Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2003-12-31 CVE-2003-1501 Path Traversal vulnerability in Gast Arbeiter Gast Arbeiter 1.3
Directory traversal vulnerability in the file upload CGI of Gast Arbeiter 1.3 allows remote attackers to write arbitrary files via a ..
network
low complexity
gast-arbeiter CWE-22
6.4
2003-12-31 CVE-2003-1499 Path Traversal vulnerability in Bytehoard 0.7
Directory traversal vulnerability in index.php in Bytehoard 0.7 allows remote attackers to read arbitrary files via a ..
network
low complexity
bytehoard CWE-22
5.0
2003-12-31 CVE-2003-1465 Path Traversal vulnerability in Phorum 3.4/3.4.1/3.4.2
Directory traversal vulnerability in download.php in Phorum 3.4 through 3.4.2 allows remote attackers to read arbitrary files.
network
low complexity
phorum CWE-22
5.0
2003-12-31 CVE-2003-1430 Path Traversal vulnerability in Epic Games Unreal Engine 226F/433/436
Directory traversal vulnerability in Unreal Tournament Server 436 and earlier allows remote attackers to access known files via a ".." (dot dot) in an unreal:// URL.
network
low complexity
linux microsoft epic-games CWE-22
5.0
2003-12-31 CVE-2003-1427 Path Traversal vulnerability in Netgear Fm114P 1.4Betarelease17
Directory traversal vulnerability in the web configuration interface in Netgear FM114P 1.4 allows remote attackers to read arbitrary files, such as the netgear.cfg configuration file, via a hex-encoded (%2e%2e%2f) ../ (dot dot slash) in the port parameter.
network
low complexity
netgear CWE-22
6.4
2003-12-31 CVE-2003-1414 Path Traversal vulnerability in Apple products
Directory traversal vulnerability in parse_xml.cg Apple Darwin Streaming Server 4.1.2 and Apple Quicktime Streaming Server 4.1.1 allows remote attackers to read arbitrary files via a ...
network
apple CWE-22
4.3
2003-12-31 CVE-2003-1413 Path Traversal vulnerability in Apple products
parse_xml.cgi in Apple Darwin Streaming Server 4.1.1 allows remote attackers to determine the existence of arbitrary files by using ".." sequences in the filename parameter and comparing the resulting error messages.
network
apple CWE-22
4.3
2003-12-31 CVE-2003-1380 Path Traversal vulnerability in Bisonftp Server 4 R2
Directory traversal vulnerability in BisonFTP Server 4 release 2 allows remote attackers to (1) list directories above the root via an 'ls @../' command, or (2) list files above the root via a "mget @../FILE" command.
network
low complexity
bisonftp CWE-22
7.5
2003-12-31 CVE-2003-1373 Path Traversal vulnerability in PHPbb Group PHPbb
Directory traversal vulnerability in auth.php for PhpBB 1.4.0 through 1.4.4 allows remote attackers to read and include arbitrary files via ..
6.8
2003-12-31 CVE-2003-1351 Path Traversal vulnerability in Greg Billock Edittag 1.1
Directory traversal vulnerability in edittag.cgi in EditTag 1.1 allows remote attackers to read arbitrary files via a "%2F.." (encoded slash dot dot) in the file parameter.
network
low complexity
greg-billock CWE-22
5.0