Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2023-10-05 CVE-2023-43070 Path Traversal vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains a Path Traversal Vulnerability in the HTTP interface.
network
low complexity
dell CWE-22
6.5
2023-10-04 CVE-2023-5399 Path Traversal vulnerability in Schneider-Electric Spacelogic C-Bus Toolkit 1.16.3
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause tampering of files on the personal computer running C-Bus when using the File Command.
network
low complexity
schneider-electric CWE-22
critical
9.8
2023-10-04 CVE-2023-3512 Path Traversal vulnerability in Setelsa-Security Conacwin 3.7.1.2/3.8.2.2
Relative path traversal vulnerability in Setelsa Security's ConacWin CB, in its 3.8.2.2 version and earlier, the exploitation of which could allow an attacker to perform an arbitrary download of files from the system via the "Download file" parameter.
network
low complexity
setelsa-security CWE-22
7.5
2023-10-04 CVE-2023-3701 Path Traversal vulnerability in Aquaesolutions Aqua Drive 2.4
Aqua Drive, in its 2.4 version, is vulnerable to a relative path traversal vulnerability.
network
low complexity
aquaesolutions CWE-22
8.8
2023-10-03 CVE-2023-26152 Path Traversal vulnerability in Nbluis Static-Server
All versions of the package static-server are vulnerable to Directory Traversal due to improper input sanitization passed via the validPath function of server.js.
network
low complexity
nbluis CWE-22
7.5
2023-10-03 CVE-2023-43627 Path Traversal vulnerability in Furunosystems Acera 1310 Firmware and Acera 1320 Firmware
Path traversal vulnerability in ACERA 1320 firmware ver.01.26 and earlier, and ACERA 1310 firmware ver.01.26 and earlier allows a network-adjacent authenticated attacker to alter critical information such as system files by sending a specially crafted request.
low complexity
furunosystems CWE-22
5.7
2023-10-01 CVE-2023-5327 Path Traversal vulnerability in Sato Cl4Nx-J Plus Firmware 1.13.2U455R2
A vulnerability was found in SATO CL4NX-J Plus 1.13.2-u455_r2.
low complexity
sato CWE-22
6.5
2023-09-29 CVE-2023-5257 Path Traversal vulnerability in Whitehsbg Jndiexploit 1.4
A vulnerability was found in WhiteHSBG JNDIExploit 1.4 on Windows.
low complexity
whitehsbg CWE-22
5.7
2023-09-28 CVE-2023-43662 Path Traversal vulnerability in Shokoanime Shokoserver
ShokoServer is a media server which specializes in organizing anime.
network
low complexity
shokoanime CWE-22
8.6
2023-09-28 CVE-2023-43044 Path Traversal vulnerability in IBM License Metric Tool
IBM License Metric Tool 9.2 could allow a remote attacker to traverse directories on the system.
network
low complexity
ibm CWE-22
7.5