Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2023-11-03 CVE-2023-39299 Path Traversal vulnerability in Qnap Music Station
A path traversal vulnerability has been reported to affect Music Station.
network
low complexity
qnap CWE-22
7.5
2023-11-03 CVE-2023-3961 Path Traversal vulnerability in multiple products
A path traversal vulnerability was identified in Samba when processing client pipe names connecting to Unix domain sockets within a private directory.
network
low complexity
samba redhat fedoraproject CWE-22
critical
9.8
2023-11-03 CVE-2023-41344 Path Traversal vulnerability in Ncsist Mobile Device Manager 1.4
NCSIST ManageEngine Mobile Device Manager(MDM) APP's special function has a path traversal vulnerability.
network
low complexity
ncsist CWE-22
7.5
2023-11-03 CVE-2023-41356 Path Traversal vulnerability in Wisdomgarden Tronclass Ilearn 1.62.41849
NCSIST ManageEngine Mobile Device Manager(MDM) APP's special function has a path traversal vulnerability.
network
low complexity
wisdomgarden CWE-22
6.5
2023-11-03 CVE-2023-34259 Path Traversal vulnerability in Kyocera D-Copia253Mf Plus Firmware 2Vgs000.002.561
Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow /wlmdeu%2f%2e%2e%2f%2e%2e directory traversal to read arbitrary files on the filesystem, even files that require root privileges.
network
low complexity
kyocera CWE-22
4.9
2023-11-03 CVE-2023-34260 Path Traversal vulnerability in Kyocera D-Copia253Mf Plus Firmware 2Vgs000.002.561
Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow a denial of service (service outage) via /wlmdeu%2f%2e%2e%2f%2e%2e followed by a directory reference such as %2fetc%00index.htm to try to read the /etc directory.
network
low complexity
kyocera CWE-22
7.5
2023-11-01 CVE-2023-33226 Path Traversal vulnerability in Solarwinds Network Configuration Manager
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability.
network
low complexity
solarwinds CWE-22
8.8
2023-11-01 CVE-2023-33227 Path Traversal vulnerability in Solarwinds Network Configuration Manager
The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability This vulnerability allows a low level user to perform the actions with SYSTEM privileges.
network
low complexity
solarwinds CWE-22
8.8
2023-11-01 CVE-2023-2621 Path Traversal vulnerability in Hitachienergy Modular Advanced Control for Hvdc 5.0/7.10.0.0
The McFeeder server (distributed as part of SSW package), is susceptible to an arbitrary file write vulnerability on the MAIN computer system.
network
low complexity
hitachienergy CWE-22
6.5
2023-10-31 CVE-2023-46237 Path Traversal vulnerability in Fogproject
FOG is a free open-source cloning/imaging/rescue suite/inventory management system.
network
low complexity
fogproject CWE-22
5.3