Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3341

3341 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-41547 Siemens Teamcenter Active Workspace 路径遍历漏洞 — Teamcenter Active Workspace V4.3 9.8 -2021-12-14
CVE-2021-24970 All-In-One-Gallery < 2.5.0 - Admin+ Local File Inclusion — All-in-One Video Gallery 7.2 -2021-12-13
CVE-2021-43815 Grafana directory traversal for `.cvs` files — grafana 4.3 Medium2021-12-10
CVE-2021-43813 Directory Traversal in Grafana — grafana 4.3 Medium2021-12-10
CVE-2021-43798 Grafana path traversal — grafana 7.5 High2021-12-07
CVE-2021-43800 Asset directory traversal with some storage modules on Windows — wiki 7.5 High2021-12-06
CVE-2021-43795 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in com.linecorp.armeria:armeria — armeria 7.5 High2021-12-02
CVE-2021-43358 Sunnet eHRD - Path Traversal — eHRD 7.5 High2021-12-01
CVE-2021-43788 Path traversal in translator module of NobeBB — NodeBB 5.0 Medium2021-11-29
CVE-2021-43783 Path Traversal in @backstage/plugin-scaffolder-backend — backstage 8.5 High2021-11-29
CVE-2021-41279 Zip Slip Vulnerability in BaserCMS — basercms 7.7 High2021-11-26
CVE-2021-43778 Path traversal in GLPI barcode plugin — barcode 9.1 Critical2021-11-24
CVE-2021-24644 Images to WebP < 1.9 - Authenticated Local File Inclusion — Images to WebP 7.5 -2021-11-23
CVE-2021-41281 Path traversal in Matrix Synapse — synapse 7.5 High2021-11-23
CVE-2021-43775 Arbitrary file reading vulnerability in Aim — aim 8.6 High2021-11-23
CVE-2021-22028 Greenplum Database 路径遍历漏洞 — gpfdist (Greenplum) 9.1 -2021-11-19
CVE-2021-40745 Adobe Campaign Path Traversal Leads to Information Exposure — Campaign 7.5 High2021-11-17
CVE-2021-40359 Siemens SIMATIC PCS 7和SIMATIC WinCC 路径遍历漏洞 — OpenPCS 7 V8.2 7.7 High2021-11-09
CVE-2021-40358 Siemens SIMATIC PCS 7和SIMATIC WinCC 路径遍历漏洞 — SIMATIC PCS 7 V8.2 9.9 Critical2021-11-09
CVE-2021-3924 Path Traversal in getgrav/grav — getgrav/grav 6.5 -2021-11-05
CVE-2021-3916 Path Traversal in bookstackapp/bookstack — bookstackapp/bookstack 6.5 -2021-11-05
CVE-2021-34701 Cisco Unified Communications Products Path Traversal Vulnerability — Cisco Unity Connection 4.3 Medium2021-11-04
CVE-2021-3823 Path traversal vulnerability in Bitdefender GravitZone Update Server in relay mode — GravityZone Update Server 7.1 High2021-10-28
CVE-2019-3556 Facebook HHVM 路径遍历漏洞 — HHVM 8.1 -2021-10-26
CVE-2021-41185 Download file outside intended directory — Mycodo 8.8 High2021-10-26
CVE-2021-34860 D-Link DAP-2020 路径遍历漏洞 — DAP-2020 6.5 -2021-10-25
CVE-2021-42542 Emerson WirelessHART Gateway — WirelessHART Gateway 8.0 High2021-10-22
CVE-2021-35230 Unquoted Path Vulnerability (SMB Login) in Kiwi CatTools — Kiwi CatTools 6.7 Medium2021-10-22
CVE-2021-41127 Maliciously Crafted Model Archive Can Lead To Arbitrary File Write in rasa — rasa 7.3 High2021-10-21
CVE-2021-41150 Improper sanitization of delegated role names in tough — tough 8.2 High2021-10-19

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3341 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.