VulnSea

CWE-548

CVEs classified under CWE-548, newest first.

4 CVEsRSS

CVE-2026-82778Medium· 4.3
1w ago

An exposure of information through directory listing issue exists in CONPROSYS PAC Series

An exposure of information through directory listing issue exists in CONPROSYS PAC Series. Accessing a specific URL on this product may allow a remote unauthenticated attacker to obtain the directory list without authentication.

SunlitContec Co., Ltd. · Integrated Type CPS-PC341[][]-*-9201EPSS 0.26%via NVD
CVE-2026-82775Medium· 4.3
1w ago

An exposure of information through directory listing issue exists in CONPROSYS M2M Gateway Series and CONPROSYS M2M Controller Series

An exposure of information through directory listing issue exists in CONPROSYS M2M Gateway Series and CONPROSYS M2M Controller Series. Accessing a specific URL on this product may allow a remote unauthenticated attacker to obtain the dir…

SunlitContec Co., Ltd. · M2M Gateway Integrated Type CPS-MG341*EPSS 0.32%via NVD
CVE-2025-32750High· 7.5
4mo ago

Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability

Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Informatio…

Twilightdell · powerflex_appliance_intelligent_catalogEPSS 0.35%via NVD
CVE-2026-22860High· 7.5
7mo ago

Rack is a modular Ruby web server interface

Rack is a modular Ruby web server interface. Prior to versions 2.2.22, 3.1.20, and 3.2.5, `Rack::Directory`’s path check used a string prefix match on the expanded path. A request like `/../root_example/` can escape the configured root i…

Twilightrack · rackEPSS 0.68%via NVD
CWE-548 vulnerabilities (CVEs) · VulnSea