Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3352

3352 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-25688 IBM Security Key Lifecycle Manager information disclosure — Security Key Lifecycle Manager 4.3 Medium2023-03-21
CVE-2023-25689 IBM Security Key Lifecycle Manager information disclosure — Security Key Lifecycle Manager 2.7 Low2023-03-21
CVE-2023-27981 Schneider Electric IGSS Data Server 路径遍历漏洞 — IGSS Data Server(IGSSdataServer.exe) 7.8 High2023-03-21
CVE-2023-1467 SourceCodester Student Study Center Desk Management System POST Parameter path traversal — Student Study Center Desk Management System 6.5 Medium2023-03-17
CVE-2023-28105 Go-huge-util vulnerable to path traversal when unzipping files — go-huge-util 8.8 High2023-03-16
CVE-2023-21456 SAMSUNG Mobile Devices 路径遍历漏洞 — Samsung Mobile Devices 9.0 Critical2023-03-16
CVE-2023-25804 Roxy-WI vulnerable to Limited Path Traversal in name parameter — roxy-wi 7.5 High2023-03-15
CVE-2022-47595 WordPress WP Google Maps Plugin <= 9.0.15 is vulnerable to Path Traversal — WP Go Maps (formerly WP Google Maps) 4.9 Medium2023-03-14
CVE-2023-27501 Directory Traversal vulnerability in SAP NetWeaver AS for ABAP and ABAP Platform — NetWeaver AS for ABAP and ABAP Platform 8.7 High2023-03-14
CVE-2023-27500 Directory Traversal vulnerability in SAP NetWeaver AS for ABAP and ABAP Platform — NetWeaver AS for ABAP and ABAP Platform (SAPRSBRO Program) 9.6 Critical2023-03-14
CVE-2023-27269 Directory Traversal vulnerability in SAP NetWeaver AS for ABAP and ABAP Platform — NetWeaver Application Server for ABAP and ABAP Platform 9.6 Critical2023-03-14
CVE-2022-31474 WordPress BackupBuddy Plugin 8.5.8.0-8.7.4.1 is vulnerable to Directory Traversal — BackupBuddy 7.5 High2023-03-13
CVE-2023-25803 Roxy-WI 路径遍历漏洞 — roxy-wi 7.5 High2023-03-13
CVE-2023-27577 Path Traversal Vulnerability in `LESS` Parser allows reading of sensitive server files in flarum — framework 6.6 Medium2023-03-10
CVE-2023-25814 Arbitrary File Read Vulnerability in metersphere — metersphere 7.1 High2023-03-09
CVE-2023-23760 Path traversal in GitHub Enterprise Server leading to remote code execution — Enterprise Server 4.9 Medium2023-03-08
CVE-2023-27475 Goutil vulnerable to path traversal when unzipping files — goutil 8.8 High2023-03-07
CVE-2022-41328 Fortinet FortiOS 路径遍历漏洞 — FortiOS 6.5 Medium2023-03-07
CVE-2017-20181 hgzojer Vocable Trainer VocableTrainerProvider.java path traversal — Vocable Trainer 5.3 Medium2023-03-06
CVE-2023-1191 fastcms ZIP File TemplateController.java path traversal — fastcms 4.7 Medium2023-03-06
CVE-2023-26111 node-static 路径遍历漏洞 — @nubosoftware/node-static 7.5 High2023-03-06
CVE-2023-1163 DrayTek Vigor 2960 Web Management Interface mainfunction.cgi getSyslogFile path traversal — Vigor 2960 6.5 Medium2023-03-03
CVE-2020-5001 IBM Financial Transaction Manager path traversal — Financial Transaction Manager 4.3 Medium2023-03-01
CVE-2023-1009 DrayTek Vigor 2960 Web Management Interface mainfunction.cgi sub_1DF14 path traversal — Vigor 2960 6.5 Medium2023-02-24
CVE-2023-1002 MuYuCMS index.php path traversal — MuYuCMS 4.3 Medium2023-02-24
CVE-2023-25579 Directory traversal in Nextcloud server — security-advisories 6.0 Medium2023-02-22
CVE-2023-0947 Path Traversal in flatpressblog/flatpress — flatpressblog/flatpress 9.8 -2023-02-22
CVE-2023-24960 IBM InfoSphere Information Server information disclosure — InfoSphere Information Server 7.5 High2023-02-17
CVE-2023-0862 Path Traversal in NetModule NSRW — NSRW 7.2 High2023-02-16
CVE-2023-22380 Path traversal in GitHub Enterprise Server leading to arbitrary file reading when building a GitHub Pages site — GitHub Enterprise Server 6.5 -2023-02-16

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3352 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.