VulnSea

CWE-22

CVEs classified under CWE-22, newest first.

1061 CVEsRSS

CVE-2022-38614High· 7.5
4y ago

An issue in the IGB Files and OutfileService features of SmartVista Cardgen v3.28.0 allows attackers to list and download arbitrary files via modifying the PATH parameter.

An issue in the IGB Files and OutfileService features of SmartVista Cardgen v3.28.0 allows attackers to list and download arbitrary files via modifying the PATH parameter.

▾ Twilightbpcbt · smartvista_cardgenEPSS 1.1%via NVD
CVE-2022-38613Medium· 6.5
4y ago

A Path Traversal vulnerability in SmartVista Cardgen v3.28.0 allows authenticated attackers to read arbitrary files in the system.

A Path Traversal vulnerability in SmartVista Cardgen v3.28.0 allows authenticated attackers to read arbitrary files in the system.

▾ Sunlitbpcbt · smartvista_cardgenEPSS 1.0%via NVD
CVE-2022-37042Critical· 9.8CISA KEV0dayPoC
4y ago

Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it

Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. By bypassing authentication (i.e., not having an authtoken), an attacker can upload arbitrary files to t…

▾ Hadalsynacor · zimbra_collaboration_suiteEPSS 92%via NVD
CVE-2022-24992High· 7.5PoC
4y ago

A vulnerability in the component process.php of QR Code Generator v5.2.7 allows attackers to perform directory traversal.

A vulnerability in the component process.php of QR Code Generator v5.2.7 allows attackers to perform directory traversal.

▾ Midnightqr_code_generator_project · qr_code_generatorEPSS 1.5%via NVD
CVE-2022-28945Critical· 9.8
4y ago

An issue in Webbank WeCube v3.2.2 allows attackers to execute a directory traversal via a crafted ZIP file.

An issue in Webbank WeCube v3.2.2 allows attackers to execute a directory traversal via a crafted ZIP file.

▾ Midnightwebbank · webcubeEPSS 1.7%via NVD
CVE-2022-30333High· 7.5CISA KEVPoC
4y ago

RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file

RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file. NOTE: WinRAR and Android RAR are unaffected.

▾ Abyssalrarlab · unrarEPSS 99%via NVD
CVE-2021-45783Medium· 4.6PoC
4y ago

Bookeen Notea Firmware BK_R_1.0.5_20210608 is affected by a directory traversal vulnerability that allows an attacker to obtain sensitive information.

Bookeen Notea Firmware BK_R_1.0.5_20210608 is affected by a directory traversal vulnerability that allows an attacker to obtain sensitive information.

▾ Twilightbookeen · notea_firmwareEPSS 1.9%via NVD
CVE-2022-27925High· 7.2CISA KEVPoC
4y ago

Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it

Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. An authenticated user with administrator rights has the ability to upload arbitrary files to the system, l…

▾ Abyssalsynacor · zimbra_collaboration_suiteEPSS 99%via NVD
CVE-2021-37293Medium· 6.5
4y ago

A Directory Traversal vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 via the page GET parameter in index.php.

A Directory Traversal vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 via the page GET parameter in index.php.

▾ Sunlitkevinlab · 4st_l-bemsEPSS 1.4%via NVD
CVE-2022-23347High· 7.5PoC
4y ago

BigAnt Software BigAnt Server v5.6.06 was discovered to be vulnerable to directory traversal attacks.

BigAnt Software BigAnt Server v5.6.06 was discovered to be vulnerable to directory traversal attacks.

▾ Midnightbigantsoft · bigant_serverEPSS 13%via NVD
CVE-2022-22914High· 7.5
4y ago

An incorrect access control issue in the component FileManager of Ovidentia CMS 6.0 allows authenticated attackers to to view and download content in the upload directory via path traversal.

An incorrect access control issue in the component FileManager of Ovidentia CMS 6.0 allows authenticated attackers to to view and download content in the upload directory via path traversal.

▾ Twilightovidentia · ovidentiaEPSS 1.4%via NVD
CVE-2021-44674Medium· 6.5
4y ago

An information exposure issue has been discovered in Opmantek Open-AudIT 4.2.0

An information exposure issue has been discovered in Opmantek Open-AudIT 4.2.0. The vulnerability allows an authenticated attacker to read file outside of the restricted directory.

▾ Sunlitopmantek · open-auditEPSS 1.0%via NVD
CVE-2021-45418High· 8.8
4y ago

Certain Starcharge products are vulnerable to Directory Traversal via main.cgi

Certain Starcharge products are vulnerable to Directory Traversal via main.cgi. The affected products include: Nova 360 Cabinet <=1.3.0.0.6 - Fixed: 1.3.0.0.9 and Titan 180 Premium <=1.3.0.0.7b102 - Fixed: Beta1.3.0.1.0.

▾ Twilightstarcharge · titan_180_premium_firmwareEPSS 1.8%via NVD
CVE-2021-41449High· 7.1
4y ago

A path traversal attack in web interfaces of Netgear RAX35, RAX38, and RAX40 routers before v1.0.4.102, allows a remote unauthenticated attacker to gain access to sensitive restricted information, such as forbidden files of the web appli…

A path traversal attack in web interfaces of Netgear RAX35, RAX38, and RAX40 routers before v1.0.4.102, allows a remote unauthenticated attacker to gain access to sensitive restricted information, such as forbidden files of the web appli…

▾ Twilightnetgear · rax35_firmwareEPSS 1.6%via NVD
CVE-2021-29006Medium· 6.5PoC
4y ago

rConfig 3.9.6 is affected by a Local File Disclosure vulnerability

rConfig 3.9.6 is affected by a Local File Disclosure vulnerability. An authenticated user may successfully download any file on the server.

▾ Twilightrconfig · rconfigEPSS 5.6%via NVD
CVE-2021-40444High· 8.8CISA KEV0dayPoC
5y ago

Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows

Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exploit this vulnerability by using specially-crafted Microsoft …

▾ Abyssalmicrosoft · windows_10_1507EPSS 97%via NVD
CVE-2021-1256Medium· 6.0
5y ago

A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to overwrite files on the file system of an affected device by using directory traversal techniques

A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to overwrite files on the file system of an affected device by using directory traversal techniques. A successful ex…

▾ Sunlitcisco · secure_firewall_threat_defenseEPSS 0.50%via NVD
CVE-2021-20023Medium· 4.9CISA KEV0day
5y ago

SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to read an arbitrary file on the remote host.

SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to read an arbitrary file on the remote host.

▾ Midnightsonicwall · email_securityEPSS 51%via NVD
CVE-2021-29425Medium· 4.8PoC
5y ago

In Apache Commons IO before 2.7, When invoking the method FileNameUtils.normalize with an improper input string, like "//../foo", or "\\..\foo", the result would be the same value, thus possibly providing access to files in the parent di…

In Apache Commons IO before 2.7, When invoking the method FileNameUtils.normalize with an improper input string, like "//../foo", or "\\..\foo", the result would be the same value, thus possibly providing access to files in the parent di…

▾ Twilightapache · commons_ioEPSS 9.9%via NVD
CVE-2021-27065High· 7.8CISA KEV0dayPoC
5y ago

Microsoft Exchange Server Remote Code Execution Vulnerability

Microsoft Exchange Server Remote Code Execution Vulnerability

▾ Abyssalmicrosoft · exchange_serverEPSS 100%via NVD
CVE-2021-21972Critical· 9.8CISA KEV0dayPoC
5y ago

The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin

The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted privileges on the underl…

▾ Hadalvmware · cloud_foundationEPSS 100%via NVD
CVE-2021-27328Medium· 6.5PoC
5y ago

Yeastar NeoGate TG400 91.3.0.3 devices are affected by Directory Traversal

Yeastar NeoGate TG400 91.3.0.3 devices are affected by Directory Traversal. An authenticated user can decrypt firmware and can read sensitive information, such as a password or decryption key.

▾ Twilightyeastar · neogate_tg400_firmwareEPSS 6.4%via NVD
CVE-2017-15684High· 7.5
5y ago

Crafter CMS Crafter Studio 3.0.1 has a directory traversal vulnerability which allows unauthenticated attackers to view files from the operating system.

Crafter CMS Crafter Studio 3.0.1 has a directory traversal vulnerability which allows unauthenticated attackers to view files from the operating system.

▾ Twilightcraftercms · crafter_cmsEPSS 2.0%via NVD
CVE-2017-15681Critical· 9.8
5y ago

In Crafter CMS Crafter Studio 3.0.1 a directory traversal vulnerability exists which allows unauthenticated attackers to overwrite files from the operating system which can lead to RCE.

In Crafter CMS Crafter Studio 3.0.1 a directory traversal vulnerability exists which allows unauthenticated attackers to overwrite files from the operating system which can lead to RCE.

▾ Midnightcraftercms · crafter_cmsEPSS 2.0%via NVD
CVE-2020-3550High· 8.1
5y ago

A vulnerability in the sfmgr daemon of Cisco Firepower Management Center (FMC) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to perform directory traversal and access directories…

A vulnerability in the sfmgr daemon of Cisco Firepower Management Center (FMC) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to perform directory traversal and access directories…

▾ Twilightcisco · secure_firewall_management_centerEPSS 2.2%via NVD
CVE-2020-3365Medium· 4.3
6y ago

A vulnerability in the directory permissions of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to perform a directory traversal attack on a limited set of restricted directories

A vulnerability in the directory permissions of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to perform a directory traversal attack on a limited set of restricted directories. The vu…

▾ Sunlitcisco · enterprise_nfv_infrastructure_softwareEPSS 1.6%via NVD
CVE-2020-3452High· 7.5CISA KEVPoC
6y ago

A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct directory traversal attacks an…

A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct directory traversal attacks an…

▾ Abyssalcisco · secure_firewall_threat_defenseEPSS 100%via NVD
CVE-2020-3236Medium· 6.7
6y ago

A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to gain root shell access to the underlying operating system and overwrite or read arbitrary files

A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to gain root shell access to the underlying operating system and overwrite or read arbitrary files. The attac…

▾ Sunlitcisco · enterprise_nfv_infrastructure_softwareEPSS 0.47%via NVD
CVE-2020-1082High· 7.8
6y ago

An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files

An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files. The vulnerability could allow elevation of privilege if an attacker can successfully exploit it. An attacker who success…

▾ Twilightmicrosoft · windows_10EPSS 0.98%via NVD
CVE-2020-3187Critical· 9.1PoC
6y ago

A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct directory traversal attacks an…

A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct directory traversal attacks an…

▾ Abyssalcisco · secure_firewall_threat_defenseEPSS 97%via NVD
CWE-22 vulnerabilities (CVEs) — page 35 · VulnSea