Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2005-11-16 CVE-2005-3548 Path Traversal vulnerability in Invision Power Services Invision Board 2.0.1
Directory traversal vulnerability in Task Manager in Invision Power Board (IP.Board) 2.0.1 allows limited remote attackers to include files via a ..
network
low complexity
invision-power-services CWE-22
4.0
2005-09-02 CVE-2005-2792 Path Traversal vulnerability in PHPldapadmin Project PHPldapadmin 0.9.6/0.9.7
Directory traversal vulnerability in welcome.php in phpLDAPadmin 0.9.6 and 0.9.7 allows remote attackers to read arbitrary files via a ..
network
low complexity
phpldapadmin-project CWE-22
5.0
2005-07-26 CVE-2005-2378 Path Traversal vulnerability in Oracle Reports
Directory traversal vulnerability in Oracle Reports allows remote attackers to read arbitrary files via an absolute or relative path to the (1) CUSTOMIZE or (2) desformat parameters to rwservlet.
network
low complexity
oracle CWE-22
5.0
2005-07-26 CVE-2005-2371 Path Traversal vulnerability in Oracle Reports
Directory traversal vulnerability in Oracle Reports 6.0, 6i, 9i, and 10g allows remote attackers to overwrite arbitrary files via (1) "..", (2) Windows drive letter (C:), and (3) absolute path sequences in the desname parameter.
network
low complexity
oracle CWE-22
5.0
2005-06-20 CVE-2005-2033 Path Traversal vulnerability in Blue-Collar Productions I-Gallery 3.3
Directory traversal vulnerability in folderview.asp for Blue-Collar Productions i-Gallery 3.3 allows remote attackers to read arbitrary files and directories via the folder parameter.
network
low complexity
blue-collar-productions CWE-22
5.0
2005-06-01 CVE-2005-1813 Path Traversal vulnerability in Futuresoft Tftp Server 2000 1.0.0.1
Directory traversal vulnerability in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allows remote attackers to read arbitrary files via a TFTP GET request containing (1) "../" (dot dot slash) or (2) "..\" (dot dot backslash) sequences.
network
low complexity
futuresoft CWE-22
7.8
2004-12-31 CVE-2004-2750 Path Traversal vulnerability in Jbrowser 1.0/2.0/2.1
Directory traversal vulnerability in browser.php in JBrowser 1.0 through 2.1 allows remote attackers to read arbitrary files via the directory parameter.
network
low complexity
jbrowser CWE-22
5.0
2004-12-31 CVE-2004-2749 Path Traversal vulnerability in 2Wire Homeportal
Directory traversal vulnerability in wra/public/wralogin in 2Wire Gateway, possibly as used in HomePortal and other product lines, allows remote attackers to read arbitrary files via a ..
network
2wire CWE-22
4.3
2004-12-31 CVE-2004-2747 Path Traversal vulnerability in Pablo Software Solutions Quick N Easy FTP Server 1.77
Directory traversal vulnerability in Pablo Software Solutions Quick 'n Easy FTP Server 1.77, and possibly earlier versions, allows remote authenticated users to determine the existence of arbitrary files via a ..
network
low complexity
pablo-software-solutions CWE-22
4.0
2004-12-31 CVE-2004-2745 Path Traversal vulnerability in Anteco Visual Technologies Ownserver
Directory traversal vulnerability in Anteco Visual Technologies OwnServer 1.0 and earlier allows remote attackers to read arbitrary files via a ..
network
low complexity
anteco-visual-technologies CWE-22
7.8