Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2023-02-16 CVE-2023-22380 Path Traversal vulnerability in Github Enterprise Server
A path traversal vulnerability was identified in GitHub Enterprise Server that allowed arbitrary file reading when building a GitHub Pages site.
network
low complexity
github CWE-22
6.5
2023-02-16 CVE-2022-33892 Path Traversal vulnerability in Intel Quartus Prime
Path traversal in the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-22
7.8
2023-02-16 CVE-2022-30299 Path Traversal vulnerability in Fortinet Fortiweb
A path traversal vulnerability [CWE-23] in the API of FortiWeb 7.0.0 through 7.0.1, 6.3.0 through 6.3.19, 6.4 all versions, 6.2 all versions, 6.1 all versions, 6.0 all versions may allow an authenticated attacker to retrieve specific parts of files from the underlying file system via specially crafted web requests.
network
low complexity
fortinet CWE-22
4.3
2023-02-16 CVE-2022-30300 Path Traversal vulnerability in Fortinet Fortiweb
A relative path traversal vulnerability [CWE-23] in FortiWeb 7.0.0 through 7.0.1, 6.3.6 through 6.3.18, 6.4 all versions may allow an authenticated attacker to obtain unauthorized access to files and data via specifically crafted HTTP GET requests.
network
low complexity
fortinet CWE-22
6.5
2023-02-16 CVE-2022-41335 Path Traversal vulnerability in Fortinet Fortios, Fortiproxy and Fortiswitchmanager
A relative path traversal vulnerability [CWE-23] in Fortinet FortiOS version 7.2.0 through 7.2.2, 7.0.0 through 7.0.8 and before 6.4.10, FortiProxy version 7.2.0 through 7.2.1, 7.0.0 through 7.0.7 and before 2.0.10, FortiSwitchManager 7.2.0 and before 7.0.0 allows an authenticated attacker to read and write files on the underlying Linux system via crafted HTTP requests.
network
low complexity
fortinet CWE-22
8.1
2023-02-16 CVE-2023-23778 Path Traversal vulnerability in Fortinet Fortiweb
A relative path traversal vulnerability [CWE-23] in FortiWeb version 7.0.1 and below, 6.4 all versions, 6.3 all versions, 6.2 all versions may allow an authenticated user to obtain unauthorized access to files and data via specifically crafted web requests.
network
low complexity
fortinet CWE-22
6.5
2023-02-16 CVE-2023-23784 Path Traversal vulnerability in Fortinet Fortiweb
A relative path traversal in Fortinet FortiWeb version 7.0.0 through 7.0.2, FortiWeb version 6.3.6 through 6.3.20, FortiWeb 6.4 all versions allows attacker to information disclosure via specially crafted web requests.
network
low complexity
fortinet CWE-22
6.5
2023-02-16 CVE-2022-38731 Path Traversal vulnerability in Qaelum Dose 18.08/21.1
Qaelum DOSE 18.08 through 21.1 before 21.2 allows Directory Traversal via the loadimages name parameter.
network
low complexity
qaelum CWE-22
4.3
2023-02-16 CVE-2023-0862 Path Traversal vulnerability in Netmodule Router Software
The NetModule NSRW web administration interface is vulnerable to path traversals, which could lead to arbitrary file uploads and deletion.
network
low complexity
netmodule CWE-22
8.8
2023-02-15 CVE-2022-47506 Path Traversal vulnerability in Solarwinds Orion Platform 2022.4.1
SolarWinds Platform was susceptible to the Directory Traversal Vulnerability.
local
low complexity
solarwinds CWE-22
7.8