Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3341

3341 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-27395 Siemens SCALANCE LPE9403 路径遍历漏洞 — SCALANCE LPE9403 7.2 High2025-03-11
CVE-2025-1661 HUSKY – Products Filter Professional for WooCommerce <= 1.3.6.5 - Unauthenticated Local File Inclusion — HUSKY – Products Filter Professional for WooCommerce 9.8 Critical2025-03-11
CVE-2025-27519 Cognita Arbitrary File Write — cognita 9.8 -2025-03-07
CVE-2024-10804 Ultimate Video Player <= 10.0 - Unauthenticated Arbitrary File Download — Ultimate Video Player WordPress & WooCommerce Plugin 7.5 High2025-03-07
CVE-2024-12035 CS Framework <= 7.0 - Authenticated (Subscriber+) Arbitrary File Deletion — CS Framework 8.8 High2025-03-07
CVE-2025-2032 ChestnutCMS rename renameFile path traversal — ChestnutCMS 3.5 Low2025-03-06
CVE-2024-13894 Path traversal in Smartwares cameras — CIP-37210AT 6.5 -2025-03-06
CVE-2024-13897 Moving Media Library <= 1.22 - Authenticated (Administrator+) Directory Traversal to Arbitrary File Deletion — Moving Media Library 6.5 Medium2025-03-06
CVE-2025-23416 Keysight Ixia Vision Product Family Path Traversal — Ixia Vision Product Family 4.9 Medium2025-03-05
CVE-2025-21095 Keysight Ixia Vision Product Family Path Traversal — Ixia Vision Product Family 4.9 Medium2025-03-05
CVE-2025-24494 Keysight Ixia Vision Product Family Path Traversal — Ixia Vision Product Family 7.2 High2025-03-05
CVE-2024-13471 DesignThemes Core Features <= 4.7 - Missing Authorization to Unauthenticated Arbitrary File Read via dt_process_imported_file — DesignThemes Core Features 7.5 High2025-03-05
CVE-2025-1915 Google Chrome 路径遍历漏洞 — Chrome 6.5 -2025-03-05
CVE-2024-51966 Directory traversal vulnerability in ArcGIS Server — ArcGIS Server 4.9 Medium2025-03-03
CVE-2024-51958 Directory traversal vulnerability in the admin api for service thumbnails — ArcGIS Server 4.9 Medium2025-03-03
CVE-2024-8262 Path Traversal in Proliz Software's OBS — OBS 9.8 Critical2025-03-03
CVE-2025-26534 WordPress Helloprint Plugin <= 2.0.7 - Arbitrary File Deletion vulnerability — Helloprint 8.6 High2025-03-03
CVE-2025-26540 WordPress Helloprint Plugin <= 2.0.7 - Arbitrary File Deletion vulnerability — Helloprint 7.7 High2025-03-03
CVE-2025-25162 WordPress Sports Rankings and Lists plugin <= 2.3 - Arbitrary File Download vulnerability — Sports Rankings and Lists 7.1 High2025-03-03
CVE-2025-27590 Oxidized Web 路径遍历漏洞 — Oxidized Web 9.0 Critical2025-03-03
CVE-2024-13910 Database Backup and check Tables Automated With Scheduler 2024 <= 2.36 - Authenticated (Administrator+) Arbitrary File Deletion — Database Backup and Table Integrity Check with Automated Scheduling 7.2 High2025-03-01
CVE-2025-27413 PwnDoc Arbitrary File Write to RCE using Path Traversal in template update from backup templates.json — pwndoc 6.5 Medium2025-02-28
CVE-2025-0823 IBM MQ path traversal — Cognos Analytics 6.5 Medium2025-02-28
CVE-2025-1743 zyx0814 Pichome index.php path traversal — Pichome 5.3 Medium2025-02-27
CVE-2024-54169 IBM EntireX path traversal — EntireX 6.5 Medium2025-02-27
CVE-2025-1282 Car Dealer Automotive WordPress Theme – Responsive <= 1.6.3 - Authenticated (Subscriber+) Arbitrary File Deletion and Read — Car Dealer Automotive WordPress Theme – Responsive 8.8 High2025-02-27
CVE-2022-25773 Relative Path Traversal in assets file upload — mautic/core 4.3 Medium2025-02-26
CVE-2025-27142 LocalSend path traversal vulnerability in the file upload endpoint allows nearby devices to execute arbitrary commands — localsend 8.0 -2025-02-25
CVE-2025-26905 WordPress Estatik plugin <= 4.3.1 - Local File Inclusion vulnerability — Estatik 7.5 High2025-02-25
CVE-2025-26752 WordPress VideoWhisper Live Streaming Integration plugin <= 6.2 - Arbitrary File Deletion vulnerability — Broadcast Live Video 8.6 High2025-02-25

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3341 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.