Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3330

3330 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2017-16744 Tridium Niagara AX Framework和Niagara 4 Framework 路径遍历漏洞 — Niagara AX Framework and Niagara 4 Framework 7.2 -2018-08-20
CVE-2018-10917 Pulp 安全漏洞 — pulp 6.5 -2018-08-15
CVE-2018-11455 Siemens Automation License Manager 安全漏洞 — Automation License Manager 5, Automation License Manager 6 8.8 -2018-08-07
CVE-2017-2595 Red Hat JBoss Enterprise Application 路径遍历漏洞 — wildfly 6.5 -2018-07-27
CVE-2018-1002200 plexus-archiver 路径遍历漏洞 — plexus-archiver 5.5 -2018-07-25
CVE-2018-1002201 zt-zip 路径遍历漏洞 — zt-zip 5.5 -2018-07-25
CVE-2018-1002202 zip4j 路径遍历漏洞 — zip4j 5.5 -2018-07-25
CVE-2018-1002203 unzipper npm library 路径遍历漏洞 — unzipper 5.5 -2018-07-25
CVE-2018-1002204 adm-zip npm library 路径遍历漏洞 — adm-zip 5.5 -2018-07-25
CVE-2018-1002205 DotNetZip.Semvered 路径遍历漏洞 — DotNetZip.Semvered 5.5 -2018-07-25
CVE-2018-1002206 SharpCompress 路径遍历漏洞 — SharpCompress 5.5 -2018-07-25
CVE-2018-1002207 mholt/archiver golang包路径遍历漏洞 — archiver 5.5 -2018-07-25
CVE-2018-1002208 sharplibzip 路径遍历漏洞 — SharpZipLib 5.5 -2018-07-25
CVE-2018-1002209 QuaZIP 路径遍历漏洞 — quazip 5.5 -2018-07-25
CVE-2017-3188 The dotCMS administration panel, versions 3.7.1 and earlier, "Push Publishing" feature in Enterprise Pro is vulnerable to path traversal — Administration Panel 7.5 -2018-07-24
CVE-2018-3770 markdown-pdf 路径遍历漏洞 — markdown-pdf 5.5 -2018-07-20
CVE-2018-10870 Redhat redhat-certification 安全漏洞 — rhcertstore.py 9.8 -2018-07-19
CVE-2016-9484 PHP FormMail Generator generates PHP code for standard web forms, and the code generated does not properly validate user input folder directories and is vulnerable to path traversal — Generator 7.5 -2018-07-13
CVE-2018-3766 buttle模块路径遍历漏洞 — buttle 7.5 -2018-07-05
CVE-2018-10860 perl-archive-zip 路径遍历漏洞 — perl-archive-zip 7.5 -2018-06-29
CVE-2018-3760 Sprockets 信息泄露漏洞 — Sprockets 7.5 -2018-06-26
CVE-2018-4861 Siemens SCALANCE M875 信息泄露漏洞 — SCALANCE M875 4.9 -2018-06-26
CVE-2018-0300 Cisco Firepower 4100 Series Next-Generation Firewall和Firepower 9300 Security Appliance 路径遍历漏洞 — Cisco Firepower 4100 Series Next-Generation Firewall and Firepower 9300 Security Appliance unknown 7.2 -2018-06-21
CVE-2018-1103 Red Hat Openshift Enterprise source-to-image 安全漏洞 — unsanitized paths in tar.go 6.5 -2018-06-12
CVE-2018-3758 express-cart 安全漏洞 — express-cart 7.2 -2018-06-07
CVE-2017-16083 node-simple-router 路径遍历漏洞 — node-simple-router node module 7.5 -2018-06-07
CVE-2017-16084 list-n-stream 路径遍历漏洞 — list-n-stream node module 7.5 -2018-06-07
CVE-2017-16085 tinyserver 路径遍历漏洞 — tinyserver2 node module 7.5 -2018-06-07
CVE-2017-16089 serverlyr 路径遍历漏洞 — serverlyr node module 7.5 -2018-06-07
CVE-2017-16090 fsk-server 路径遍历漏洞 — fsk-server node module 7.5 -2018-06-07

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3330 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.