Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3352

3352 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2010-10011 Acritum Femitter Server path traversal — Femitter Server 4.3 Medium2024-01-12
CVE-2023-49569 Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients — go-git 9.8 Critical2024-01-12
CVE-2023-5504 BackWPup <= 4.0.1 - Authenticated (Administrator+) Directory Traversal — BackWPup – WordPress Backup & Restore Plugin 8.7 High2024-01-11
CVE-2023-37932 Fortinet FortiVoice 路径遍历漏洞 — FortiVoice 6.2 Medium2024-01-10
CVE-2023-48249 Bosch Nexo Cordless nutrunner 安全漏洞 — Nexo cordless nutrunner NXA015S-36V (0608842001) 6.5 Medium2024-01-10
CVE-2023-48246 Bosch Nexo cordless nutrunner 安全漏洞 — Nexo cordless nutrunner NXA015S-36V (0608842001) 6.5 Medium2024-01-10
CVE-2023-48243 Bosch Nexo cordless nutrunner 安全漏洞 — Nexo cordless nutrunner NXA015S-36V (0608842001) 8.1 High2024-01-10
CVE-2023-48242 Bosch Nexo cordless nutrunner 安全漏洞 — Nexo cordless nutrunner NXA015S-36V (0608842001) 6.5 Medium2024-01-10
CVE-2023-47211 ZOHO ManageEngine OpManager 路径遍历漏洞 — OpManager 9.1 Critical2024-01-08
CVE-2024-22050 Iodine Static File Server Path Traversal Vulnerability 7.5AIHighAI2024-01-04
CVE-2024-21633 Arbitrary file write on Decoding — Apktool 7.8 High2024-01-03
CVE-2023-41780 Unsafe DLL Loading Vulnerability in ZTE ZXCLOUD iRAI — ZXCLOUD iRAI 6.4 Medium2024-01-03
CVE-2023-52085 Winter CMS Local File Inclusion through Server Side Template Injection — winter 3.3 Low2023-12-29
CVE-2023-6190 Authenicated Path Traversal in İzmir Katip Çelebi University — University Information Management System 9.8 Critical2023-12-27
CVE-2023-6972 Backup Migration <= 1.3.9 - Unauthenticated Path Traversal to Arbitrary File Deletion — BackupBliss – Backup & Migration with Free Cloud Storage 9.8 Critical2023-12-23
CVE-2023-51651 Potential URI resolution path traversal in the AWS SDK for PHP — aws-sdk-php 6.0 Medium2023-12-22
CVE-2023-51449 Make the `/file` secure against file traversal attacks — gradio 5.6 Medium2023-12-22
CVE-2023-46645 Path traversal in GitHub Enterprise Server leading to arbitrary file reading when building a GitHub Pages site — Enterprise Server 6.8 Medium2023-12-21
CVE-2023-6562 Kakadu Software SDK 路径遍历漏洞 — Kakadu SDK 7.5 High2023-12-20
CVE-2023-47702 IBM Security Guardium Key Lifecycle Manager directory traversal — Security Guardium Key Lifecycle Manager 4.3 Medium2023-12-20
CVE-2023-38126 Softing edgeAggregator Restore Configuration Directory Traversal Remote Code Execution Vulnerability — edgeAggregator 8.8 -2023-12-19
CVE-2023-46177 IBM MQ Appliance information disclosure — MQ Appliance 6.5 Medium2023-12-18
CVE-2023-6908 DFIRKuiper TAR Archive case_management.py unzip_file path traversal — Kuiper 3.1 Low2023-12-18
CVE-2023-6893 Hikvision Intercom Broadcasting System exportrecord.php path traversal — Intercom Broadcasting System 4.3 Medium2023-12-17
CVE-2023-6559 MW WP Form <= 5.0.3 - Improper Limitation of File Name to Unauthenticated Arbitrary File Deletion — MW WP Form 7.5 High2023-12-16
CVE-2023-50265 Bazarr Arbitrary file read in /api/swaggerui/static endpoint — bazarr 7.5 High2023-12-15
CVE-2023-50264 Bazarr Arbitrary file read in /system/backup/download/ endpoint — bazarr 7.5 High2023-12-15
CVE-2023-48389 Multisuns EasyLog web+ - Path Traversal — EasyLog web+ 7.5 High2023-12-15
CVE-2023-48382 Softnext Mail SQR Expert - Local File Inclusion-2 — Mail SQR Expert 6.5 Medium2023-12-15
CVE-2023-48381 Softnext Mail SQR Expert - Local File Inclusion-1 — Mail SQR Expert 6.5 Medium2023-12-15

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3352 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.