CWE-73 · 573 records
External Control of File Name or Path
CVEs in this class
575 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
91Now | CVE-2025-33053Weaponized | Internet Shortcut Files Remote Code Execution Vulnerabilitymicrosoft · windows 10 1507 · CWE-73 | High8.8 | KEV | 87.0% | Jun 10, 2025 |
81Now | CVE-2024-43451Weaponized | NTLM Hash Disclosure Spoofing Vulnerabilitymicrosoft · windows 10 1507 · CWE-73 | Medium6.5 | KEV | 84.1% | Nov 12, 2024 |
69This week | CVE-2022-39952Weaponized | A external control of file name or path in Fortinet FortiNAC versions 9.4.0, 9.2.0 through 9.2.5, 9.1.0 through 9.1.7, 8.8.0 through 8.8.11,fortinet · fortinac · CWE-73 | Critical9.8 | — | 99.8% | Feb 16, 2023 |
69This week | CVE-2025-24054Weaponized | NTLM Hash Disclosure Spoofing Vulnerabilitymicrosoft · windows 10 1507 · CWE-73 | Medium5.4 | KEV | 58.9% | Mar 11, 2025 |
67This week | CVE-2024-8517Weaponized | SPIP Bigup Multipart File Upload OS Command Injectionspip · spip · CWE-73 | Critical9.8 | — | 94.6% | Sep 6, 2024 |
65This week | CVE-2023-4634Proof of concept | Media Library Assistant <= 3.09 - Unauthenticated Local/Remote File Inclusion & Remote Code Executiondavidlingren · media library assistant · CWE-73 | Critical9.8 | — | 85.6% | Sep 6, 2023 |
64This week | CVE-2018-17246Proof of concept | Kibana versions before 6.4.3 and 5.6.13 contain an arbitrary file inclusion flaw in the Console plugin.elastic · kibana · CWE-73 | Critical9.8 | — | 82.3% | Dec 20, 2018 |
62This week | CVE-2023-3643Proof of concept | Boss Mini document file inclusioncarel · boss mini firmware · CWE-73 | Critical9.8 | — | 75.4% | Jul 12, 2023 |
59Plan | CVE-2025-0111Weaponized | PAN-OS: Authenticated File Read Vulnerability in the Management Web Interfacepaloaltonetworks · pan-os · CWE-73 | High7.1 | KEV | 2.0% | Feb 12, 2025 |
46Plan | CVE-2021-27250No exploit | This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DAP-2020 v1.01rc0dlink · dap-2020 firmware · CWE-73 | Medium6.5 | — | 67.4% | Apr 14, 2021 |
44Plan | CVE-2021-21343No exploit | XStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process has sufficient rightsxstream · xstream · CWE-73 | High7.5 | — | 46.7% | Mar 22, 2021 |
41Plan | CVE-2024-37149No exploit | GLPI allows remote code execution through the plugin loaderglpi-project · glpi · CWE-73 | High8.8 | — | 21.1% | Jul 10, 2024 |
41Plan | CVE-2024-0265No exploit | SourceCodester Clinic Queuing System GET Parameter index.php file inclusionoretnom23 · clinic queuing system · CWE-73 | High8.8 | — | 20.9% | Jan 7, 2024 |
41Plan | CVE-2024-0087No exploit | NVIDIA Triton Inference Server for Linux contains a vulnerability where a user can set the logging location to an arbitrary file.nvidia · triton inference server · CWE-73 | High8.8 | — | 19.9% | May 14, 2024 |
40Plan | CVE-2025-71338Proof of concept | Flowise through 2.2.7 - Arbitrary File Write to Remote Code Execution via document-store APIflowiseai · flowise · CWE-73 | Critical10.0 | — | 1.2% | Jun 25, 2026 |
40Plan | CVE-2025-54945No exploit | SUNNET Corporate Training Management System - External Control of File Name or Pathsun.net · ehrd ctms · CWE-73 | Critical10.0 | — | 0.5% | Aug 30, 2025 |
40Plan | CVE-2026-20358No exploit | Cisco Crosswork Security Hardening Release: August 2026cisco · cisco crosswork planning · CWE-73 | Critical10.0 | — | 0.5% | Aug 19, 2026 |
39Monitor | CVE-2025-6463No exploit | Forminator Forms – Contact Form, Payment Form & Custom Form Builder <= 1.44.2 - Unauthenticated Arbitrary File Deletion Triggered via Administrator Form Submissincsub · forminator · CWE-73 | High8.8 | — | 12.7% | Jul 2, 2025 |
39Monitor | CVE-2019-3681No exploit | osc: stores downloaded (supposed) RPM in network-controlled filesystem pathssuse · linux enterprise server · CWE-73 | Critical9.8 | — | 1.4% | Jun 29, 2020 |
39Monitor | CVE-2026-11526No exploit | GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandlerurban · gd · CWE-73 | Critical9.8 | — | 1.4% | Jun 14, 2026 |
39Monitor | CVE-2023-2152No exploit | SourceCodester Student Study Center Desk Management System index.php file inclusionoretnom23 · student study center desk management system · CWE-73 | Critical9.8 | — | 1.2% | Apr 18, 2023 |
39Monitor | CVE-2021-38477No exploit | There are multiple API function codes that permit reading and writing data to or from files and directories, which could lead to the manipulauvesy · versiondog · CWE-73 | Critical9.8 | — | 1.2% | Oct 22, 2021 |
39Monitor | CVE-2020-9752No exploit | Naver Cloud Explorer before 2.2.2.11 allows the attacker can move a local file in any path on the filesystem as a system privilege through inaver · cloud explorer · CWE-73 | Critical9.8 | — | 1.1% | Mar 22, 2020 |
39Monitor | CVE-2023-47862No exploit | A local file inclusion vulnerability exists in the getLanguageFromBrowser functionality of WWBN AVideo dev master commit 15fed957fb.wwbn · avideo · CWE-73 | Critical9.8 | — | 1.1% | Jan 10, 2024 |
39Monitor | CVE-2023-4749No exploit | SourceCodester Inventory Management System index.php file inclusionmayurik · inventory management system · CWE-73 | Critical9.8 | — | 1.0% | Sep 3, 2023 |
- CVE-2025-3305391Now
Internet Shortcut Files Remote Code Execution Vulnerability
HighCVSS 8.8KEVWeaponizedEPSS 87%microsoft · windows 10 1507Jun 10, 2025
- CVE-2024-4345181Now
NTLM Hash Disclosure Spoofing Vulnerability
MediumCVSS 6.5KEVWeaponizedEPSS 84%microsoft · windows 10 1507Nov 12, 2024
- CVE-2022-3995269This week
A external control of file name or path in Fortinet FortiNAC versions 9.4.0, 9.2.0 through 9.2.5, 9.1.0 through 9.1.7, 8.8.0 through 8.8.11,
CriticalCVSS 9.8WeaponizedEPSS 100%fortinet · fortinacFeb 16, 2023
- CVE-2025-2405469This week
NTLM Hash Disclosure Spoofing Vulnerability
MediumCVSS 5.4KEVWeaponizedEPSS 59%microsoft · windows 10 1507Mar 11, 2025
- CVE-2024-851767This week
SPIP Bigup Multipart File Upload OS Command Injection
CriticalCVSS 9.8WeaponizedEPSS 95%spip · spipSep 6, 2024
- CVE-2023-463465This week
Media Library Assistant <= 3.09 - Unauthenticated Local/Remote File Inclusion & Remote Code Execution
CriticalCVSS 9.8Proof of conceptEPSS 86%davidlingren · media library assistantSep 6, 2023
- CVE-2018-1724664This week
Kibana versions before 6.4.3 and 5.6.13 contain an arbitrary file inclusion flaw in the Console plugin.
CriticalCVSS 9.8Proof of conceptEPSS 82%elastic · kibanaDec 20, 2018
- CVE-2023-364362This week
Boss Mini document file inclusion
CriticalCVSS 9.8Proof of conceptEPSS 75%carel · boss mini firmwareJul 12, 2023
- CVE-2025-011159Plan
PAN-OS: Authenticated File Read Vulnerability in the Management Web Interface
HighCVSS 7.1KEVWeaponizedEPSS 2%paloaltonetworks · pan-osFeb 12, 2025
- CVE-2021-2725046Plan
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DAP-2020 v1.01rc0
MediumCVSS 6.5No exploitEPSS 67%dlink · dap-2020 firmwareApr 14, 2021
- CVE-2021-2134344Plan
XStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process has sufficient rights
HighCVSS 7.5No exploitEPSS 47%xstream · xstreamMar 22, 2021
- CVE-2024-3714941Plan
GLPI allows remote code execution through the plugin loader
HighCVSS 8.8No exploitEPSS 21%glpi-project · glpiJul 10, 2024
- CVE-2024-026541Plan
SourceCodester Clinic Queuing System GET Parameter index.php file inclusion
HighCVSS 8.8No exploitEPSS 21%oretnom23 · clinic queuing systemJan 7, 2024
- CVE-2024-008741Plan
NVIDIA Triton Inference Server for Linux contains a vulnerability where a user can set the logging location to an arbitrary file.
HighCVSS 8.8No exploitEPSS 20%nvidia · triton inference serverMay 14, 2024
- CVE-2025-7133840Plan
Flowise through 2.2.7 - Arbitrary File Write to Remote Code Execution via document-store API
CriticalCVSS 10.0Proof of conceptEPSS 1%flowiseai · flowiseJun 25, 2026
- CVE-2025-5494540Plan
SUNNET Corporate Training Management System - External Control of File Name or Path
CriticalCVSS 10.0No exploitEPSS 1%sun.net · ehrd ctmsAug 30, 2025
- CVE-2026-2035840Plan
Cisco Crosswork Security Hardening Release: August 2026
CriticalCVSS 10.0No exploitEPSS 0%cisco · cisco crosswork planningAug 19, 2026
- CVE-2025-646339Monitor
Forminator Forms – Contact Form, Payment Form & Custom Form Builder <= 1.44.2 - Unauthenticated Arbitrary File Deletion Triggered via Administrator Form Submiss
HighCVSS 8.8No exploitEPSS 13%incsub · forminatorJul 2, 2025
- CVE-2019-368139Monitor
osc: stores downloaded (supposed) RPM in network-controlled filesystem paths
CriticalCVSS 9.8No exploitEPSS 1%suse · linux enterprise serverJun 29, 2020
- CVE-2026-1152639Monitor
GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandle
CriticalCVSS 9.8No exploitEPSS 1%rurban · gdJun 14, 2026
- CVE-2023-215239Monitor
SourceCodester Student Study Center Desk Management System index.php file inclusion
CriticalCVSS 9.8No exploitEPSS 1%oretnom23 · student study center desk management systemApr 18, 2023
- CVE-2021-3847739Monitor
There are multiple API function codes that permit reading and writing data to or from files and directories, which could lead to the manipul
CriticalCVSS 9.8No exploitEPSS 1%auvesy · versiondogOct 22, 2021
- CVE-2020-975239Monitor
Naver Cloud Explorer before 2.2.2.11 allows the attacker can move a local file in any path on the filesystem as a system privilege through i
CriticalCVSS 9.8No exploitEPSS 1%naver · cloud explorerMar 22, 2020
- CVE-2023-4786239Monitor
A local file inclusion vulnerability exists in the getLanguageFromBrowser functionality of WWBN AVideo dev master commit 15fed957fb.
CriticalCVSS 9.8No exploitEPSS 1%wwbn · avideoJan 10, 2024
- CVE-2023-474939Monitor
SourceCodester Inventory Management System index.php file inclusion
CriticalCVSS 9.8No exploitEPSS 1%mayurik · inventory management systemSep 3, 2023