Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2023-03-01 CVE-2020-5001 Path Traversal vulnerability in IBM Financial Transaction Manager
IBM Financial Transaction Manager 3.2.0 through 3.2.7 could allow a remote attacker to traverse directories on the system.
network
low complexity
ibm CWE-22
7.5
2023-03-01 CVE-2022-3162 Path Traversal vulnerability in Kubernetes
Users authorized to list or watch one type of namespaced custom resource cluster-wide can read custom resources of a different type in the same API group without authorization.
network
low complexity
kubernetes CWE-22
6.5
2023-03-01 CVE-2023-1112 Path Traversal vulnerability in Codedropz Drag and Drop multiple File Upload - Contact Form 7 5.0.6.1
A vulnerability was found in Drag and Drop Multiple File Upload Contact Form 7 5.0.6.1 on WordPress.
network
low complexity
codedropz CWE-22
critical
9.8
2023-03-01 CVE-2023-22772 Path Traversal vulnerability in Arubanetworks Arubaos and Sd-Wan
An authenticated path traversal vulnerability exists in the ArubaOS web-based management interface.
network
low complexity
arubanetworks CWE-22
6.5
2023-03-01 CVE-2023-22773 Path Traversal vulnerability in Arubanetworks Arubaos and Sd-Wan
Authenticated path traversal vulnerabilities exist in the ArubaOS command line interface.
network
low complexity
arubanetworks CWE-22
6.5
2023-03-01 CVE-2023-22774 Path Traversal vulnerability in Arubanetworks Arubaos and Sd-Wan
Authenticated path traversal vulnerabilities exist in the ArubaOS command line interface.
network
low complexity
arubanetworks CWE-22
6.5
2023-03-01 CVE-2023-22776 Path Traversal vulnerability in Arubanetworks Arubaos and Sd-Wan
An authenticated path traversal vulnerability exists in the ArubaOS command line interface.
network
low complexity
arubanetworks CWE-22
4.9
2023-02-28 CVE-2022-41722 Path Traversal vulnerability in Golang GO
A path traversal vulnerability exists in filepath.Clean on Windows.
network
low complexity
golang CWE-22
7.5
2023-02-28 CVE-2023-0339 Path Traversal vulnerability in Forgerock web Policy Agents 5.10/5.10.1
Relative Path Traversal vulnerability in ForgeRock Access Management Web Policy Agent allows Authentication Bypass. This issue affects Access Management Web Policy Agent: all versions up to 5.10.1
network
low complexity
forgerock CWE-22
critical
9.8
2023-02-28 CVE-2023-0511 Path Traversal vulnerability in Forgerock Java Policy Agents 5.10.1
Relative Path Traversal vulnerability in ForgeRock Access Management Java Policy Agent allows Authentication Bypass. This issue affects Access Management Java Policy Agent: all versions up to 5.10.1
network
low complexity
forgerock CWE-22
critical
9.8