Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3348

3348 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-4748 FlatPress File Delete panel.mediamanager.file.php doItemActions path traversal — FlatPress 5.5 Medium2022-12-27
CVE-2020-36629 SimbCo httpster server.coffee fs.realpathSync path traversal — httpster 5.5 Medium2022-12-25
CVE-2020-36628 Calsign APDE ZIP File CopyBuildTask.java handleExtract path traversal — APDE 5.5 Medium2022-12-25
CVE-2022-46171 Tauri vulnerable to path traversal — tauri 6.8 Medium2022-12-23
CVE-2022-43858 IBM Navigator for i information disclosure — Navigator for i 4.3 Medium2022-12-22
CVE-2022-43857 IBM Navigator for i information disclosure — Navigator for i 4.3 Medium2022-12-22
CVE-2022-3184 Dataprobe iBoot-PDU 路径遍历漏洞 — iBoot-PDU FW 9.8 Critical2022-12-21
CVE-2022-40607 IBM Spectrum Scale directory traversal — Spectrum Scale 6.8 Medium2022-12-19
CVE-2022-27498 Lansweeper 路径遍历漏洞 — lansweeper 6.5 -2022-12-19
CVE-2022-29511 Lansweeper 路径遍历漏洞 — lansweeper 6.5 -2022-12-19
CVE-2022-29517 Lansweeper 路径遍历漏洞 — lansweeper 9.9 Critical2022-12-19
CVE-2022-32573 Lansweeper 路径遍历漏洞 — lansweeper 9.9 Critical2022-12-19
CVE-2022-4594 drogatkin TJWS2 WarRoller.java deployWar path traversal — TJWS2 6.3 Medium2022-12-18
CVE-2022-4572 UBI Reader UBIFS File output.py ubireader_extract_files path traversal — UBI Reader 5.4 Medium2022-12-17
CVE-2022-4583 jLEMS JUtil.java unpackJar path traversal — jLEMS 6.3 Medium2022-12-17
CVE-2022-23530 GuardDog vulnerable to arbitrary file write when scanning a specially-crafted remote PyPI package — guarddog 5.8 Medium2022-12-16
CVE-2022-4511 RainyGao DocSys path traversal — DocSys 5.3 Medium2022-12-15
CVE-2022-23512 Metersphere is vulnerable to Path Injection. — metersphere 7.7 High2022-12-14
CVE-2022-34271 Apache Atlas: zip path traversal in import functionality — Apache Atlas 8.1 -2022-12-14
CVE-2022-4493 scifio ZIP File DefaultSampleFilesService.java downloadAndUnpackResource path traversal — scifio 6.3 Medium2022-12-14
CVE-2022-4494 bspkrs MCPMappingViewer ZIP File RemoteZipHandler.java extractZip path traversal — MCPMappingViewer 6.3 Medium2022-12-14
CVE-2022-46255 Improper Limitation of a Pathname to a Restricted Directory in GitHub Enterprise Server leading to RCE — GitHub Enterprise Server 9.8 -2022-12-14
CVE-2022-46256 Path traversal in GitHub Enterprise Server leading to remote code execution in GitHub Pages — GitHub Enterprise Server 8.8 -2022-12-14
CVE-2022-40264 Mitsubishi Electric GENESIS64 路径遍历漏洞 — GENESIS64 6.3 Medium2022-12-13
CVE-2022-4402 RainyGao DocSys ZIP File Decompression path traversal — DocSys 4.7 Medium2022-12-11
CVE-2022-45829 WordPress Easy WP SMTP Plugin <= 1.5.1 is vulnerable to Arbitrary File Deletion — Easy WP SMTP 8.7 High2022-12-06
CVE-2022-45833 WordPress Easy WP SMTP Plugin <= 1.5.1 is vulnerable to Directory Traversal — Easy WP SMTP 6.8 Medium2022-12-06
CVE-2022-46154 Arbitrary file access in KodExplorer — KodExplorer 8.6 High2022-12-06
CVE-2022-23470 Arbitrary file access in the Galaxy data analysis platform — galaxy 8.6 High2022-12-06
CVE-2022-2969 ICSA-22-307-03 Delta Industrial Automation DIALink Path traversal — DIALink 8.1 High2022-12-01

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3348 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.