Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3352

3352 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-3924 Path Traversal in getgrav/grav — getgrav/grav 6.5 -2021-11-05
CVE-2021-3916 Path Traversal in bookstackapp/bookstack — bookstackapp/bookstack 6.5 -2021-11-05
CVE-2021-34701 Cisco Unified Communications Products Path Traversal Vulnerability — Cisco Unity Connection 4.3 Medium2021-11-04
CVE-2021-3823 Path traversal vulnerability in Bitdefender GravitZone Update Server in relay mode — GravityZone Update Server 7.1 High2021-10-28
CVE-2019-3556 Facebook HHVM 路径遍历漏洞 — HHVM 8.1 -2021-10-26
CVE-2021-41185 Download file outside intended directory — Mycodo 8.8 High2021-10-26
CVE-2021-34860 D-Link DAP-2020 路径遍历漏洞 — DAP-2020 6.5 -2021-10-25
CVE-2021-42542 Emerson WirelessHART Gateway — WirelessHART Gateway 8.0 High2021-10-22
CVE-2021-35230 Unquoted Path Vulnerability (SMB Login) in Kiwi CatTools — Kiwi CatTools 6.7 Medium2021-10-22
CVE-2021-41127 Maliciously Crafted Model Archive Can Lead To Arbitrary File Write in rasa — rasa 7.3 High2021-10-21
CVE-2021-41150 Improper sanitization of delegated role names in tough — tough 8.2 High2021-10-19
CVE-2021-31385 Junos OS: J-Web: A path traversal vulnerability allows an authenticated attacker to elevate their privileges to root — Junos OS 8.8 High2021-10-19
CVE-2021-41149 Improper sanitization of target names in tough — tough 8.2 High2021-10-19
CVE-2021-41131 Client metadata path-traversal in python-tuf — python-tuf 7.5 High2021-10-19
CVE-2021-41152 Path Traversal in Folder Component Leading to Local File Inclusion — OpenOLAT 7.7 High2021-10-18
CVE-2021-41151 Path Traversal in @backstage/plugin-scaffolder-backend — backstage 6.8 Medium2021-10-18
CVE-2021-40724 Adobe Acrobat Reader Android Abritrary Code Execution Vulnerability — Reader Mobile 7.8 High2021-10-15
CVE-2021-3874 Path Traversal in bookstackapp/bookstack — bookstackapp/bookstack 6.5 -2021-10-15
CVE-2021-33178 Nagios 路径遍历漏洞 — NagVis 8.1 -2021-10-14
CVE-2021-38452 Moxa MXview Network Management Software — MXview Network Management Software 7.5 High2021-10-12
CVE-2021-33726 Siemens SINEC NMS 路径遍历漏洞 — SINEC NMS 7.5 -2021-10-12
CVE-2021-33725 Siemens SINEC NMS 路径遍历漏洞 — SINEC NMS 9.1 -2021-10-12
CVE-2021-33724 Siemens SINEC NMS 路径遍历漏洞 — SINEC NMS 9.1 -2021-10-12
CVE-2021-33722 Siemens SINEC NMS 路径遍历漏洞 — SINEC NMS 4.9 -2021-10-12
CVE-2021-42013 Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773) — Apache HTTP Server 9.8 -2021-10-07
CVE-2021-41773 Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49 — Apache HTTP Server 9.1 -2021-10-05
CVE-2021-41103 Insufficiently restricted permissions on plugin directories — containerd 7.8 -2021-10-04
CVE-2021-41294 ECOA BAS controller - Path Traversal-4 — ECS Router Controller ECS (FLASH) 9.1 Critical2021-09-30
CVE-2021-41293 ECOA BAS controller - Path Traversal-3 — ECS Router Controller ECS (FLASH) 7.5 High2021-09-30
CVE-2021-41291 ECOA BAS controller - Path Traversal-1 — ECS Router Controller ECS (FLASH) 7.5 High2021-09-30

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3352 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.