Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2023-07-05 CVE-2023-35975 Path Traversal vulnerability in Arubanetworks Arubaos
An authenticated path traversal vulnerability exists in the ArubaOS command line interface.
network
low complexity
arubanetworks CWE-22
8.1
2023-07-05 CVE-2023-2880 Path Traversal vulnerability in Frauscher Diagnostic System 101 1.3.3
Frauscher Sensortechnik GmbH FDS001 for FAdC/FAdCi v1.3.3 and all previous versions are vulnerable to a path traversal vulnerability of the web interface by a crafted URL without authentication.
network
low complexity
frauscher CWE-22
7.5
2023-07-03 CVE-2023-36819 Path Traversal vulnerability in ENG Knowage
Knowage is the professional open source suite for modern business analytics over traditional sources and big data systems.
network
low complexity
eng CWE-22
6.5
2023-06-30 CVE-2023-35946 Path Traversal vulnerability in Gradle
Gradle is a build tool with a focus on build automation and support for multi-language development.
local
low complexity
gradle CWE-22
5.5
2023-06-30 CVE-2023-35947 Path Traversal vulnerability in Gradle
Gradle is a build tool with a focus on build automation and support for multi-language development.
network
high complexity
gradle CWE-22
8.1
2023-06-30 CVE-2023-32608 Path Traversal vulnerability in Pleasanter
Directory traversal vulnerability in Pleasanter (Community Edition and Enterprise Edition) 1.3.39.2 and earlier versions allows a remote authenticated attacker to alter an arbitrary file on the server.
network
low complexity
pleasanter CWE-22
6.5
2023-06-29 CVE-2023-33277 Path Traversal vulnerability in Gira KNX IP Router Firmware 3.1.3683.0/3.3.8.0
The web interface of Gira Giersiepen Gira KNX/IP-Router 3.1.3683.0 and 3.3.8.0 allows a remote attacker to read sensitive files via directory-traversal sequences in the URL.
network
low complexity
gira CWE-22
7.5
2023-06-29 CVE-2023-34598 Path Traversal vulnerability in Gibbonedu Gibbon 25.0.00
Gibbon v25.0.0 is vulnerable to a Local File Inclusion (LFI) where it's possible to include the content of several files present in the installation folder in the server's response.
network
low complexity
gibbonedu CWE-22
critical
9.8
2023-06-29 CVE-2023-34843 Path Traversal vulnerability in Traggo 0.3.0
Traggo Server 0.3.0 is vulnerable to directory traversal via a crafted GET request.
network
low complexity
traggo CWE-22
7.5
2023-06-28 CVE-2023-32623 Path Traversal vulnerability in 2Inc Snow Monkey Forms 5.0.7/5.1.1
Directory traversal vulnerability in Snow Monkey Forms v5.1.1 and earlier allows a remote unauthenticated attacker to delete arbitrary files on the server.
network
low complexity
2inc CWE-22
critical
9.1