Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2009-02-19 CVE-2008-6172 Path Traversal vulnerability in Weberr Rwcards 3.0.11
Directory traversal vulnerability in captcha/captcha_image.php in the RWCards (com_rwcards) 3.0.11 component for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the img parameter.
network
weberr joomla CWE-22
6.8
2009-02-19 CVE-2008-6167 Path Traversal vulnerability in Miniportail
Directory traversal vulnerability in search.php in miniPortail 2.2 and earlier allows remote attackers to include and execute arbitrary local files via a ..
network
low complexity
miniportail CWE-22
7.5
2009-02-18 CVE-2009-0645 Path Traversal vulnerability in Jaws 0.8.8
Directory traversal vulnerability in index.php in Jaws 0.8.8 allows remote authenticated users to read arbitrary files via a ..
network
low complexity
jaws CWE-22
6.5
2009-02-16 CVE-2009-0596 Path Traversal vulnerability in PHPskelsite 1.4
Directory traversal vulnerability in skysilver/login.tpl.php in phpSkelSite 1.4, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the TplSuffix parameter.
6.8
2009-02-16 CVE-2009-0592 Path Traversal vulnerability in Pnphpbb Pnphpbb2
Multiple directory traversal vulnerabilities in PNphpBB2 1.2i and earlier allow remote attackers to include and execute arbitrary local files via a ..
network
low complexity
pnphpbb CWE-22
7.5
2009-02-14 CVE-2008-6139 Path Traversal vulnerability in Webbiscuits Modules Controller 1.1
Directory traversal vulnerability in faqsupport/wce.download.php in WebBiscuits Modules Controller 1.1 allows remote attackers to read arbitrary files via a ..
network
low complexity
webbiscuits CWE-22
5.0
2009-02-13 CVE-2008-6129 Path Traversal vulnerability in Mozilo Mozilowiki
Directory traversal vulnerability in print.php in moziloWiki 1.0.1 and earlier allows remote attackers to read arbitrary files via a ..
network
mozilo CWE-22
4.3
2009-02-13 CVE-2008-6126 Path Traversal vulnerability in Mozilo Mozilocms
Multiple directory traversal vulnerabilities in moziloCMS 1.10.2 and earlier allow remote attackers to read arbitrary files via a ..
network
low complexity
mozilo CWE-22
5.0
2009-02-13 CVE-2009-0570 Path Traversal vulnerability in Ninjadesigns Mailist 3.0
Directory traversal vulnerability in send.php in Ninja Designs Mailist 3.0, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a ..
network
high complexity
ninjadesigns CWE-22
5.1
2009-02-11 CVE-2009-0535 Path Traversal vulnerability in Extrosoft Thyme 1.3
Directory traversal vulnerability in export.php in Thyme 1.3 and earlier, when register_globals is disabled, allows remote attackers to read arbitrary files via a ..
network
low complexity
extrosoft CWE-22
7.5