chat/openattach.aspx in ReadyDesk 9.1 allows remote attackers to read arbitrary files via a ..
network
low complexity
readydesk CWE-22
7.5
2016-08-08 CVE-2016-1429 Path Traversal vulnerability in Cisco products
Directory traversal vulnerability in the web interface on Cisco RV180 and RV180W devices allows remote attackers to read arbitrary files via a crafted HTTP request, aka Bug ID CSCuz43023.
network
low complexity
cisco CWE-22
7.5
2016-08-05 CVE-2016-6138 Path Traversal vulnerability in SAP Trex 7.10
Directory traversal vulnerability in SAP TREX 7.10 Revision 63 allows remote attackers to read arbitrary files via unspecified vectors, aka SAP Security Note 2203591.
network
low complexity
sap CWE-22
critical
9.8
2016-08-03 CVE-2016-5639 Path Traversal vulnerability in Crestron Airmedia Am-100 Firmware 1.2.1/1.4.0.12
Directory traversal vulnerability in cgi-bin/login.cgi on Crestron AirMedia AM-100 devices with firmware before 1.4.0.13 allows remote attackers to read arbitrary files via a ..
network
low complexity
crestron CWE-22
7.5
2016-08-02 CVE-2016-6232 Path Traversal vulnerability in multiple products
Directory traversal vulnerability in KArchive before 5.24, as used in KDE Frameworks, allows remote attackers to write to arbitrary files via a ../ (dot dot slash) in a filename in an archive file, related to KNewsstuff downloads.
network
low complexity
canonical kde CWE-22
7.5
2016-08-01 CVE-2016-1610 Path Traversal vulnerability in Novell Filr 1.2/2.0
Directory traversal vulnerability in the email-template feature in Novell Filr before 1.2 Security Update 3 and 2.0 before Security Update 2 allows remote attackers to bypass intended access restrictions and write to arbitrary files via a ..
network
low complexity
novell CWE-22
7.5
2016-08-01 CVE-2016-1605 Path Traversal vulnerability in Netiq Sentinel 7.4/7.4.1
Directory traversal vulnerability in the ReportViewServlet servlet in the server in NetIQ Sentinel 7.4.x before 7.4.2 allows remote attackers to read arbitrary files via a PREVIEW value for the fileType field.
network
low complexity
netiq CWE-22
6.5
2016-07-13 CVE-2016-5092 Path Traversal vulnerability in Fortinet Fortiweb
Directory traversal vulnerability in Fortinet FortiWeb before 5.5.3 allows remote authenticated administrators with read and write privileges to read arbitrary files by leveraging the autolearn feature.
network
low complexity
fortinet CWE-22
4.9