Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-01-03 | CVE-2024-21633 | Path Traversal vulnerability in Apktool Apktool is a tool for reverse engineering Android APK files. | 7.8 |
2024-01-03 | CVE-2023-37607 | Path Traversal vulnerability in Automaticsystems SOC Fl9600 Firstlane Firmware 06 Directory Traversal in Automatic Systems SOC FL9600 FirstLane V06 lego_T04E00 allows a remote attacker to obtain sensitive information via csvServer.php?file= with a .. | 7.5 |
2024-01-03 | CVE-2023-47473 | Path Traversal vulnerability in Fuwushe Ifair 23.8Ad0 Directory Traversal vulnerability in fuwushe.org iFair versions 23.8_ad0 and before allows an attacker to obtain sensitive information via a crafted script. | 7.5 |
2024-01-03 | CVE-2023-45722 | Path Traversal vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1 HCL DRYiCE MyXalytics is impacted by path traversal arbitrary file read vulnerability because it uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory. | 9.8 |
2024-01-03 | CVE-2023-45723 | Path Traversal vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1 HCL DRYiCE MyXalytics is impacted by path traversal vulnerability which allows file upload capability. | 9.8 |
2023-12-29 | CVE-2023-7114 | Path Traversal vulnerability in Mattermost Mattermost version 2.10.0 and earlier fails to sanitize deeplink paths, which allows an attacker to perform CSRF attacks against the server. | 8.8 |
2023-12-29 | CVE-2023-52085 | Path Traversal vulnerability in Wintercms Winter Winter is a free, open-source content management system. | 5.4 |
2023-12-28 | CVE-2023-7134 | Path Traversal vulnerability in Oretnom23 Medicine Tracker System 1.0 A vulnerability was found in SourceCodester Medicine Tracking System 1.0. | 9.8 |
2023-12-27 | CVE-2023-6190 | Path Traversal vulnerability in Ikcu University Information Management System Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Izmir Katip Çelebi University University Information Management System allows Absolute Path Traversal.This issue affects University Information Management System: before 30.11.2023. | 9.8 |
2023-12-26 | CVE-2023-5672 | Path Traversal vulnerability in Wpvibes WP Mail LOG The WP Mail Log WordPress plugin before 1.1.3 does not properly validate file path parameters when attaching files to emails, leading to local file inclusion, and allowing an attacker to leak the contents of arbitrary files. | 6.5 |