Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-09-14 | CVE-2023-37739 | Path Traversal vulnerability in I-Doit i-doit Pro v25 and below was discovered to be vulnerable to path traversal. | 6.5 |
2023-09-14 | CVE-2021-28485 | Path Traversal vulnerability in Ericsson Mobile Switching Center Server BC 18A Firmware Is3.1 In Ericsson Mobile Switching Center Server (MSC-S) before IS 3.1 CP22, the SIS web application allows relative path traversal via a specific parameter in the https request after authentication, which allows access to files on the system that are not intended to be accessible via the web application. | 4.3 |
2023-09-13 | CVE-2023-39916 | Path Traversal vulnerability in Nlnetlabs Routinator NLnet Labs’ Routinator 0.9.0 up to and including 0.12.1 contains a possible path traversal vulnerability in the optional, off-by-default keep-rrdp-responses feature that allows users to store the content of responses received for RRDP requests. | 6.5 |
2023-09-12 | CVE-2023-4914 | Path Traversal vulnerability in Cecil Relative Path Traversal in GitHub repository cecilapp/cecil prior to 7.47.1. | 7.5 |
2023-09-12 | CVE-2023-32558 | Path Traversal vulnerability in Nodejs Node.Js The use of the deprecated API `process.binding()` can bypass the permission model through path traversal. | 7.5 |
2023-09-11 | CVE-2023-35670 | Path Traversal vulnerability in Google Android In computeValuesFromData of FileUtils.java, there is a possible way to insert files to other apps' external private directories due to a path traversal error. | 7.8 |
2023-09-08 | CVE-2022-33164 | Path Traversal vulnerability in IBM Security Directory Server 7.2.0 IBM Security Directory Server 7.2.0 could allow a remote attacker to traverse directories on the system. | 9.1 |
2023-09-08 | CVE-2023-4782 | Path Traversal vulnerability in Hashicorp Terraform Terraform version 1.0.8 through 1.5.6 allows arbitrary file write during the `init` operation if run on maliciously crafted Terraform configuration. | 7.8 |
2023-09-08 | CVE-2023-40924 | Path Traversal vulnerability in Contec Solarview Compact Firmware 4.0/5.0 SolarView Compact < 6.00 is vulnerable to Directory Traversal. | 7.5 |
2023-09-06 | CVE-2023-41930 | Path Traversal vulnerability in Jenkins JOB Configuration History Jenkins Job Configuration History Plugin 1227.v7a_79fc4dc01f and earlier does not restrict the 'name' query parameter when rendering a history entry, allowing attackers to have Jenkins render a manipulated configuration history that was not created by the plugin. | 4.3 |