Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-36 (绝对路径遍历) — Vulnerability Class 103

103 vulnerabilities classified as CWE-36 (绝对路径遍历). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-9924 Hgiga OAKlouds - Arbitrary File Read And Delete — OAKlouds 9.8 Critical2024-10-14
CVE-2024-45290 Path traversal and Server-Side Request Forgery when opening XLSX files in PHPSpreadsheet — PhpSpreadsheet 7.7 High2024-10-07
CVE-2024-45291 Path traversal and Server-Side Request Forgery in HTML writer when embedding images is enabled in PHPSpreadsheet — PhpSpreadsheet 6.3 Medium2024-10-07
CVE-2024-8497 Franklin Fueling Systems TS-550 EVO Absolute Path Traversal — TS-550 EVO 7.5 High2024-09-24
CVE-2024-8778 The SYSCOM Group OMFLOW - Arbitrary File Read — OMFLOW 6.5 Medium2024-09-16
CVE-2024-7323 Digiwin EasyFlow .NET - Arbitrary File Download — EasyFlow .NET 6.5 Medium2024-08-02
CVE-2024-20401 Cisco Secure Email 安全漏洞 — Cisco Secure Email 9.8 Critical2024-07-17
CVE-2024-6250 Absolute Path Traversal in parisneo/lollms-webui — parisneo/lollms-webui 7.5AIHighAI2024-06-27
CVE-2024-4881 Path Traversal in parisneo/lollms — parisneo/lollms 9.1AICriticalAI2024-06-06
CVE-2024-2362 Path Traversal in parisneo/lollms-webui — parisneo/lollms-webui 9.1AICriticalAI2024-06-06
CVE-2024-2548 Path Traversal in parisneo/lollms-webui — parisneo/lollms-webui 6.2AIMediumAI2024-06-06
CVE-2023-41830 Motorola Ready For 安全漏洞 — Phones 6.5 Medium2024-05-03
CVE-2024-29053 Microsoft Defender for IoT Remote Code Execution Vulnerability — Microsoft Defender for IoT 8.8 High2024-04-09
CVE-2024-21323 Microsoft Defender for IoT Remote Code Execution Vulnerability — Microsoft Defender for IoT 8.8 High2024-04-09
CVE-2024-1703 ZhongBangKeJi CRMEB openfile absolute path traversal — CRMEB 3.5 Low2024-02-21
CVE-2023-50955 IBM InfoSphere Information Server information disclosure — InfoSphere Information Server 2.4 Low2024-02-21
CVE-2023-5390 Honeywell Experion ControlEdge VirtualUOC和ControlEdge UOC 安全漏洞 — ControlEdge UOC 5.3 Medium2024-01-31
CVE-2023-30970 Gotham table and Forward App Path traversal — com.palantir.gotham:blackbird-witchcraft 6.5 Medium2024-01-29
CVE-2023-5115 Ansible: malicious role archive can cause ansible-galaxy to overwrite arbitrary files — Red Hat Ansible Automation Platform 2.3 for RHEL 8 6.3 Medium2023-12-18
CVE-2023-36786 Skype for Business Remote Code Execution Vulnerability — Skype for Business Server 2015 CU13 7.2 High2023-10-10
CVE-2023-5022 DedeCMS select_templets_post.php absolute path traversal — DedeCMS 5.5 Medium2023-09-17
CVE-2023-40597 Absolute Path Traversal in Splunk Enterprise Using runshellscript.py — Splunk Enterprise 7.8 High2023-08-30
CVE-2023-4172 Chengdu Flash Flood Disaster Monitoring and Warning System FileHandler.ashx absolute path traversal — Flash Flood Disaster Monitoring and Warning System 4.3 Medium2023-08-05
CVE-2023-3765 Absolute Path Traversal in mlflow/mlflow — mlflow/mlflow 4.3 -2023-07-19
CVE-2023-34135 SonicWALL Analytics和GMS 路径遍历漏洞 — GMS 6.5 -2023-07-13
CVE-2023-32054 Volume Shadow Copy Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.3 High2023-07-11
CVE-2023-2765 Weaver OA downfile.php absolute path traversal — OA 4.3 Medium2023-05-17
CVE-2023-2101 moxi624 Mogu Blog v2 uploadPicsByUrl uploadPictureByUrl absolute path traversal — Mogu Blog v2 4.3 Medium2023-04-15
CVE-2023-1176 Absolute Path Traversal in mlflow/mlflow — mlflow/mlflow 7.1 -2023-03-24
CVE-2022-20958 Cisco BroadWorks CommPilot 代码问题漏洞 — Cisco BroadWorks 8.3 High2022-11-03

Vulnerabilities classified as CWE-36 (绝对路径遍历) represent 103 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.