Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2024-01-12 CVE-2023-48166 Path Traversal vulnerability in Unify Openscape Voice 10.0
A directory traversal vulnerability in the SOAP Server integrated in Atos Unify OpenScape Voice V10 before V10R3.26.1 allows a remote attacker to view the contents of arbitrary files in the local file system.
network
low complexity
unify CWE-22
7.5
2024-01-12 CVE-2023-49801 Path Traversal vulnerability in Lifplatforms LIF Auth Server
Lif Auth Server is a server for validating logins, managing information, and account recovery for Lif Accounts.
network
low complexity
lifplatforms CWE-22
7.5
2024-01-12 CVE-2010-10011 Path Traversal vulnerability in Acritum Femitter Server 1.04
A vulnerability, which was classified as problematic, was found in Acritum Femitter Server 1.04.
network
low complexity
acritum CWE-22
7.5
2024-01-12 CVE-2023-31036 Path Traversal vulnerability in Nvidia Triton Inference Server
NVIDIA Triton Inference Server for Linux and Windows contains a vulnerability where, when it is launched with the non-default command line option --model-control explicit, an attacker may use the model load API to cause a relative path traversal.
network
low complexity
nvidia CWE-22
8.8
2024-01-12 CVE-2023-49569 Path Traversal vulnerability in Go-Git Project Go-Git
A path traversal vulnerability was discovered in go-git versions prior to v5.11.
network
low complexity
go-git-project CWE-22
critical
9.8
2024-01-11 CVE-2023-5504 Path Traversal vulnerability in Inpsyde Backwpup
The BackWPup plugin for WordPress is vulnerable to Directory Traversal in versions up to, and including, 4.0.1 via the Log File Folder.
network
low complexity
inpsyde CWE-22
8.7
2024-01-11 CVE-2023-6583 Path Traversal vulnerability in Codection Import and Export Users and Customers
The Import and export users and customers plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.24.2 via the Recurring Import functionality.
network
low complexity
codection CWE-22
7.2
2024-01-11 CVE-2023-6699 Path Traversal vulnerability in Wpcompress WP Compress
The WP Compress – Image Optimizer [All-In-One] plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 6.10.33 via the css parameter.
network
low complexity
wpcompress CWE-22
7.5
2024-01-10 CVE-2023-51127 Path Traversal vulnerability in Flir AX8 Firmware 1.46.16
FLIR AX8 thermal sensor cameras up to and including 1.46.16 are vulnerable to Directory Traversal due to improper access restriction.
network
low complexity
flir CWE-22
7.5
2024-01-10 CVE-2023-50916 Path Traversal vulnerability in Kyocera Device Manager
Kyocera Device Manager before 3.1.1213.0 allows NTLM credential exposure during UNC path authentication via a crafted change from a local path to a UNC path.
network
low complexity
kyocera CWE-22
7.2