Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2017-02-13 CVE-2017-5168 Path Traversal vulnerability in Hanwha-Security Smart Security Manager 1.5
An issue was discovered in Hanwha Techwin Smart Security Manager Versions 1.5 and prior.
network
high complexity
hanwha-security CWE-22
7.5
2017-02-13 CVE-2017-5163 Path Traversal vulnerability in Belden Hirschmann Gecko Lite Managed Switch Firmware
An issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions.
network
high complexity
belden-hirschmann CWE-22
5.9
2017-02-13 CVE-2017-5143 Path Traversal vulnerability in Honeywell XL web II Controller Xlwebexe10208/Xlwebexe20100
An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-1-02-08 and prior.
network
low complexity
honeywell CWE-22
8.6
2017-02-13 CVE-2016-9364 Path Traversal vulnerability in Fidelex Fx-2030A-Basic Firmware and Fx-2030A Firmware
An issue was discovered in Fidelix FX-20 series controllers, versions prior to 11.50.19.
network
low complexity
fidelex CWE-22
7.5
2017-02-13 CVE-2016-9357 Path Traversal vulnerability in Eaton products
An issue was discovered in certain legacy Eaton ePDUs -- the affected products are past end-of-life (EoL) and no longer supported: EAMxxx prior to June 30, 2015, EMAxxx prior to January 31, 2014, EAMAxx prior to January 31, 2014, EMAAxx prior to January 31, 2014, and ESWAxx prior to January 31, 2014.
network
low complexity
eaton CWE-22
5.3
2017-02-13 CVE-2016-9351 Path Traversal vulnerability in Advantech Susiaccess 3.0
An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior.
local
high complexity
advantech CWE-22
7.0
2017-02-13 CVE-2016-9339 Path Traversal vulnerability in Macgregor Interschalt VDR G4E Firmware 5.220
An issue was discovered in INTERSCHALT Maritime Systems VDR G4e Versions 5.220 and prior.
network
low complexity
macgregor CWE-22
5.3
2017-02-13 CVE-2016-5803 Path Traversal vulnerability in CA Technologies Unified Infrastructure Management
An issue was discovered in CA Unified Infrastructure Management Version 8.47 and earlier.
network
low complexity
ca-technologies CWE-22
8.6
2017-02-09 CVE-2016-4987 Path Traversal vulnerability in Jenkins Image Gallery
Directory traversal vulnerability in the Image Gallery plugin before 1.4 in Jenkins allows remote attackers to list arbitrary directories and read arbitrary files via unspecified form fields.
network
low complexity
jenkins CWE-22
6.5
2017-02-09 CVE-2016-4986 Path Traversal vulnerability in Jenkins TAP
Directory traversal vulnerability in the TAP plugin before 1.25 in Jenkins allows remote attackers to read arbitrary files via an unspecified parameter.
network
low complexity
jenkins CWE-22
7.5