VulnSea

CWE-22

CVEs classified under CWE-22, newest first.

1061 CVEsRSS

CVE-2019-19781Critical· 9.8CISA KEVPoC
6y ago

An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0

An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. They allow Directory Traversal.

▾ Hadalcitrix · application_delivery_controller_firmwareEPSS 100%via NVD
CVE-2019-1952Medium· 6.7
7y ago

A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to overwrite or read arbitrary files

A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to overwrite or read arbitrary files. The attacker would need valid administrator privilege-level credentials…

▾ Sunlitcisco · enterprise_nfv_infrastructure_softwareEPSS 0.72%via NVD
CVE-2019-7106Critical· 9.8
7y ago

Adobe XD versions 16.0 and earlier have a path traversal vulnerability

Adobe XD versions 16.0 and earlier have a path traversal vulnerability. Successful exploitation could lead to arbitrary code execution.

▾ Midnightadobe · xdEPSS 6.2%via NVD
CVE-2019-7105Critical· 9.8
7y ago

Adobe XD versions 16.0 and earlier have a path traversal vulnerability

Adobe XD versions 16.0 and earlier have a path traversal vulnerability. Successful exploitation could lead to arbitrary code execution.

▾ Midnightadobe · xdEPSS 6.2%via NVD
CVE-2019-10869High· 8.1PoC
7y ago

Path Traversal and Unrestricted File Upload exists in the Ninja Forms plugin before 3.0.23 for WordPress (when the Uploads add-on is activated)

Path Traversal and Unrestricted File Upload exists in the Ninja Forms plugin before 3.0.23 for WordPress (when the Uploads add-on is activated). This allows an attacker to traverse the file system to access files and execute code via the…

▾ Midnightninjaforms · ninja_forms_file_uploadsEPSS 8.0%via NVD
CVE-2018-20250High· 7.8CISA KEVPoC
7y ago

In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field of the ACE format (in UNACEV2.dll)

In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field of the ACE format (in UNACEV2.dll). When the filename field is manipulated with specific patterns, the destination (ex…

▾ Abyssalrarlab · winrarEPSS 96%via NVD
CVE-2018-8727High· 7.5PoC
8y ago

Path Traversal in Gateway in Mirasys DVMS Workstation 5.12.6 and earlier allows an attacker to traverse the file system to access files or directories via the Web Client webserver.

Path Traversal in Gateway in Mirasys DVMS Workstation 5.12.6 and earlier allows an attacker to traverse the file system to access files or directories via the Web Client webserver.

▾ Midnightmirasys · dvms_workstationEPSS 8.0%via NVD
CVE-2018-0296High· 7.5CISA KEVPoC
8y ago

A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition

A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. It …

▾ Abyssalcisco · firepower_threat_defenseEPSS 100%via NVD
CVE-2015-7601High· 7.8PoC
11y ago

Directory traversal vulnerability in PCMan's FTP Server 2.0.7 allows remote attackers to read arbitrary files via a ..// (dot dot double slash) in a RETR command.

Directory traversal vulnerability in PCMan's FTP Server 2.0.7 allows remote attackers to read arbitrary files via a ..// (dot dot double slash) in a RETR command.

▾ Midnightpcman · ftp_serverEPSS 58%via NVD
CVE-2010-4634Medium· 5.0
15y ago

Directory traversal vulnerability in osTicket 1.6 allows remote attackers to read arbitrary files via a .

Directory traversal vulnerability in osTicket 1.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to module.php, a different vector than CVE-2005-1439. NOTE: this issue has been disputed by a rel…

▾ Sunlitenhancesoft · osticketEPSS 2.5%via NVD
CVE-2010-2861Critical· 9.8CISA KEVPoC
16y ago

Multiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to read arbitrary files via the locale parameter to (1) CFIDE/administrator/settings/mappings.cfm, (2)…

Multiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to read arbitrary files via the locale parameter to (1) CFIDE/administrator/settings/mappings.cfm, (2)…

▾ Hadaladobe · coldfusionEPSS 100%via NVD
CWE-22 vulnerabilities (CVEs) — page 36 · VulnSea