Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3341

3341 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-1657 JupiterX Theme <= 2.0.6 and Jupiter Theme <= 6.10.1 - Authenticated Path Traversal and Local File Inclusion — Jupiter 8.8 High2022-06-13
CVE-2022-29094 Dell SupportAssist Client 路径遍历漏洞 — SupportAssist Client Consumer 7.1 High2022-06-10
CVE-2022-29093 Dell SupportAssist Client 路径遍历漏洞 — SupportAssist Client Commercial 7.1 High2022-06-10
CVE-2021-42811 Vulnerability in SafeNet KeySecure — SafeNet KeySecure 3.3 Low2022-06-10
CVE-2022-1993 Path Traversal in gogs/gogs — gogs/gogs 7.5 -2022-06-08
CVE-2022-1992 Path Traversal in gogs/gogs — gogs/gogs 7.5 -2022-06-08
CVE-2022-24840 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in django-s3file — django-s3file 9.1 Critical2022-06-06
CVE-2022-31483 Arbitrary file write via authenticated OSDP file upload — LNL-X2210 9.1 Critical2022-06-06
CVE-2022-0779 User Meta < 2.4.4 - Subscriber+ Local File Enumeration via Path Traversal — User Meta – User Profile Builder and User management plugin 6.5 -2022-06-06
CVE-2022-23082 CureKit - Path Traversal in isFileOutsideDir — CureKit 7.5 High2022-05-31
CVE-2022-1850 Path Traversal in filegator/filegator — filegator/filegator 8.1 -2022-05-24
CVE-2022-1721 Path Traversal in WellKnownServlet in jgraph/drawio — jgraph/drawio 7.5 -2022-05-16
CVE-2022-1560 Amministrazione Aperta < 3.8 - Admin+ LFI — Amministrazione Aperta 8.1 -2022-05-16
CVE-2022-24830 Path Traversal in OpenClinica — OpenClinica 6.5 Medium2022-05-13
CVE-2021-33005 mySCADA myPRO Path Traversal — myPRO 7.5 High2022-05-13
CVE-2022-1476 All-in-One WP Migration <= 7.58 - Directory Traversal to File Deletion on Windows Hosts — All-in-One WP Migration and Backup 6.6 Medium2022-05-10
CVE-2022-24878 Improper path handling in Kustomization files allows for denial of service — flux2 7.7 High2022-05-06
CVE-2022-24877 Improper path handling in kustomization files allows path traversal — flux2 9.9 Critical2022-05-06
CVE-2021-38693 Path Traversal in thttpd — QuTScloud 5.3 Medium2022-05-05
CVE-2022-29474 F5 BIG-IP 路径遍历漏洞 — BIG-IP 4.3 Medium2022-05-05
CVE-2022-26835 F5 BIG-IP 路径遍历漏洞 — BIG-IP 4.9 Medium2022-05-05
CVE-2022-28784 Samsung SMR 路径遍历漏洞 — Samsung Mobile Devices 4.0 Medium2022-05-03
CVE-2022-24897 Arbitrary filesystem write access from Velocity — xwiki-commons 7.5 High2022-05-02
CVE-2021-43930 Elcomplus SmartPtt Path Traversal — SmartPTT 4.9 Medium2022-04-28
CVE-2021-26629 tobesoft XPLATFORM Path Traversal Vulnerability — XPLATFORM 8.8 High2022-04-26
CVE-2021-35250 Directory Transversal Vulnerability in Serv-U 15.3 — Serv-U 7.5 High2022-04-25
CVE-2022-1392 Videos sync PDF <= 1.7.4 - Unauthenticated LFI — Videos sync PDF 7.5 -2022-04-25
CVE-2022-1391 Cab fare calculator < 1.0.4 - Unauthenticated LFI — Cab fare calculator 8.8 -2022-04-25
CVE-2022-1390 Admin Word Count Column <= 2.2 - Unauthenticated Arbitrary File Read — Admin Word Count Column 9.8 -2022-04-25
CVE-2022-23457 Path Traversal in ESAPI — org.owasp.esapi:esapi 7.5 High2022-04-25

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3341 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.