Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3344

3344 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-9032 SourceCodester Simple Forum-Discussion System index.php path traversal — Simple Forum-Discussion System 6.3 Medium2024-09-20
CVE-2024-8963 Ivanti Cloud Services Appliance 安全漏洞 — CSA (Cloud Services Appliance) 9.4 Critical2024-09-19
CVE-2024-45601 Local file Inclusion via static file serving functionality in Mesop — mesop 7.5 High2024-09-18
CVE-2024-45604 Directory traversal in the file selector widget in contao/core-bundle — contao 4.3 Medium2024-09-17
CVE-2021-27916 Relative Path Traversal / Arbitrary File Deletion in Mautic (GrapesJS Builder) — Mautic 8.1 High2024-09-17
CVE-2024-8752 WebIQ 2.15.9 Runtime on Windows - Directory Traversal Vulnerability — WebIQ 7.5 -2024-09-16
CVE-2024-8876 xiaohe4966 TpMeCMS lang path traversal — TpMeCMS 4.3 Medium2024-09-15
CVE-2024-8875 vedees wcms finder.php path traversal — wcms 5.4 Medium2024-09-15
CVE-2024-8865 composiohq composio api.py path path traversal — composio 3.5 Low2024-09-15
CVE-2024-8782 JFinalCMS edit delete path traversal — JFinalCMS 6.3 Medium2024-09-13
CVE-2024-7961 Rockwell Automation Path Traversal Vulnerability in Pavilion8® — Pavilion8® 9.8AICriticalAI2024-09-12
CVE-2024-8707 云课网络科技有限公司 Yunke Online School System Appadmin.php downfile path traversal — Yunke Online School System 4.3 Medium2024-09-12
CVE-2024-8706 JFinalCMS com.cms.util.TemplateUtils update path traversal — JFinalCMS 4.3 Medium2024-09-11
CVE-2024-8694 JFinalCMS com.cms.controller.admin.TemplateController update path traversal — JFinalCMS 3.8 Low2024-09-11
CVE-2024-7609 Directory Traversal in Vidco Software's VOC TESTER — VOC TESTER 6.5AIMediumAI2024-09-11
CVE-2024-45593 Nix affected by unsafe NAR unpacking — nix 9.1 Critical2024-09-10
CVE-2024-21753 Fortinet FortiClientEMS 路径遍历漏洞 — FortiClientEMS 5.5 Medium2024-09-10
CVE-2024-8585 LEARNING DIGITAL Orca HCM - Arbitrary File Download — Orca HCM 6.5 Medium2024-09-09
CVE-2024-21904 QTS, QuTS hero — QTS 5.9 Medium2024-09-06
CVE-2023-51366 QTS, QuTS hero — QTS 8.7 High2024-09-06
CVE-2024-6445 Authenticated Local File Inclusion (LFI) in DataFlowX's DataDiodeX — DataDiodeX 6.5 -2024-09-06
CVE-2024-45401 stripe-cli Path Traversal vulnerability — stripe-cli 7.6 High2024-09-05
CVE-2024-45074 IBM webMethods Integration directory traversal — webMethods Integration 6.5 Medium2024-09-04
CVE-2024-8410 ABCD ABCD2 otros_sitios.php path traversal — ABCD2 4.3 Medium2024-09-04
CVE-2024-8104 The Ultimate WordPress Toolkit – WP Extended <= 3.0.8 - Directory Traversal to Authenticated (Subscriber+) Arbitrary File Download — The Ultimate WordPress Toolkit – WP Extended 8.8 High2024-09-04
CVE-2024-7950 WP Job Portal <= 2.1.6 - Missing Authorization to Unauthenticated Local File Inclusion, Arbitrary Settings Update, and User Creation — WP Job Portal – AI-Powered Recruitment System for Company or Job Board website 9.8 Critical2024-09-04
CVE-2024-45443 Huawei HarmonyOS 安全漏洞 — HarmonyOS 6.1 Medium2024-09-04
CVE-2024-43797 Path Traversal in audiobookshelf — audiobookshelf 6.3 Medium2024-09-02
CVE-2024-42471 Arbitrary File Write via artifact extraction in actions/artifact — toolkit 7.3 High2024-09-02
CVE-2024-43957 WordPress Animated Number Counters plugin <= 1.9 - Editor+ Limited Local File Inclusion vulnerability — Animated Number Counters 6.5 Medium2024-08-29

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3344 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.