CWE-40 · 4 records
Path Traversal: '\\UNC\share\name\' (Windows UNC Share)
CVEs in this class
4 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2026-25039No exploit | The application evaluate UNC path in workspace namescille · parsec-cloud · CWE-40 | High8.8 | — | 0.5% | Jul 20, 2026 |
35Monitor | CVE-2026-27615No exploit | ADB-Explorer: UNC Path Support in ManualAdbPath Leads to Remote Code Execution (RCE)alex4ssb · adb explorer · CWE-40 | High8.8 | — | 0.2% | Feb 24, 2026 |
25Monitor | CVE-2025-32103No exploit | CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows directory traversal via the /WebInterface/function/ URI to read files accrushftp · crushftp · CWE-40 | Medium5.0 | — | 18.1% | Apr 15, 2025 |
18Monitor | CVE-2023-29446No exploit | Improper Input Validation in PTC's Kepware KEPServerEXptc · kepware kepserverex · CWE-40 | Medium4.7 | — | 0.2% | Jan 10, 2024 |
- CVE-2026-2503935Monitor
The application evaluate UNC path in workspace name
HighCVSS 8.8No exploitEPSS 1%scille · parsec-cloudJul 20, 2026
- CVE-2026-2761535Monitor
ADB-Explorer: UNC Path Support in ManualAdbPath Leads to Remote Code Execution (RCE)
HighCVSS 8.8No exploitEPSS 0%alex4ssb · adb explorerFeb 24, 2026
- CVE-2025-3210325Monitor
CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows directory traversal via the /WebInterface/function/ URI to read files ac
MediumCVSS 5.0No exploitEPSS 18%crushftp · crushftpApr 15, 2025
- CVE-2023-2944618Monitor
Improper Input Validation in PTC's Kepware KEPServerEX
MediumCVSS 4.7No exploitEPSS 0%ptc · kepware kepserverexJan 10, 2024