Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3336

3336 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-7626 YiJiuSmile kkFileViewOfficeEdit onlinePreview path traversal — kkFileViewOfficeEdit 4.3 Medium2025-07-14
CVE-2025-7625 YiJiuSmile kkFileViewOfficeEdit download path traversal — kkFileViewOfficeEdit 4.3 Medium2025-07-14
CVE-2024-26292 Authenticated Arbitrary File Deletion affecting Avid NEXIS — Avid NEXIS E-series 6.5AIMediumAI2025-07-14
CVE-2025-7575 Zavy86 WikiDocs submit.php image_delete_ajax path traversal — WikiDocs 4.7 Medium2025-07-14
CVE-2025-7566 jshERP SystemConfigController.java exportExcelByParam path traversal — jshERP 4.7 Medium2025-07-14
CVE-2025-7488 JoeyBling SpringBoot_MyBatisPlus download path traversal — SpringBoot_MyBatisPlus 4.3 Medium2025-07-12
CVE-2025-7518 RSFirewall! <= 1.1.42 - Authenticated (Admin+) Arbitrary File Read — RSFirewall! 4.9 Medium2025-07-12
CVE-2025-7452 kone-net go-chat Endpoint file_controller.go GetFile path traversal — go-chat 6.3 Medium2025-07-11
CVE-2025-7450 letseeqiji gorobbs API user.go ResetUserAvatar path traversal — gorobbs 5.4 Medium2025-07-11
CVE-2025-46704 Advantech iView Path Traversal — iView 4.3 Medium2025-07-10
CVE-2025-53632 Chall-Manager's scenario decoding process does not check for zip slips — chall-manager 7.5AIHighAI2025-07-10
CVE-2025-4828 Support Board <= 3.8.0 - Unauthenticated Arbitrary File Deletion — Support Board 9.8 Critical2025-07-08
CVE-2025-40738 Siemens SINEC NMS 路径遍历漏洞 — SINEC NMS 8.8 High2025-07-08
CVE-2025-40737 Siemens SINEC NMS 路径遍历漏洞 — SINEC NMS 8.8 High2025-07-08
CVE-2025-42970 Directory Traversal vulnerability in SAPCAR — SAPCAR 5.8 Medium2025-07-08
CVE-2025-53375 Dokploy allows attackers to read any file that the Traefik process user can access — dokploy 8.8AIHighAI2025-07-07
CVE-2025-6806 Marvell QConvergeConsole decryptFile Directory Traversal Arbitrary File Write Vulnerability — QConvergeConsole 7.5AIHighAI2025-07-07
CVE-2025-6807 Marvell QConvergeConsole getDriverTmpPath Directory Traversal Information Disclosure Vulnerability — QConvergeConsole 7.5AIHighAI2025-07-07
CVE-2025-6795 Marvell QConvergeConsole getFileUploadSize Directory Traversal Information Disclosure Vulnerability — QConvergeConsole 7.5AIHighAI2025-07-07
CVE-2025-6794 Marvell QConvergeConsole saveAsText Directory Traversal Remote Code Execution Vulnerability — QConvergeConsole 9.8AICriticalAI2025-07-07
CVE-2025-6801 Marvell QConvergeConsole saveNICParamsToFile Directory Traversal Arbitrary File Write Vulnerability — QConvergeConsole 7.5AIHighAI2025-07-07
CVE-2025-6800 Marvell QConvergeConsole restoreESwitchConfig Directory Traversal Information Disclosure Vulnerability — QConvergeConsole 7.5AIHighAI2025-07-07
CVE-2025-6799 Marvell QConvergeConsole getFileUploadBytes Directory Traversal Information Disclosure Vulnerability — QConvergeConsole 7.5AIHighAI2025-07-07
CVE-2025-6798 Marvell QConvergeConsole deleteAppFile Directory Traversal Arbitrary File Deletion Vulnerability — QConvergeConsole 9.1AICriticalAI2025-07-07
CVE-2025-6797 Marvell QConvergeConsole getFileUploadBytes Directory Traversal Information Disclosure Vulnerability — QConvergeConsole 7.5AIHighAI2025-07-07
CVE-2025-6805 Marvell QConvergeConsole deleteEventLogFile Directory Traversal Arbitrary File Deletion Vulnerability — QConvergeConsole 9.1AICriticalAI2025-07-07
CVE-2025-6796 Marvell QConvergeConsole getAppFileBytes Directory Traversal Information Disclosure Vulnerability — QConvergeConsole 7.5AIHighAI2025-07-07
CVE-2025-6793 Marvell QConvergeConsole QLogicDownloadImpl Directory Traversal Arbitrary File Deletion and Information Disclosure Vulnerability — QConvergeConsole 9.1AICriticalAI2025-07-07
CVE-2025-6804 Marvell QConvergeConsole compressFirmwareDumpFiles Directory Traversal Information Disclosure Vulnerability — QConvergeConsole 7.5AIHighAI2025-07-07
CVE-2025-6803 Marvell QConvergeConsole compressDriverFiles Directory Traversal Information Disclosure Vulnerability — QConvergeConsole 7.5AIHighAI2025-07-07

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3336 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.