Skip to content
Noroxi

CWE-548 · 60 records

Exposure of Information Through Directory Listing

CVEs in this class

60 records

  • CVE-2020-8161
    35Monitor

    A directory traversal vulnerability exists in rack < 2.2.0 that allows an attacker perform directory traversal vulnerability in the Rack::Di

    HighCVSS 8.6No exploitEPSS 3%

    rack project · rackJul 2, 2020

  • CVE-2020-7858
    34Monitor

    AquaNPlayer directory traversing vulnerability

    HighCVSS 8.6No exploitEPSS 1%

    cdnetworks · aquanplayerApr 22, 2021

  • OpenBMCS Directory Listing Information Disclosure

    HighCVSS 8.7No exploitEPSS 1%

    openbmcs · openbmcsDec 9, 2025

  • CVE-2023-7164
    31Monitor

    BackWPup < 4.0.4 - Unauthenticated Backup Download

    HighCVSS 7.5Proof of conceptEPSS 2%

    inpsyde · backwpupApr 8, 2024

  • NetComm Wireless G LTE Light Industrial M2M Router (NWL-25) with firmware 2.0.29.11 and prior.

    HighCVSS 7.5No exploitEPSS 2%

    netcommwireless · nwl-25 firmwareAug 10, 2018

  • A path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the serv

    HighCVSS 7.5No exploitEPSS 2%

    static-resource-server project · static-resource-serverFeb 1, 2019

  • CVE-2017-6045
    31Monitor

    An Information Exposure issue was discovered in Trihedral VTScada Versions prior to 11.2.26.

    HighCVSS 7.5No exploitEPSS 2%

    trihedral · vtscadaJun 21, 2017

  • In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prio

    HighCVSS 7.5No exploitEPSS 2%

    advantech · webaccessMay 15, 2018

  • CVE-2019-5415
    30Monitor

    A bug in handling the ignore files and directories feature in serve 6.5.3 allows an attacker to read a file or list the directory that the v

    HighCVSS 7.5No exploitEPSS 2%

    zeit · serveMar 21, 2019

  • mySCADA myPRO Exposure of Information Through Directory Listing

    HighCVSS 7.5No exploitEPSS 1%

    myscada · myproMay 13, 2022

  • Dell EMC PowerScale OneFS versions 9.1.0, 9.2.0.x, 9.2.1.x contain an Exposure of Information through Directory Listing vulnerability.

    HighCVSS 7.5No exploitEPSS 1%

    dell · emc powerscale onefsNov 12, 2021

  • tombh jekbox server.rb exposure of information through directory listing

    HighCVSS 7.5No exploitEPSS 1%

    jekbox project · jekboxJan 15, 2023

  • A Site-wide directory listing vulnerability in /fm in actidata actiNAS SL 2U-8 RDX 3.2.03-SP1 allows remote attackers to list the files host

    HighCVSS 7.5No exploitEPSS 1%

    actidata · actinas sl 2u-8 rdx firmwareJan 19, 2024

  • An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before.

    HighCVSS 7.5No exploitEPSS 1%

    elspec-ltd · g5dfr firmwareMar 20, 2024

  • Pentaho Business Analytics Server - Exposure of Information Through Directory Listing

    HighCVSS 7.5No exploitEPSS 0%

    hitachi · vantara pentahoNov 2, 2022

  • The configuration of the Apache httpd webserver which serves the MEAC300-FNADE4 web application, is partly insecure.

    HighCVSS 7.5No exploitEPSS 0%

    endress · meac300-fnade4 firmwareJul 3, 2025

  • Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability.

    HighCVSS 7.5No exploitEPSS 0%

    dell · powerflex appliance intelligent catalogMay 20, 2026

  • IBM Security Directory Integrator information disclosure

    HighCVSS 7.5No exploitEPSS 0%

    ibm · security directory integratorJan 26, 2025

  • Grandstream Networks GXP1628 <=1.0.4.130 is vulnerable to Incorrect Access Control.

    HighCVSS 7.6No exploitEPSS 0%

    grandstream · gxp1628 firmwareJul 29, 2025

  • CVE-2024-2340
    29Monitor

    Avada <= 7.11.6 - Unauthenticated Sensitive Information Exposure via Form Uploads Directory Listing

    MediumCVSS 5.3Proof of conceptEPSS 28%

    theme-fusion · avadaApr 9, 2024

  • CVE-2025-4807
    27Monitor

    SourceCodester Online Student Clearance System exposure of information through directory listing

    MediumCVSS 6.9No exploitEPSS 1%

    senior-walter · online student clearance systemMay 16, 2025

  • CVE-2024-8711
    27Monitor

    SourceCodester Food Ordering Management System includes exposure of information through directory listing

    MediumCVSS 6.9No exploitEPSS 1%

    oretnom23 · food ordering management systemSep 12, 2024

  • SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Information Disclosure via Log Directory

    MediumCVSS 6.9No exploitEPSS 1%

    sound4 · first firmwareDec 30, 2025

  • CVE-2024-7912
    27Monitor

    CodeAstro Online Railway Reservation System assets exposure of information through directory listing

    MediumCVSS 6.9No exploitEPSS 1%

    online railway reservation system project · online railway reservation systemAug 18, 2024

  • CVE-2024-7809
    27Monitor

    SourceCodester Online Graduate Tracer System nbproject exposure of information through directory listing

    MediumCVSS 6.9No exploitEPSS 1%

    tamparongj03 · online graduate tracer systemAug 14, 2024

All vulnerability classes