Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3363

3363 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-27534 curl 路径遍历漏洞 — https://github.com/curl/curl 8.8 -2023-03-30
CVE-2022-2560 Enterprise Distributed Technologies CompleteFTP Server 路径遍历漏洞 — CompleteFTP 9.1 -2023-03-29
CVE-2022-36981 Ivanti Avalanche 路径遍历漏洞 — Avalanche 9.8 -2023-03-29
CVE-2022-36982 Ivanti Avalanche 路径遍历漏洞 — Avalanche 7.5 -2023-03-29
CVE-2023-0241 pgAdmin 路径遍历漏洞 — pgadmin 8.1 -2023-03-27
CVE-2018-25048 Codesys Runtime Improper Limitation of a Pathname — Control for BeagleBone 8.8 High2023-03-23
CVE-2022-3101 Red Hat OpenStack Platform 安全漏洞 — tripleo-ansible 5.5 -2023-03-23
CVE-2022-3146 Red Hat OpenStack Platform 安全漏洞 — tripleo-ansible 5.5 -2023-03-23
CVE-2023-26361 Adobe ColdFusion Directory Traversal Arbitrary file system read Vulnerability — ColdFusion 4.9 Medium2023-03-23
CVE-2023-27856 Rockwell Automation ThinManager ThinServer Path Traversal Download — ThinManager ThinServer 7.5 High2023-03-21
CVE-2023-27855 Rockwell Automation ThinManager ThinServer Path Traversal Upload — ThinManager ThinServer 9.8 Critical2023-03-21
CVE-2023-25688 IBM Security Key Lifecycle Manager information disclosure — Security Key Lifecycle Manager 4.3 Medium2023-03-21
CVE-2023-25689 IBM Security Key Lifecycle Manager information disclosure — Security Key Lifecycle Manager 2.7 Low2023-03-21
CVE-2023-27981 Schneider Electric IGSS Data Server 路径遍历漏洞 — IGSS Data Server(IGSSdataServer.exe) 7.8 High2023-03-21
CVE-2023-1467 SourceCodester Student Study Center Desk Management System POST Parameter path traversal — Student Study Center Desk Management System 6.5 Medium2023-03-17
CVE-2023-28105 Go-huge-util vulnerable to path traversal when unzipping files — go-huge-util 8.8 High2023-03-16
CVE-2023-21456 SAMSUNG Mobile Devices 路径遍历漏洞 — Samsung Mobile Devices 9.0 Critical2023-03-16
CVE-2023-25804 Roxy-WI vulnerable to Limited Path Traversal in name parameter — roxy-wi 7.5 High2023-03-15
CVE-2022-47595 WordPress WP Google Maps Plugin <= 9.0.15 is vulnerable to Path Traversal — WP Go Maps (formerly WP Google Maps) 4.9 Medium2023-03-14
CVE-2023-27501 Directory Traversal vulnerability in SAP NetWeaver AS for ABAP and ABAP Platform — NetWeaver AS for ABAP and ABAP Platform 8.7 High2023-03-14
CVE-2023-27500 Directory Traversal vulnerability in SAP NetWeaver AS for ABAP and ABAP Platform — NetWeaver AS for ABAP and ABAP Platform (SAPRSBRO Program) 9.6 Critical2023-03-14
CVE-2023-27269 Directory Traversal vulnerability in SAP NetWeaver AS for ABAP and ABAP Platform — NetWeaver Application Server for ABAP and ABAP Platform 9.6 Critical2023-03-14
CVE-2022-31474 WordPress BackupBuddy Plugin 8.5.8.0-8.7.4.1 is vulnerable to Directory Traversal — BackupBuddy 7.5 High2023-03-13
CVE-2023-25803 Roxy-WI 路径遍历漏洞 — roxy-wi 7.5 High2023-03-13
CVE-2023-27577 Path Traversal Vulnerability in `LESS` Parser allows reading of sensitive server files in flarum — framework 6.6 Medium2023-03-10
CVE-2023-25814 Arbitrary File Read Vulnerability in metersphere — metersphere 7.1 High2023-03-09
CVE-2023-23760 Path traversal in GitHub Enterprise Server leading to remote code execution — Enterprise Server 4.9 Medium2023-03-08
CVE-2023-27475 Goutil vulnerable to path traversal when unzipping files — goutil 8.8 High2023-03-07
CVE-2022-41328 Fortinet FortiOS 路径遍历漏洞 — FortiOS 6.5 Medium2023-03-07
CVE-2017-20181 hgzojer Vocable Trainer VocableTrainerProvider.java path traversal — Vocable Trainer 5.3 Medium2023-03-06

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3363 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.