Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2010-08-02 CVE-2009-4896 Path Traversal vulnerability in Mlmmj 1.2.15/1.2.16/1.2.17
Multiple directory traversal vulnerabilities in the mlmmj-php-admin web interface for Mailing List Managing Made Joyful (mlmmj) 1.2.15 through 1.2.17 allow remote authenticated users to overwrite, create, or delete arbitrary files, or determine the existence of arbitrary directories, via a ..
network
low complexity
mlmmj CWE-22
6.5
2010-07-30 CVE-2010-2920 Path Traversal vulnerability in Foobla COM Foobla Suggestions 1.5.1.2
Directory traversal vulnerability in the Foobla Suggestions (com_foobla_suggestions) component 1.5.1.2 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the controller parameter to index.php.
network
foobla joomla CWE-22
6.8
2010-07-28 CVE-2009-4974 Path Traversal vulnerability in Sweetphp Totalcalendar 2.4
Directory traversal vulnerability in box_display.php in TotalCalendar 2.4 allows remote attackers to read arbitrary files and possibly have unspecified other impact via a ..
network
low complexity
sweetphp CWE-22
7.5
2010-07-28 CVE-2009-4960 Path Traversal vulnerability in Lanai-Core 0.6
Directory traversal vulnerability in modules/backup/download.php in Lanai Core 0.6 allows remote attackers to read arbitrary files via a ..
network
low complexity
lanai-core CWE-22
5.0
2010-07-28 CVE-2010-1577 Path Traversal vulnerability in Cisco Content Delivery System and Internet Streamer
Directory traversal vulnerability in Cisco Internet Streamer, as used in Cisco Content Delivery System (CDS) 2.2.x, 2.3.x, 2.4.x, and 2.5.x before 2.5.7 allows remote attackers to read arbitrary files via a crafted URL.
network
low complexity
cisco CWE-22
7.8
2010-07-25 CVE-2010-2857 Path Traversal vulnerability in Danieljamesscott COM Music
Directory traversal vulnerability in the Music Manager component for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a ..
6.8
2010-07-25 CVE-2010-2850 Path Traversal vulnerability in Nusoftware Nubuilder
Directory traversal vulnerability in productionnu2/fileuploader.php in nuBuilder 10.04.20, and possibly other versions before 10.07.12, allows remote attackers to include and execute arbitrary local files via a ..
network
nusoftware CWE-22
6.8
2010-07-25 CVE-2010-2848 Path Traversal vulnerability in Gonzalo Maser COM Artforms 2.1B7.2
Directory traversal vulnerability in assets/captcha/includes/alikon/playcode.php in the InterJoomla ArtForms (com_artforms) component 2.1b7.2 RC2 for Joomla! allows remote attackers to read arbitrary files via a ..
network
low complexity
gonzalo-maser joomla CWE-22
5.0
2010-07-22 CVE-2009-4957 Path Traversal vulnerability in Interspire Activekb
Directory traversal vulnerability in loadpanel.php in Interspire ActiveKB allows remote attackers to read arbitrary files and possibly have unspecified other impact via directory traversal sequences in the Panel parameter.
network
low complexity
interspire CWE-22
7.5
2010-07-22 CVE-2009-4952 Path Traversal vulnerability in Serge Gebhardt DIR Listing
Directory traversal vulnerability in the Directory Listing (dir_listing) extension 1.1.0 and earlier for TYPO3 allows remote attackers to have an unspecified impact via unknown vectors.
network
low complexity
serge-gebhardt typo3 CWE-22
critical
10.0