Vulnerability index

Browse CVEs

8,911 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Path TraversalCWE-22 × clear
CRITICAL 9.8 CVE-2024-33350 Directory Traversal vulnerability in TaoCMS v.3.0.2 allows a remote attacker to execute arbitrary code and obtain sensitive information via the inclu… Taocms No fix yet Fix from $2,3002024-04-29 HIGH 7.5 CVE-2024-31801 Directory Traversal vulnerability in NEXSYS-ONE before v.Rev.15320 allows a remote attacker to obtain sensitive information via a crafted request. Mitigation only Fix from $1,9502024-04-29 HIGH 7.2 CVE-2024-3195 A vulnerability was found in MailCleaner up to 2023.03.14. It has been classified as critical. This affects an unknown part of the component Admin En… Mailcleaner after 2023.03.14 Fix from $1,9502024-04-29 HIGH 7.5 CVE-2023-51365EPSS 35% A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users … Qts 4.5.4.2627 / 5.1.4.2596+ Fix from $1,9502024-04-26 HIGH 7.5 CVE-2023-51364EPSS 42% A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users … Qts 4.5.4.2627 / 5.1.4.2596+ Fix from $1,9502024-04-26 CRITICAL 9.8 CVE-2023-47222 An exposure of sensitive information vulnerability has been reported to affect Media Streaming add-on. If exploited, the vulnerability could allow us… Media Streaming Add On 500.1.1.5+ Fix from $2,3002024-04-26 HIGH 8.1 CVE-2024-2434EPSS 23% An issue has been discovered in GitLab affecting all versions of GitLab CE/EE 16.9 prior to 16.9.6, 16.10 prior to 16.10.4, and 16.11 prior to 16.11… GitLab 16.9.6 / 16.10.4+ Fix from $1,9502024-04-25 MEDIUM 6.5 CVE-2022-45852 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in FormAssembly / Drew Buschhorn WP-FormAssembly allows … Mitigation only Fix from $1,6002024-04-24 HIGH 7.8 CVE-2024-28976 Dell Repository Manager, versions prior to 3.4.5, contains a Path Traversal vulnerability in API module. A local attacker with low privileges could p… Repository Manager 3.4.5+ Fix from $1,9502024-04-24 MEDIUM 5.5 CVE-2024-28977 Dell Repository Manager, versions 3.4.2 through 3.4.4,contains a Path Traversal vulnerability in logger module. A local attacker with low privileges … Repository Manager after 3.4.4 Fix from $1,6002024-04-24 MEDIUM 5.3 CVE-2024-32869 Hono is a Web application framework that provides support for any JavaScript runtime. Prior to version 4.2.7, when using serveStatic with deno, it is… Hono 4.2.7+ Fix from $1,6002024-04-23 HIGH 8.8 CVE-2024-32258 The network server of fceux 2.7.0 has a path traversal vulnerability, allowing attackers to overwrite any files on the server without authentication … Mitigation only Fix from $1,9502024-04-23 HIGH 7.6 CVE-2024-32399 Directory Traversal vulnerability in RaidenMAILD Mail Server v.4.9.4 and before allows a remote attacker to obtain sensitive information via the /web… Mitigation only Fix from $1,9502024-04-22 MEDIUM 6.5 CVE-2024-31450 Owncast is an open source, self-hosted, decentralized, single user live video streaming and chat server. The Owncast application exposes an administr… Owncast 0.1.3+ Fix from $1,6002024-04-19 HIGH 7.1 CVE-2024-31552 CuteHttpFileServer v.3.1 version has an arbitrary file download vulnerability, which allows attackers to download arbitrary files on the server and o… Mitigation only Fix from $1,9502024-04-19 MEDIUM 6.5 CVE-2024-31587 SecuSTATION Camera V2.5.5.3116-S50-SMA-B20160811A and lower allows an unauthenticated attacker to download device configuration files via a crafted r… Mitigation only Fix from $1,6002024-04-19 HIGH 8.8 CVE-2024-27976 A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands… Avalanche 6.4.3.528+ Fix from $1,9502024-04-19 HIGH 8.1 CVE-2024-27977 A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to delete arbitrary files, th… Avalanche 6.4.3.528+ Fix from $1,9502024-04-19 HIGH 7.1 CVE-2024-27984 A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to delete specific type of fi… Avalanche 6.4.3.528+ Fix from $1,9502024-04-19 HIGH 8.8 CVE-2024-24997 A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands… Avalanche 6.4.3.528+ Fix from $1,9502024-04-19 HIGH 8.8 CVE-2024-24999 A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands… Avalanche 6.4.3.528+ Fix from $1,9502024-04-19 HIGH 8.8 CVE-2024-25000 A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands… Avalanche 6.4.3.528+ Fix from $1,9502024-04-19 HIGH 8.8 CVE-2024-23535EPSS 68% A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands… Avalanche 6.4.3.528+ Fix from $1,9502024-04-19 HIGH 8.8 CVE-2024-24992EPSS 71% A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands… Avalanche 6.4.3.528+ Fix from $1,9502024-04-19 HIGH 8.8 CVE-2024-24994EPSS 68% A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands… Avalanche 6.4.3.528+ Fix from $1,9502024-04-19 MEDIUM 6.8 CVE-2023-50885 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in AGILELOGIX Store Locator WordPress.This issue affects… Mitigation only Fix from $1,6002024-04-18 MEDIUM 6.5 CVE-2023-3675 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Secomea GateManager (Web GUI) allows Reading Data fro… Mitigation only Fix from $1,6002024-04-18 HIGH 7.6 CVE-2023-47843 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Zachary Segal CataBlog.This issue affects CataBlog: f… Mitigation only Fix from $1,9502024-04-18 MEDIUM 6.4 CVE-2024-32163 CMSeasy 7.7.7.9 is vulnerable to code execution. Cmseasy No fix yet Fix from $1,6002024-04-17 HIGH 7.2 CVE-2024-28073 SolarWinds Serv-U was found to be susceptible to a Directory Traversal Remote Code Vulnerability. This vulnerability requires a highly privileged acc… Serv U 15.4.2+ Fix from $1,9502024-04-17