Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3352

3352 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-30254 Directory traversal allowing overwriting arbitrary files — mesonlsp 5.8 Medium2024-04-04
CVE-2024-25693 Portal for ArcGIS has a directory traversal vulnerability. — Portal for ArcGIS 9.9 Critical2024-04-04
CVE-2016-15038 NUUO NVRmini 2 deletefile.php path traversal — NVRmini 2 6.5 Medium2024-04-01
CVE-2024-30492 WordPress Export and Import Users and Customers plugin <= 2.5.2 - Path Traversal vulnerability — Import Export WordPress Users 4.3 Medium2024-03-29
CVE-2024-3078 Qdrant Full Snapshot REST API snapshots.rs path traversal — Qdrant 5.5 Medium2024-03-29
CVE-2024-0980 Okta Verify 安全漏洞 — Okta Verify for Windows 8.8AIHighAI2024-03-27
CVE-2023-0582 Path Traversal in ForgeRock Access Managment — access management 8.1 High2024-03-27
CVE-2024-2203 The Plus Addons for Elementor <= 5.4.1 - Authenticated (Contributor+) Local File Inclusion via Clients Widget — The Plus Addons for Elementor – Addons for Elementor, Page Templates, Widgets, Mega Menu, WooCommerce 6.4 Medium2024-03-27
CVE-2024-2210 The Plus Addons for Elementor <= 5.4.1 - Authenticated (Contributor+) Local File Inclusion via Team Member Listing — The Plus Addons for Elementor – Addons for Elementor, Page Templates, Widgets, Mega Menu, WooCommerce 6.4 Medium2024-03-27
CVE-2024-25136 AutomationDirect C-MORE EA9 HMI Path Traversal — C-MORE EA9 HMI EA9-T6CL 7.5 High2024-03-26
CVE-2023-41973 Lack of input santization on Zscaler Client Connector enables arbitrary code execution — Client Connector 7.3 High2024-03-26
CVE-2024-29196 phpMyFAQ Path Traversal in Attachments — phpMyFAQ 3.8 Low2024-03-26
CVE-2024-2227 IdentityIQ JavaServer Faces File Path Traversal Vulnerability — IdentityIQ 10.0 Critical2024-03-22
CVE-2024-25567 Delta Electronics DIAEnergie Path traversal — DIAEnergie 8.1 High2024-03-21
CVE-2024-28171 Delta Electronics DIAEnergie Path traversal — DIAEnergie 8.1 High2024-03-21
CVE-2024-27921 Grav File Upload Path Traversal vulnerability — grav 8.8 High2024-03-21
CVE-2024-29180 webpack-dev-middleware Path Traversal vulnerability — webpack-dev-middleware 7.4 High2024-03-21
CVE-2023-41877 GeoServer log file path traversal vulnerability — geoserver 7.2 High2024-03-20
CVE-2024-27771 Unitronics Unistream Unilogic – Versions prior to 1.35.227 CWE-22: 'Path Traversal' — Unistream Unilogic 8.8 High2024-03-18
CVE-2024-27768 Unitronics Unistream Unilogic – Versions prior to 1.35.227 CWE-22: 'Path Traversal' — Unistream Unilogic 9.8 Critical2024-03-18
CVE-2024-2294 Backuply – Backup, Restore, Migrate and Clone <= 1.2.7 - Authenticated (Admin+) Directory Traversal — Backuply – Backup, Restore, Migrate and Clone 4.9 Medium2024-03-16
CVE-2024-25156 Path traversal in GoAnywhere MFT 7.4.1 and Earlier — GoAnywhere MFT 6.5 Medium2024-03-14
CVE-2024-22398 SonicWALL Email Security Appliance 路径遍历漏洞 — Email Security 6.5AIMediumAI2024-03-14
CVE-2024-27102 Improper isolation of server file access in github.com/pterodactyl/wings — wings 10.0 Critical2024-03-13
CVE-2024-1358 Elementor Addon Elements <= 1.12.12 - Directory Traversal to Local File Inclusion — Addon Elements for Elementor (formerly Elementor Addon Elements) 8.8 High2024-03-13
CVE-2024-25154 Path Traversal in FileCatalyst Direct 3.8.8 and Earlier — FileCatalyst 5.3 Medium2024-03-13
CVE-2024-27317 Apache Pulsar: Pulsar Functions Worker's Archive Extraction Vulnerability Allows Unauthorized File Modification — Apache Pulsar 8.4 High2024-03-12
CVE-2024-21400 Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability — Azure Kubernetes Service 9.0 Critical2024-03-12
CVE-2024-1303 Multiple Vulnerabilities in Badger Meter's Monitool — Monitool 6.5 Medium2024-03-12
CVE-2023-47221 Photo Station — Photo Station 5.5 Medium2024-03-08

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3352 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.