Vulnerability index

Browse CVEs

8,911 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Path TraversalCWE-22 × clear
Taocms CRITICAL 9.8
CVE-2024-33350

Directory Traversal vulnerability in TaoCMS v.3.0.2 allows a remote attacker to execute arbitrary code and obtain sensitive information via the inclu…

No fix yet
Fix from $2,300 2024-04-29
Unclassified HIGH 7.5
CVE-2024-31801

Directory Traversal vulnerability in NEXSYS-ONE before v.Rev.15320 allows a remote attacker to obtain sensitive information via a crafted request.

Mitigation only
Fix from $1,950 2024-04-29
Mailcleaner HIGH 7.2
CVE-2024-3195

A vulnerability was found in MailCleaner up to 2023.03.14. It has been classified as critical. This affects an unknown part of the component Admin En…

Fix: after 2023.03.14
Fix from $1,950 2024-04-29
Qts HIGH 7.5
CVE-2023-51365EPSS 35%

A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users …

Fix: 4.5.4.2627 / 5.1.4.2596+
Fix from $1,950 2024-04-26
Qts HIGH 7.5
CVE-2023-51364EPSS 42%

A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users …

Fix: 4.5.4.2627 / 5.1.4.2596+
Fix from $1,950 2024-04-26
Media Streaming Add On CRITICAL 9.8
CVE-2023-47222

An exposure of sensitive information vulnerability has been reported to affect Media Streaming add-on. If exploited, the vulnerability could allow us…

Fix: 500.1.1.5+
Fix from $2,300 2024-04-26
GitLab HIGH 8.1
CVE-2024-2434EPSS 23%

An issue has been discovered in GitLab affecting all versions of GitLab CE/EE 16.9 prior to 16.9.6, 16.10 prior to 16.10.4, and 16.11 prior to 16.11…

Fix: 16.9.6 / 16.10.4+
Fix from $1,950 2024-04-25
Unclassified MEDIUM 6.5
CVE-2022-45852

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in FormAssembly / Drew Buschhorn WP-FormAssembly allows …

Mitigation only
Fix from $1,600 2024-04-24
Repository Manager HIGH 7.8
CVE-2024-28976

Dell Repository Manager, versions prior to 3.4.5, contains a Path Traversal vulnerability in API module. A local attacker with low privileges could p…

Fix: 3.4.5+
Fix from $1,950 2024-04-24
Repository Manager MEDIUM 5.5
CVE-2024-28977

Dell Repository Manager, versions 3.4.2 through 3.4.4,contains a Path Traversal vulnerability in logger module. A local attacker with low privileges …

Fix: after 3.4.4
Fix from $1,600 2024-04-24
Hono MEDIUM 5.3
CVE-2024-32869

Hono is a Web application framework that provides support for any JavaScript runtime. Prior to version 4.2.7, when using serveStatic with deno, it is…

Fix: 4.2.7+
Fix from $1,600 2024-04-23
Unclassified HIGH 8.8
CVE-2024-32258

The network server of fceux 2.7.0 has a path traversal vulnerability, allowing attackers to overwrite any files on the server without authentication …

Mitigation only
Fix from $1,950 2024-04-23
Unclassified HIGH 7.6
CVE-2024-32399

Directory Traversal vulnerability in RaidenMAILD Mail Server v.4.9.4 and before allows a remote attacker to obtain sensitive information via the /web…

Mitigation only
Fix from $1,950 2024-04-22
Owncast MEDIUM 6.5
CVE-2024-31450

Owncast is an open source, self-hosted, decentralized, single user live video streaming and chat server. The Owncast application exposes an administr…

Fix: 0.1.3+
Fix from $1,600 2024-04-19
Unclassified HIGH 7.1
CVE-2024-31552

CuteHttpFileServer v.3.1 version has an arbitrary file download vulnerability, which allows attackers to download arbitrary files on the server and o…

Mitigation only
Fix from $1,950 2024-04-19
Unclassified MEDIUM 6.5
CVE-2024-31587

SecuSTATION Camera V2.5.5.3116-S50-SMA-B20160811A and lower allows an unauthenticated attacker to download device configuration files via a crafted r…

Mitigation only
Fix from $1,600 2024-04-19
Avalanche HIGH 8.8
CVE-2024-27976

A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 8.1
CVE-2024-27977

A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to delete arbitrary files, th…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 7.1
CVE-2024-27984

A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to delete specific type of fi…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 8.8
CVE-2024-24997

A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 8.8
CVE-2024-24999

A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 8.8
CVE-2024-25000

A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 8.8
CVE-2024-23535EPSS 68%

A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 8.8
CVE-2024-24992EPSS 71%

A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 8.8
CVE-2024-24994EPSS 68%

A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Unclassified MEDIUM 6.8
CVE-2023-50885

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in AGILELOGIX Store Locator WordPress.This issue affects…

Mitigation only
Fix from $1,600 2024-04-18
Unclassified MEDIUM 6.5
CVE-2023-3675

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Secomea GateManager (Web GUI) allows Reading Data fro…

Mitigation only
Fix from $1,600 2024-04-18
Unclassified HIGH 7.6
CVE-2023-47843

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Zachary Segal CataBlog.This issue affects CataBlog: f…

Mitigation only
Fix from $1,950 2024-04-18
Cmseasy MEDIUM 6.4
CVE-2024-32163

CMSeasy 7.7.7.9 is vulnerable to code execution.

No fix yet
Fix from $1,600 2024-04-17
Serv U HIGH 7.2
CVE-2024-28073

SolarWinds Serv-U was found to be susceptible to a Directory Traversal Remote Code Vulnerability. This vulnerability requires a highly privileged acc…

Fix: 15.4.2+
Fix from $1,950 2024-04-17