Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2005-06-01 CVE-2005-1813 Path Traversal vulnerability in Futuresoft Tftp Server 2000 1.0.0.1
Directory traversal vulnerability in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allows remote attackers to read arbitrary files via a TFTP GET request containing (1) "../" (dot dot slash) or (2) "..\" (dot dot backslash) sequences.
network
low complexity
futuresoft CWE-22
7.8
2004-12-31 CVE-2004-2750 Path Traversal vulnerability in Jbrowser 1.0/2.0/2.1
Directory traversal vulnerability in browser.php in JBrowser 1.0 through 2.1 allows remote attackers to read arbitrary files via the directory parameter.
network
low complexity
jbrowser CWE-22
5.0
2004-12-31 CVE-2004-2749 Path Traversal vulnerability in 2Wire Homeportal
Directory traversal vulnerability in wra/public/wralogin in 2Wire Gateway, possibly as used in HomePortal and other product lines, allows remote attackers to read arbitrary files via a ..
network
2wire CWE-22
4.3
2004-12-31 CVE-2004-2747 Path Traversal vulnerability in Pablo Software Solutions Quick N Easy FTP Server 1.77
Directory traversal vulnerability in Pablo Software Solutions Quick 'n Easy FTP Server 1.77, and possibly earlier versions, allows remote authenticated users to determine the existence of arbitrary files via a ..
network
low complexity
pablo-software-solutions CWE-22
4.0
2004-12-31 CVE-2004-2745 Path Traversal vulnerability in Anteco Visual Technologies Ownserver
Directory traversal vulnerability in Anteco Visual Technologies OwnServer 1.0 and earlier allows remote attackers to read arbitrary files via a ..
network
low complexity
anteco-visual-technologies CWE-22
7.8
2004-12-31 CVE-2004-2717 Path Traversal vulnerability in PHP Heaven PHPmychat 0.14.5
Multiple directory traversal vulnerabilities in admin.php3 in PHPMyChat 0.14.5 allow remote attackers with administrative privileges to read arbitrary files via a ..
network
high complexity
php-heaven CWE-22
2.6
2004-12-31 CVE-2004-2686 Path Traversal vulnerability in SUN Solaris and Sunos
Directory traversal vulnerability in the vfs_getvfssw function in Solaris 2.6, 7, 8, and 9 allows local users to load arbitrary kernel modules via crafted (1) mount or (2) sysfs system calls.
local
low complexity
sun CWE-22
7.2
2004-12-31 CVE-2004-1444 Path Traversal vulnerability in Roundup-Tracker Roundup
Directory traversal vulnerability in Roundup 0.6.4 and earlier allows remote attackers to view arbitrary files via ..
network
low complexity
roundup-tracker CWE-22
5.0
2004-11-23 CVE-2004-0273 Path Traversal vulnerability in Realnetworks products
Directory traversal vulnerability in RealOne Player, RealOne Player 2.0, and RealOne Enterprise Desktop allows remote attackers to upload arbitrary files via an RMP file that contains ..
network
realnetworks CWE-22
critical
9.3
2004-11-03 CVE-2004-0847 Path Traversal vulnerability in Microsoft Asp.Net 1.0/1.1
The Microsoft .NET forms authentication capability for ASP.NET allows remote attackers to bypass authentication for .aspx files in restricted directories via a request containing a (1) "\" (backslash) or (2) "%5C" (encoded backslash), aka "Path Validation Vulnerability."
network
low complexity
microsoft CWE-22
7.5