Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3352

3352 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-25050 WordPress Shortcodes Ultimate plugin <= 5.12.6 - Arbitrary File Download vulnerability — Shortcodes Ultimate 7.1 High2024-05-17
CVE-2023-24379 WordPress Landing Page Builder – Free Landing Page Templates plugin <= 3.1.9.9 - Local File Inclusion vulnerability — Landing Page Builder – Free Landing Page Templates 6.8 Medium2024-05-17
CVE-2023-23888 WordPress Rank Math SEO plugin <= 1.0.107.2 - Local File Inclusion vulnerability — Rank Math SEO 7.6 High2024-05-17
CVE-2023-23872 WordPress GMAce plugin <= 1.5.2 - Arbitrary File Download vulnerability — GMAce 4.9 Medium2024-05-17
CVE-2023-23700 WordPress OceanWP theme <= 3.4.1 - Authenticated Local File Inclusion vulnerability — OceanWP 7.6 High2024-05-17
CVE-2022-45374 WordPress Yet Another Related Posts Plugin (YARPP) plugin <= 5.30.4 - Local File Inclusion — YARPP 7.7 High2024-05-17
CVE-2022-45368 WordPress 1003 Mortgage Application plugin <= 1.75 - Local File Inclusion — 1003 Mortgage Application 7.7 High2024-05-17
CVE-2024-34808 WordPress JCH Optimize plugin <= 4.2.0 - Path Traversal vulnerability — JCH Optimize 4.3 Medium2024-05-16
CVE-2024-4956 Nexus Repository 3 - Path Traversal — Nexus Repository 7.5 High2024-05-16
CVE-2024-3403 Local File Inclusion in imartinez/privategpt — imartinez/privategpt 9.1AICriticalAI2024-05-16
CVE-2024-3484 Path Traversal vulnerability found in iManager — iManager 5.7 Medium2024-05-15
CVE-2023-5938 Path traversal via 'zip slip' in Arc before v1.6.0 — Arc 8.0 High2024-05-15
CVE-2024-3318 SailPoint Identity Security Cloud Connector File Path Traversal Vulnerability — Identity Security Cloud 4.2 Medium2024-05-15
CVE-2024-32465 Git's protections for cloning untrusted repositories can be bypassed — git 7.4 High2024-05-14
CVE-2024-32002 Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution — git 9.1 Critical2024-05-14
CVE-2024-1630 Path traversal vulnerability in “getAllFolderContents” function of Common Service Desktop, a GE HealthCare ultrasound device component — Venue 7.7 High2024-05-14
CVE-2024-1629 Path traversal vulnerability in “deleteFiles” function of Common Service Desktop, a GE HealthCare ultrasound device component — Venue 6.2 Medium2024-05-14
CVE-2024-27946 Siemens RUGGEDCOM CROSSBOW 路径遍历漏洞 — RUGGEDCOM CROSSBOW 6.5 Medium2024-05-14
CVE-2024-4701 Path Traversal vulnerability via File Uploads in Genie — Genie 9.9 Critical2024-05-10
CVE-2024-24908 Dell DM5500 路径遍历漏洞 — Data Manager Appliance Software (DMAS) 6.5 Medium2024-05-08
CVE-2024-32113 Apache OFBiz: Path traversal leading to RCE — Apache OFBiz 7.5AIHighAI2024-05-08
CVE-2022-0369 Triangle MicroWorks SCADA Data Gateway Restore Workspace Directory Traversal Remote Code Execution Vulnerability — SCADA Data Gateway 8.8AIHighAI2024-05-07
CVE-2024-4346 Startklar Elementor Addons <= 1.7.13 - Unauthenticated Arbitrary File Deletion — Startklar Elementor Addons 9.1 Critical2024-05-07
CVE-2024-32807 WordPress Brevo for WooCommerce plugin <= 4.0.17 - Arbitrary File Download and Deletion vulnerability — Sendinblue for WooCommerce 8.5 High2024-05-06
CVE-2024-32982 Litestar and Starlite affected by Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') — litestar 8.2 High2024-05-06
CVE-2023-41825 Motorola Ready For 安全漏洞 — Phones 2.8 Low2024-05-03
CVE-2023-51603 Honeywell Saia PG5 Controls Suite CAB File Parsing Directory Traversal Remote Code Execution Vulnerability — Saia PG5 Controls Suite 7.8 -2024-05-03
CVE-2023-51599 Honeywell Saia PG5 Controls Suite Directory Traversal Remote Code Execution Vulnerability — Saia PG5 Controls Suite 7.8 -2024-05-03
CVE-2023-50233 Inductive Automation Ignition getJavaExecutable Directory Traversal Remote Code Execution Vulnerability — Ignition 8.8 -2024-05-03
CVE-2023-44451 Linux Mint Xreader EPUB File Parsing Directory Traversal Remote Code Execution Vulnerability — Xreader 7.8 -2024-05-03

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3352 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.