Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2013-12-14 CVE-2013-3043 Path Traversal vulnerability in IBM products
Directory traversal vulnerability in the client in IBM Rational Software Architect Design Manager and Rhapsody Design Manager 3.x and 4.x before 4.0.5 allows local users to read arbitrary files via vectors involving temporary files.
local
low complexity
ibm CWE-22
2.1
2013-12-14 CVE-2013-3042 Path Traversal vulnerability in IBM products
Directory traversal vulnerability in the server in IBM Rational Software Architect Design Manager and Rhapsody Design Manager 3.x and 4.x before 4.0.5 allows local users to read arbitrary files via vectors involving temporary files.
local
low complexity
ibm CWE-22
2.1
2013-12-14 CVE-2013-5107 Path Traversal vulnerability in Rockmongo
Directory traversal vulnerability in RockMongo 1.1.5 and earlier allows remote attackers to read arbitrary files via a ..
network
low complexity
rockmongo CWE-22
5.0
2013-12-13 CVE-2013-7091 Path Traversal vulnerability in Synacor Zimbra Collaboration Suite
Directory traversal vulnerability in /res/I18nMsg,AjxMsg,ZMsg,ZmMsg,AjxKeys,ZmKeys,ZdMsg,Ajx%20TemplateMsg.js.zgz in Zimbra 7.2.2 and 8.0.2 allows remote attackers to read arbitrary files via a ..
network
low complexity
zimbra CWE-22
5.0
2013-12-05 CVE-2013-3921 Path Traversal vulnerability in Easytimestudio Easy File Manager 1.1
Directory traversal vulnerability in Easytime Studio Easy File Manager 1.1 for iOS allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) to the default URI.
network
low complexity
easytimestudio CWE-22
5.0
2013-12-05 CVE-2013-6000 Path Traversal vulnerability in Tattyan Hptown 510/593
Directory traversal vulnerability in Tattyan HP TOWN before 5_10_1 allows remote attackers to read arbitrary files via a ..
network
low complexity
tattyan CWE-22
5.0
2013-11-26 CVE-2013-3923 Path Traversal vulnerability in Savysoda Wifi Free HD 1.2
Directory traversal vulnerability in SavySoda WiFi HD Free before 7.0 allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) in a GET request.
network
low complexity
savysoda CWE-22
5.0
2013-11-26 CVE-2013-4524 Path Traversal vulnerability in Moodle
Directory traversal vulnerability in repository/filesystem/lib.php in Moodle through 2.2.11, 2.3.x before 2.3.10, 2.4.x before 2.4.7, and 2.5.x before 2.5.3 allows remote authenticated users to read arbitrary files via a ..
network
low complexity
moodle CWE-22
6.8
2013-11-25 CVE-2013-3922 Path Traversal vulnerability in Gummybearstudios FTP Drive + Http Server 1.0.4
Directory traversal vulnerability in Gummy Bear Studios FTP Drive + HTTP Server 1.0.4 and earlier allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) in a GET request.
network
low complexity
gummybearstudios CWE-22
7.8
2013-11-23 CVE-2013-6864 Path Traversal vulnerability in Sybase Adaptive Server Enterprise 15.0.3/15.5/15.7
Directory traversal vulnerability in SAP Sybase Adaptive Server Enterprise (ASE) 15.0.3 before 15.0.3 ESD#4.3, 15.5 before 15.5 ESD#5.3, and 15.7 before 15.7 SP50 or 15.7 SP100 allows remote authenticated users to affect confidentiality, integrity, and availability via unspecified vectors.
network
high complexity
sybase CWE-22
6.1