Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3352

3352 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-24447 WP Image Zoom < 1.47 - Local File Inclusion — WP Image Zoom 6.5 -2021-07-19
CVE-2021-32769 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in micronaut-core — micronaut-core 7.5 High2021-07-16
CVE-2021-35962 TAIWAN SECOM CO., LTD., Door Access Control and Personnel Attendance Management system - Path Traversal — Door Access Control and Personnel Attendance Management system 7.5 High2021-07-16
CVE-2021-32746 Possible path traversal by use of the `doc` module — icingaweb2 5.3 Medium2021-07-12
CVE-2021-32532 QSAN XEVO - Path Traversal — XEVO 7.5 High2021-07-07
CVE-2021-32527 QSAN Storage Manager - Path Traversal-2 — Storage Manager 7.5 High2021-07-07
CVE-2021-32516 QSAN Storage Manager - Path Traversal — Storage Manager 7.5 High2021-07-07
CVE-2021-24375 Motor theme < 3.1.0 - Local File Inclusion — Motor 9.8 -2021-07-06
CVE-2021-28588 Adobe RoboHelp Server folderId Directory Traversal Remote Code Execution Vulnerability — RoboHelp Server 8.8 High2021-06-28
CVE-2021-28584 Magento Commerce path traversal vulnerability in child theme store creation — Magento Commerce 5.4 Medium2021-06-28
CVE-2021-21102 Adobe Illustrator DOCX file parsing directory traversal vulnerability could lead to remote code execution — Illustrator 8.8 High2021-06-28
CVE-2021-21090 Adobe InCopy DOCX file parsing directory traversal vulnerability could lead to remote code execution — InCopy 8.8 High2021-06-28
CVE-2021-29087 Synology DiskStation Manager 路径遍历漏洞 — DiskStation Manager (DSM) 7.5 High2021-06-23
CVE-2021-32674 Remote Code Execution via traversal in TAL expressions — Zope 8.8 High2021-06-08
CVE-2021-32662 TechDocs mkdocs.yml path traversal — backstage 6.5 Medium2021-06-03
CVE-2021-29091 Synology Photo Station 路径遍历漏洞 — Synology Photo Station 7.7 High2021-06-02
CVE-2021-33182 Synology DiskStation Manager 路径遍历漏洞 — Synology DiskStation Manager (DSM) 5.0 Medium2021-06-01
CVE-2021-33183 Docker 路径遍历漏洞 — Synology Docker 7.9 High2021-06-01
CVE-2021-29088 Synology DiskStation Manager 路径遍历漏洞 — Synology DiskStation Manager (DSM) 7.8 High2021-06-01
CVE-2021-29492 Bypass of path matching rules using escaped slash characters — envoy 8.1 High2021-05-28
CVE-2021-32643 StaticFile.fromUrl can leak presence of a directory — http4s 5.8 Medium2021-05-27
CVE-2009-3721 ytnef 路径遍历漏洞 — ytnef 7.8 -2021-05-26
CVE-2021-22736 Schneider Electric homeLYnk和spaceLYnk 路径遍历漏洞 — homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior 7.5 -2021-05-26
CVE-2021-21001 WAGO: PFC200 Access to files outside the home directory — Series PFC200 Controller 9.1 Critical2021-05-24
CVE-2021-32633 Remote Code Execution via traversal in TAL expressions — Zope 6.8 Medium2021-05-21
CVE-2021-27461 Emerson Rosemount X-STREAM Gas Analyzer 路径遍历漏洞 — Emerson Rosemount X-STREAM Gas Analyzer 7.5 -2021-05-20
CVE-2021-1532 Cisco TelePresence Collaboration Endpoint and RoomOS Software Arbitrary File Read Vulnerability — Cisco TelePresence Endpoint Software (TC/CE) 6.5 Medium2021-05-06
CVE-2021-31421 Corel Parallels Desktop 路径遍历漏洞 — Desktop 7.9 -2021-04-29
CVE-2020-36321 Directory traversal in development mode handler in Vaadin 14 and 15-17 — Vaadin 5.9 Medium2021-04-23
CVE-2021-24242 Tutor LMS < 1.8.8 - Authenticated Local File Inclusion — Tutor LMS – eLearning and online course solution 5.5 -2021-04-22

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3352 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.