Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3364

3364 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-0697 Backuply – Backup, Restore, Migrate and Clone <= 1.2.3 - Authenticated (Administrator+) Directory Traversal — Backuply – Backup, Restore, Migrate and Clone 6.5 Medium2024-01-27
CVE-2024-0402 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in GitLab — GitLab 9.9 Critical2024-01-26
CVE-2024-22204 Whoogle Search Limited File Write vulnerability — whoogle-search 5.3 Medium2024-01-23
CVE-2024-23340 @hono/node-server can't handle "double dots" in URL — node-server 5.3 Medium2024-01-22
CVE-2022-45792 Directory Traversal in Project File Format allows overwrite (Zip Slip) — Sysmac Studio 7.8 High2024-01-22
CVE-2023-44395 Autolab has Path Traversal vulnerability in Assessment functionality — Autolab 4.9 Medium2024-01-22
CVE-2024-0769 D-Link DIR-859 HTTP POST Request hedwig.cgi path traversal — DIR-859 5.3 Medium2024-01-21
CVE-2023-35020 IBM Sterling Control Center directory traversal — Sterling Control Center 5.4 Medium2024-01-19
CVE-2023-5097 HYPR 输入验证错误漏洞 — Workforce Access 7.0 High2024-01-16
CVE-2023-46749 Apache Shiro before 1.13.0 or 2.0.0-alpha-4, may be susceptible to a path traversal attack that results in an authentication bypass when used together with path rewriting — Apache Shiro 9.8 -2024-01-15
CVE-2023-48383 NetVision Information airPASS - Path Traversal — airPASS 7.5 High2024-01-15
CVE-2023-49801 Lif Auth Server vulnerable to uncontrolled data in path expression — Lif-Auth-Server 4.2 Medium2024-01-12
CVE-2010-10011 Acritum Femitter Server path traversal — Femitter Server 4.3 Medium2024-01-12
CVE-2023-49569 Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients — go-git 9.8 Critical2024-01-12
CVE-2023-5504 BackWPup <= 4.0.1 - Authenticated (Administrator+) Directory Traversal — BackWPup – WordPress Backup & Restore Plugin 8.7 High2024-01-11
CVE-2023-37932 Fortinet FortiVoice 路径遍历漏洞 — FortiVoice 6.2 Medium2024-01-10
CVE-2023-48249 Bosch Nexo Cordless nutrunner 安全漏洞 — Nexo cordless nutrunner NXA015S-36V (0608842001) 6.5 Medium2024-01-10
CVE-2023-48246 Bosch Nexo cordless nutrunner 安全漏洞 — Nexo cordless nutrunner NXA015S-36V (0608842001) 6.5 Medium2024-01-10
CVE-2023-48243 Bosch Nexo cordless nutrunner 安全漏洞 — Nexo cordless nutrunner NXA015S-36V (0608842001) 8.1 High2024-01-10
CVE-2023-48242 Bosch Nexo cordless nutrunner 安全漏洞 — Nexo cordless nutrunner NXA015S-36V (0608842001) 6.5 Medium2024-01-10
CVE-2023-47211 ZOHO ManageEngine OpManager 路径遍历漏洞 — OpManager 9.1 Critical2024-01-08
CVE-2024-22050 Iodine Static File Server Path Traversal Vulnerability 7.5AIHighAI2024-01-04
CVE-2024-21633 Arbitrary file write on Decoding — Apktool 7.8 High2024-01-03
CVE-2023-41780 Unsafe DLL Loading Vulnerability in ZTE ZXCLOUD iRAI — ZXCLOUD iRAI 6.4 Medium2024-01-03
CVE-2023-52085 Winter CMS Local File Inclusion through Server Side Template Injection — winter 3.3 Low2023-12-29
CVE-2023-6190 Authenicated Path Traversal in İzmir Katip Çelebi University — University Information Management System 9.8 Critical2023-12-27
CVE-2023-6972 Backup Migration <= 1.3.9 - Unauthenticated Path Traversal to Arbitrary File Deletion — BackupBliss – Backup & Migration with Free Cloud Storage 9.8 Critical2023-12-23
CVE-2023-51651 Potential URI resolution path traversal in the AWS SDK for PHP — aws-sdk-php 6.0 Medium2023-12-22
CVE-2023-51449 Make the `/file` secure against file traversal attacks — gradio 5.6 Medium2023-12-22
CVE-2023-46645 Path traversal in GitHub Enterprise Server leading to arbitrary file reading when building a GitHub Pages site — Enterprise Server 6.8 Medium2023-12-21

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3364 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.