Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3363

3363 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-7260 A path traversal vulnerability has been discovered in OpenText™ CX-E Voice. — CX-E Voice 7.5AIHighAI2024-08-22
CVE-2024-7634 NGINX Agent Vulnerability — NGINX Agent 4.9 Medium2024-08-22
CVE-2024-6141 Windscribe Directory Traversal Local Privilege Escalation Vulnerability — Windscribe 7.8AIHighAI2024-08-21
CVE-2024-7603 Logsign Unified SecOps Platform Directory Traversal Arbitrary Directory Deletion Vulnerability — Unified SecOps Platform 8.1AIHighAI2024-08-21
CVE-2024-7602 Logsign Unified SecOps Platform Directory Traversal Information Disclosure Vulnerability — Unified SecOps Platform 6.5AIMediumAI2024-08-21
CVE-2024-7601 Logsign Unified SecOps Platform Directory data_export_delete_all Traversal Arbitrary File Deletion Vulnerability — Unified SecOps Platform 8.1AIHighAI2024-08-21
CVE-2024-7600 Logsign Unified SecOps Platform Directory Traversal Arbitrary File Deletion Vulnerability — Unified SecOps Platform 8.1AIHighAI2024-08-21
CVE-2024-7782 Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.4 - Authenticater (Administrator+) Arbitrary File Deletion — Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 8.7 High2024-08-20
CVE-2024-7777 Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 2.0 - 2.13.9 - Authenticated (Administrator+) Arbitrary File Read And Deletion — Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder 9.0 Critical2024-08-20
CVE-2024-7928 FastAdmin lang path traversal — FastAdmin 4.3 Medium2024-08-19
CVE-2024-7927 ZZCMS class.php path traversal — ZZCMS 7.3 High2024-08-19
CVE-2024-7926 ZZCMS about_edit.php path traversal — ZZCMS 7.3 High2024-08-19
CVE-2024-43345 WordPress Landing Page Builder plugin <= 1.5.2.0 - Local File Inclusion vulnerability — Landing Page Builder 7.5 High2024-08-19
CVE-2024-43328 WordPress EmbedPress plugin <= 4.0.9 - Local File Inclusion vulnerability — EmbedPress 8.3 High2024-08-19
CVE-2024-7924 ZZCMS list.php path traversal — ZZCMS 5.3 Medium2024-08-19
CVE-2024-43281 WordPress Void Elementor Post Grid Addon for Elementor Page builder plugin <= 2.3 - Local File Inclusion vulnerability — Void Elementor Post Grid Addon for Elementor Page builder 5.3 Medium2024-08-19
CVE-2024-43271 WordPress Widgets for WooCommerce Products on Elementor plugin <= 2.0.0 - Local File Inclusion vulnerability — Woo Products Widgets For Elementor 8.5 High2024-08-19
CVE-2024-43248 WordPress Bit Form Pro plugin <= 2.6.4 - Unauthenticated Arbitrary File Deletion vulnerability — Bit Form Pro 8.6 High2024-08-19
CVE-2024-43232 WordPress Timeline and History slider plugin <= 2.3 - Local File Inclusion vulnerability — Timeline and History slider 8.5 High2024-08-19
CVE-2024-43221 WordPress JetGridBuilder plugin <= 1.1.2 - Local File Inclusion vulnerability — JetGridBuilder 8.5 High2024-08-19
CVE-2023-5505 BackWPup <= 4.0.1 - Authenticated (Administrator+) Directory Traversal — BackWPup – WordPress Backup & Restore Plugin 6.8 Medium2024-08-17
CVE-2024-43395 CraftOS-PC 2's improperly sanitizied paths cause filesystem escape (Windows) — craftos2 8.2 High2024-08-16
CVE-2024-7145 JetElements <= 2.6.20 - Authenticated (Contributor+) Arbitrary Local File Inclusion — JetElements 8.8 High2024-08-16
CVE-2024-7146 JetTabs <= 2.2.3 - Authenticated (Contributor+) Arbitrary Local File Inclusion — JetTabs 8.8 High2024-08-16
CVE-2024-7263 Arbitrary Code Execution in WPS Office — WPS Office 7.8AIHighAI2024-08-15
CVE-2024-7262 Arbitrary Code Execution in WPS Office — WPS Office 7.1AIHighAI2024-08-15
CVE-2024-39399 [Paris] Path Traversal lead to local file read — Adobe Commerce 7.7 High2024-08-14
CVE-2024-39406 Adobe Commerce | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22) — Adobe Commerce 6.8 Medium2024-08-14
CVE-2024-7741 wanglongcn ltcms API Endpoint downloadfile downloadFile path traversal — ltcms 5.3 Medium2024-08-13
CVE-2024-6618 Path Traversal in Ocean Data Systems Dream Report — Dream Report 2023 8.4AIHighAI2024-08-13

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3363 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.