Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2009-01-29 CVE-2009-0340 Path Traversal vulnerability in Quirm Simple PHP Newsletter 1.5
Multiple directory traversal vulnerabilities in Simple PHP Newsletter 1.5 allow remote attackers to read arbitrary files via a ..
network
quirm CWE-22
6.8
2009-01-29 CVE-2009-0331 Path Traversal vulnerability in Quirm Espg 1.72
Directory traversal vulnerability in gallery/comment.php in Enhanced Simple PHP Gallery (ESPG) 1.72 allows remote attackers to read arbitrary files via a ..
network
low complexity
quirm CWE-22
7.8
2009-01-29 CVE-2009-0330 Path Traversal vulnerability in Wss-Pro Scms 1
Directory traversal vulnerability in index.php in Simple Content Management System (SCMS) 1 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the p parameter.
network
wss-pro CWE-22
6.8
2009-01-28 CVE-2008-6002 Path Traversal vulnerability in Web-Cp 0.5.7
Absolute path traversal vulnerability in sendfile.php in web-cp 0.5.7, when register_globals is enabled, allows remote attackers to read arbitrary files via a full pathname in the filelocation parameter.
network
web-cp CWE-22
7.1
2009-01-28 CVE-2008-5997 Path Traversal vulnerability in Ocp2 Omnicom Content Platform 2.0
Absolute path traversal vulnerability in admin/fileKontrola/browser.asp in Omnicom Content Platform (OCP) 2.0 allows remote attackers to list arbitrary directories via a full pathname in the root parameter.
network
low complexity
ocp2 CWE-22
7.8
2009-01-28 CVE-2008-5993 Path Traversal vulnerability in Barcodephp Barcodegen 1D 1.2.4/1.3.0
Directory traversal vulnerability in image.php in Barcode Generator 1D (barcodegen) 2.0.0 and earlier allows remote attackers to include and execute arbitrary local files via a ..
network
low complexity
barcodephp CWE-22
7.5
2009-01-28 CVE-2008-5991 Path Traversal vulnerability in Mailwatch
Directory traversal vulnerability in docs.php in MailWatch for MailScanner 1.0.4 and earlier allows remote attackers to include and execute arbitrary local files via a ..
network
low complexity
mailscanner mailwatch CWE-22
7.5
2009-01-28 CVE-2008-5990 Path Traversal vulnerability in Eduforge Emergecolab 1.0
Directory traversal vulnerability in connect/init.inc in emergecolab 1.0 allows remote attackers to include and execute arbitrary local files via a ..
network
eduforge CWE-22
6.8
2009-01-28 CVE-2008-5989 Path Traversal vulnerability in PHPcounter
Directory traversal vulnerability in defs.php in PHPcounter 1.3.2 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a ..
network
phpcounter CWE-22
6.8
2009-01-27 CVE-2009-0291 Path Traversal vulnerability in Openx 2.6.3
Directory traversal vulnerability in fc.php in OpenX 2.6.3 allows remote attackers to include and execute arbitrary files via a ..
network
low complexity
openx CWE-22
7.5