Vulnerabilities > Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

DATE CVE VULNERABILITY TITLE RISK
2023-02-28 CVE-2023-20943 Path Traversal vulnerability in Google Android
In clearApplicationUserData of ActivityManagerService.java, there is a possible way to remove system files due to a path traversal error.
local
low complexity
google CWE-22
7.8
2023-02-28 CVE-2023-25265 Path Traversal vulnerability in Docmosis Tornado
Docmosis Tornado <= 2.9.4 is vulnerable to Directory Traversal leading to the disclosure of arbitrary content on the file system.
network
low complexity
docmosis CWE-22
7.5
2023-02-28 CVE-2023-26255 Path Traversal vulnerability in Stagil Navigation
An unauthenticated path traversal vulnerability affects the "STAGIL Navigation for Jira - Menu & Themes" plugin before 2.0.52 for Jira.
network
low complexity
stagil CWE-22
7.5
2023-02-28 CVE-2023-26256 Path Traversal vulnerability in Stagil Navigation
An unauthenticated path traversal vulnerability affects the "STAGIL Navigation for Jira - Menu & Themes" plugin before 2.0.52 for Jira.
network
low complexity
stagil CWE-22
7.5
2023-02-27 CVE-2023-26758 Path Traversal vulnerability in Smeup ERP Tokyov6R1M220406
Sme.UP TOKYO V6R1M220406 was discovered to contain an arbitrary file download vulnerabilty via the component /ResourceService.
network
low complexity
smeup CWE-22
7.5
2023-02-26 CVE-2023-1043 Path Traversal vulnerability in Muyucms 2.2
A vulnerability was found in MuYuCMS 2.2.
network
low complexity
muyucms CWE-22
4.3
2023-02-26 CVE-2023-1044 Path Traversal vulnerability in Muyucms 2.2
A vulnerability was found in MuYuCMS 2.2.
network
low complexity
muyucms CWE-22
8.8
2023-02-26 CVE-2023-1045 Path Traversal vulnerability in Muyucms 2.2
A vulnerability was found in MuYuCMS 2.2.
network
low complexity
muyucms CWE-22
8.1
2023-02-25 CVE-2022-48362 Path Traversal vulnerability in Zohocorp Manageengine Desktop Central
Zoho ManageEngine Desktop Central and Desktop Central MSP before 10.1.2137.2 allow directory traversal via computerName to AgentLogUploadServlet.
network
low complexity
zohocorp CWE-22
8.8
2023-02-22 CVE-2023-0104 Path Traversal vulnerability in Weintek Easybuilder PRO
The listed versions for Weintek EasyBuilder Pro are vulnerable to a ZipSlip attack caused by decompiling a malicious project file.
local
low complexity
weintek CWE-22
7.8