Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2022-29464 KEVEPSS 100%
Certain WSO2 products allow unrestricted file upload with resultant remote code execution. The attacker must use a /fileupload endpoint with a Conten…
Api Manager
after 6.6.0
HIGH 8.8
CVE-2022-29281
Notable before 1.9.0-beta.8 doesn't effectively prevent the opening of executable files when clicking on a link. There is improper validation of the …
Notable
1.9.0+
HIGH 7.2
CVE-2022-20718
Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary com…
Ios Xe
No fix yet
HIGH 7.2
CVE-2022-20719
Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary com…
Ios Xe
No fix yet
HIGH 7.2
CVE-2022-20720
Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary com…
Ios Xe
No fix yet
HIGH 7.2
CVE-2022-20723
Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary com…
Ios Xe
No fix yet
MEDIUM 5.3
CVE-2022-20724
Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary com…
Cgr1000 Compute Module
No fix yet
HIGH 7.5
CVE-2022-20726
Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary com…
Cgr1000 Compute Module
Mitigation only
MEDIUM 6.7
CVE-2022-20727
Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary com…
Cgr1000 Compute Module
1.4.1 / 1.15.0.1+
HIGH 7.5
CVE-2022-27043EPSS 6%
Yearning versions 2.3.1 and 2.3.2 Interstellar GA and 2.3.4 - 2.3.6 Neptune is vulnerable to Directory Traversal.
Yearning
after 2.3.6
MEDIUM 6.7
CVE-2022-20677
Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary com…
iOS
Mitigation only
HIGH 8.8
CVE-2020-25150
A relative path traversal attack in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and the Data module compactplus Versions A10 and …
Datamodule Compactplus
Mitigation only
HIGH 7.5
CVE-2021-43289
An issue was discovered in ThoughtWorks GoCD before 21.3.0. An attacker who has compromised a GoCD agent can upload a malicious file into an arbitrar…
Gocd
21.3.0+
CRITICAL 9.8
CVE-2021-43290
An issue was discovered in ThoughtWorks GoCD before 21.3.0. An attacker who has compromised a GoCD agent can upload a malicious file into a directory…
Gocd
21.3.0+
HIGH 7.5
CVE-2022-24843
Gin-vue-admin is a backstage management system based on vue and gin, which separates the front and rear of the full stack. Gin-vue-admin 2.50 has arb…
Gin Vue Admin
2.5.1+
CRITICAL 9.8
CVE-2021-22794
A CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause remote code execution. …
Struxureware Data Center Expert
after 7.8.1
HIGH 7.8
CVE-2021-22797EPSS 26%
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal) vulnerability exists that could cause malicious script to be …
Ecostruxure Control Expert
15.1 / 2021+
HIGH 8.0
CVE-2022-28052
Directory Traversal vulnerability in file cn/roothub/store/FileSystemStorageService in function store in Roothub 2.6.0 allows remote attackers with l…
Roothub
No fix yet
CRITICAL 9.8
CVE-2021-43741
CMSimple 5.4 is vulnerable to Directory Traversal. The vulnerability exists when a user changes the file name to malicious file on config.php leading…
Cmsimple
No fix yet
MEDIUM 5.5
CVE-2022-0436
Path Traversal in GitHub repository gruntjs/grunt prior to 1.5.2.
Grunt
1.5.2+
MEDIUM 6.5
CVE-2022-24247
RiteCMS version 3.1.0 and below suffers from an arbitrary file overwrite via path traversal vulnerability in Admin Panel. Exploiting the vulnerabilit…
Ritecms
after 3.1.0
MEDIUM 6.5
CVE-2022-24248EPSS 21%
RiteCMS version 3.1.0 and below suffers from an arbitrary file deletion via path traversal vulnerability in Admin Panel. Exploiting the vulnerability…
Ritecms
after 3.1.0
HIGH 7.5
CVE-2022-27844
Arbitrary File Read vulnerability in WPvivid Team Migration, Backup, Staging – WPvivid (WordPress plugin) versions <= 0.9.70
Migration\, Backup\, Staging
0.9.71+
HIGH 7.8
CVE-2022-28541
Uncontrolled search path element vulnerability in Samsung Update prior to version 3.0.77.0 allows attackers to execute arbitrary code as Samsung Upda…
Update
3.0.77.0+
MEDIUM 5.5
CVE-2022-28543
Path traversal vulnerability in Samsung Flow prior to version 4.8.07.4 allows local attackers to read arbitrary files as Samsung Flow permission.
Samsung Flow
4.8.07.4+
MEDIUM 5.5
CVE-2022-28544
Path traversal vulnerability in unzip method of InstallAgentCommonHelper in Galaxy store prior to version 4.5.40.5 allows attacker to access the file…
Galaxy Store
4.5.40.5+
HIGH 7.8
CVE-2022-27836
Improper access control and path traversal vulnerability in Storage Manager and Storage Manager Service prior to SMR Apr-2022 Release 1 allow local a…
Android
Mitigation only
MEDIUM 6.5
CVE-2021-37293
A Directory Traversal vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 via the page GET parameter in index.php.
4st L Bems
No fix yet
CRITICAL 9.1
CVE-2022-27277
InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain an arbitrary file deletion vulnerability via the fun…
Inrouter 900 Firmware
1.0.0.r11700+
HIGH 7.5
CVE-2022-27279
InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain an arbitrary file read via the function sub_177E0.
Inrouter 900 Firmware
1.0.0.r11700+