Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-23 (相对路径遍历) — Vulnerability Class 339

339 vulnerabilities classified as CWE-23 (相对路径遍历). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-45731 Potential Remote Command Execution (RCE) through arbitrary file write to Windows system root directory when Splunk Enterprise for Windows is installed on a separate disk — Splunk Enterprise 8.0 High2024-10-14
CVE-2024-9923 TEAMPLUS TECHNOLOGY Team+ - Arbitrary File Move through Path Traversal — team+ 4.9 Medium2024-10-14
CVE-2024-9922 TEAMPLUS TECHNOLOGY Team+ - Arbitrary File Read through Path Traversal — team+ 7.5 High2024-10-14
CVE-2024-6985 Path Traversal in api open_personality_folder in parisneo/lollms-webui — parisneo/lollms 7.5AIHighAI2024-10-11
CVE-2024-43614 Microsoft Defender for Endpoint for Linux Spoofing Vulnerability — Microsoft Defender for Endpoint for Linux 5.5 Medium2024-10-08
CVE-2024-47948 JetBrains TeamCity 安全漏洞 — TeamCity 4.9 Medium2024-10-08
CVE-2024-47949 JetBrains TeamCity 安全漏洞 — TeamCity 4.9 Medium2024-10-08
CVE-2024-20449 Cisco Nexus Dashboard Fabric Controller Remote Code Execution Vulnerability — Cisco Data Center Network Manager 8.8 High2024-10-02
CVE-2024-9405 Pluck 安全漏洞 — Pluck CMS 5.3 Medium2024-10-01
CVE-2024-45816 Storage bucket Directory Traversal in @backstage/plugin-techdocs-backend — backstage 6.5 Medium2024-09-17
CVE-2024-43454 Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability — Windows Server 2019 7.1 High2024-09-10
CVE-2024-38258 Windows Remote Desktop Licensing Service Information Disclosure Vulnerability — Windows Server 2019 6.5 Medium2024-09-10
CVE-2024-43399 Mobile Security Framework (MobSF) has a Zip Slip Vulnerability in .a Static Library Files — Mobile-Security-Framework-MobSF 8.0 High2024-08-19
CVE-2024-7693 Team Johnlong software Raiden MAILD Remote Management System - Arbitrary File Reading through Path Traversal — Raiden MAILD Remote Management System 7.5 High2024-08-12
CVE-2024-6433 Local File Inclusion in stitionai/devika — stitionai/devika 7.5AIHighAI2024-07-10
CVE-2024-3122 CHANGING Mobile One Time Password - Arbitrary File Reading — Mobile One Time Password 4.9 Medium2024-07-01
CVE-2024-5547 Directory Traversal in stitionai/devika — stitionai/devika 7.5AIHighAI2024-06-27
CVE-2024-37138 Dell PowerProtect Data Domain 安全漏洞 — PowerProtect DD 4.1 Medium2024-06-26
CVE-2024-3497 Directory Traversal Remote Code Execution Vulnerability — Toshiba Tec e-Studio multi-function peripheral (MFP) 8.8 High2024-06-14
CVE-2024-2461 Hitachi XMC20 安全漏洞 — FOX61x 7.5AIHighAI2024-06-11
CVE-2024-4330 Path Traversal in parisneo/lollms-webui — parisneo/lollms-webui 7.5AIHighAI2024-05-30
CVE-2024-36362 JetBrains TeamCity 安全漏洞 — TeamCity 6.5 Medium2024-05-29
CVE-2024-35186 gix traversal outside working tree enables arbitrary code execution — gitoxide 8.8 High2024-05-23
CVE-2023-3941 Multiple arbitrary file writes in ZkTeco-based OEM devices — ZkTeco-based OEM devices with firmware ZAM170-NF-1.8.25-7354-Ver1.0.0 10.0 Critical2024-05-21
CVE-2023-3940 Multiple arbitrary file reads in ZkTeco-based OEM devices — ZkTeco-based OEM devices with firmware ZAM170-NF-1.8.25-7354-Ver1.0.0 7.5 High2024-05-21
CVE-2024-33615 CyberPower PowerPanel business Relative Path Traversal — PowerPanel business 8.8 High2024-05-15
CVE-2024-30010 Windows Hyper-V Remote Code Execution Vulnerability — Windows Server 2019 8.8 High2024-05-14
CVE-2024-34712 Oceanic allows unsanitized user input to lead to path traversal in URLs — Oceanic 6.5 Medium2024-05-14
CVE-2024-0549 Relative Path Traversal in mintplex-labs/anything-llm — mintplex-labs/anything-llm 8.1 -2024-04-16
CVE-2024-32005 Local File Inclusion in NiceGUI leaflet component — nicegui 8.2 High2024-04-12

Vulnerabilities classified as CWE-23 (相对路径遍历) represent 339 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.