Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3334

3334 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2020-29495 DELL Dell EMC Avamar Server 操作系统命令注入漏洞 — Avamar 10.0 Critical2021-01-14
CVE-2020-29494 DELL Dell EMC Avamar Server 路径遍历漏洞 — Avamar 8.7 High2021-01-14
CVE-2021-21234 Directory Traversal — spring-boot-actuator-logview 7.7 High2021-01-05
CVE-2020-2504 Absolute path traversal vulnerability in QES — QES 5.8 Medium2020-12-24
CVE-2020-7535 Schneider Electric Modicon M340 路径遍历漏洞 — Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication Modules (see security notification for affected versions) 7.5 -2020-12-11
CVE-2020-14366 Red Hat Keycloak 路径遍历漏洞 — keycloak 6.8 Medium2020-11-09
CVE-2020-3588 Cisco Webex Meetings Desktop App Arbitrary Code Execution Vulnerability — Cisco Webex Meetings Desktop App 7.3 High2020-11-06
CVE-2020-27128 Cisco SD-WAN vManage Software Arbitrary File Creation Vulnerability — Cisco SD-WAN vManage 6.5 Medium2020-11-06
CVE-2020-15703 aptdaemon allows unprivileged users to test for the presence of local files via the transaction Locale property — aptdaemon 4.0 Medium2020-10-31
CVE-2020-3550 Cisco Firepower Management Center Software and Firepower Threat Defense Software Directory Traversal Vulnerability — Cisco Firepower Management Center 8.1 -2020-10-21
CVE-2020-15229 Path traversal and files overwrite with unsquashfs — singularity 8.2 High2020-10-14
CVE-2020-15239 Directory Traversal in xmpp-http-upload — xmpp-http-upload 3.5 Low2020-10-06
CVE-2020-15236 Directory Traversal in Wiki.js — wiki 8.6 High2020-10-05
CVE-2020-15230 Arbitrary file read un Vapor — vapor 8.5 High2020-10-02
CVE-2020-3130 Cisco Unity Connection Directory Traversal Vulnerability — Cisco Unity Connection 6.5 -2020-09-23
CVE-2020-3143 Cisco TelePresence Collaboration Endpoint, TelePresence Codec, and RoomOS Software Path Traversal Vulnerability — Cisco TelePresence TC Software 7.2 -2020-09-23
CVE-2020-15182 Cross-site Request Forgery leading to RCE in SOY CMS — soycms 8.4 High2020-09-17
CVE-2020-7529 SCADAPack Remote Connect 路径遍历漏洞 — SCADAPack 7x Remote Connect V3.6.3.574 and prior. 6.2 -2020-09-16
CVE-2020-7268 McAfee Email Gateway (MEG) - Path Traversal vulnerability — McAfee Email Gateway (MEG) 4.3 Medium2020-09-16
CVE-2020-3365 Cisco Enterprise NFV Infrastructure Software Path Traversal Vulnerability — Cisco Enterprise NFV Infrastructure Software 4.3 Medium2020-09-04
CVE-2020-6142 OS4Ed openSIS 路径遍历漏洞 — OS4Ed 9.8 -2020-09-01
CVE-2020-7522 Schneider Electric APC Easy UPS On-Line Software 路径遍历漏洞 — SFAPV9601 - APC Easy UPS On-Line Software V2.0 and earlier 9.8 -2020-08-31
CVE-2020-7521 Schneider Electric APC Easy UPS On-Line Software 路径遍历漏洞 — SFAPV9601 - APC Easy UPS On-Line Software V2.0 and earlier 9.8 -2020-08-31
CVE-2020-14352 Librepo 路径遍历漏洞 — librepo 6.8 -2020-08-30
CVE-2020-3440 Cisco Webex Meetings Desktop App for Windows Arbitrary File Overwrite Vulnerability — Cisco Webex Meetings 8.1 -2020-08-26
CVE-2020-3490 Cisco Vision Dynamic Signage Director Path Traversal Vulnerability — Cisco Vision Dynamic Signage Director 4.9 Medium2020-08-26
CVE-2020-17389 Marvell QConvergeConsole 路径遍历漏洞 — QConvergeConsole 8.8 -2020-08-25
CVE-2020-17387 Marvell QConvergeConsole 路径遍历漏洞 — QConvergeConsole 8.8 -2020-08-25
CVE-2020-15644 Marvell QConvergeConsole 路径遍历漏洞 — QConvergeConsole 8.8 -2020-08-25
CVE-2020-15641 Marvell QConvergeConsole 路径遍历漏洞 — QConvergeConsole 7.5 -2020-08-25

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3334 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.