CWE-25 · 13 записей
Path Traversal: '/../filedir'
CVE этого класса
13 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
65На этой неделе | CVE-2022-20775Готовый эксплойт | Cisco SD-WAN Software Privilege Escalation Vulnerabilitycisco · catalyst sd-wan manager · CWE-25 | Высокая7,8 | KEV | 12,5 % | 30 сент. 2022 г. |
38Наблюдать | CVE-2023-52138Эксплойта нет | Path traversal via crafted cpio archives in Engrampa archiversmate-desktop · engrampa · CWE-25 | Критическая9,6 | — | 1,7 % | 5 февр. 2024 г. |
31Наблюдать | CVE-2022-20818Proof of concept | Cisco SD-WAN Software Privilege Escalation Vulnerabilitiescisco · sd-wan vbond orchestrator · CWE-25 | Высокая7,8 | — | 0,6 % | 30 сент. 2022 г. |
30Наблюдать | CVE-2023-6118Эксплойта нет | Path Traversal in Neutron IP Cameraneutron · neu-ipb210-28 firmware · CWE-25 | Высокая7,5 | — | 0,8 % | 23 нояб. 2023 г. |
30Наблюдать | CVE-2023-6947Эксплойта нет | Best WordPress Gallery Plugin – FooGallery <= 2.4.16 - Authenticated (Contributor+) Directory Traversalfooplugins · foogallery · CWE-25 | Высокая7,7 | — | 0,8 % | 10 дек. 2024 г. |
30Наблюдать | CVE-2024-2442Эксплойта нет | Path Traversal vulnerability in Franklin Fueling System EVO 550/5000franklin fueling system · evo 550 · CWE-25 | Высокая7,5 | — | 0,7 % | 19 мар. 2024 г. |
30Наблюдать | CVE-2023-6919Эксплойта нет | Path Traversal in VGuard IP Camera Network Recorderbiges · vg-4c1a-lru firmware · CWE-25 | Высокая7,5 | — | 0,6 % | 26 янв. 2024 г. |
29Наблюдать | CVE-2025-68916Эксплойта нет | Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/certsupload.cgi /../ directory traversal for file upload with resultant code exriello-ups · netman 208 · CWE-25 | Высокая7,2 | — | 2,6 % | 24 дек. 2025 г. |
23Наблюдать | CVE-2026-68959Эксплойта нет | SKYSEA Client View and SKYMEC IT Manager contain a path traversal vulnerability.sky co., ltd. · skysea client view · CWE-25 | Средняя5,8 | — | 0,7 % | 25 авг. 2026 г. |
22Наблюдать | CVE-2025-58286Эксплойта нет | Denial of service (DoS) vulnerability in the office service.huawei · harmonyos · CWE-25 | Средняя5,5 | — | 0,1 % | 11 окт. 2025 г. |
22Наблюдать | GHSA-4fg7-vxc8-qx5wЭксплойта нет | rage vulnerable to malicious plugin names, recipients, or identities causing arbitrary binary executioncrates.io · rage · CWE-25 | Средняя5,5 | — | — | 18 дек. 2024 г. |
22Наблюдать | GHSA-32gq-x56h-299cЭксплойта нет | age vulnerable to malicious plugin names, recipients, or identities causing arbitrary binary executionGo · filippo.io/age · CWE-25 | Средняя5,5 | — | — | 18 дек. 2024 г. |
21Наблюдать | CVE-2026-23877Эксплойта нет | Directory Traversal & Filesystem can be accessed by a non-admin userswingmx · swing music · CWE-25 | Средняя5,3 | — | 0,6 % | 19 янв. 2026 г. |
- CVE-2022-2077565На этой неделе
Cisco SD-WAN Software Privilege Escalation Vulnerability
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 12 %cisco · catalyst sd-wan manager30 сент. 2022 г.
- CVE-2023-5213838Наблюдать
Path traversal via crafted cpio archives in Engrampa archivers
КритическаяCVSS 9,6Эксплойта нетEPSS 2 %mate-desktop · engrampa5 февр. 2024 г.
- CVE-2022-2081831Наблюдать
Cisco SD-WAN Software Privilege Escalation Vulnerabilities
ВысокаяCVSS 7,8Proof of conceptEPSS 1 %cisco · sd-wan vbond orchestrator30 сент. 2022 г.
- CVE-2023-611830Наблюдать
Path Traversal in Neutron IP Camera
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %neutron · neu-ipb210-28 firmware23 нояб. 2023 г.
- CVE-2023-694730Наблюдать
Best WordPress Gallery Plugin – FooGallery <= 2.4.16 - Authenticated (Contributor+) Directory Traversal
ВысокаяCVSS 7,7Эксплойта нетEPSS 1 %fooplugins · foogallery10 дек. 2024 г.
- CVE-2024-244230Наблюдать
Path Traversal vulnerability in Franklin Fueling System EVO 550/5000
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %franklin fueling system · evo 55019 мар. 2024 г.
- CVE-2023-691930Наблюдать
Path Traversal in VGuard IP Camera Network Recorder
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %biges · vg-4c1a-lru firmware26 янв. 2024 г.
- CVE-2025-6891629Наблюдать
Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/certsupload.cgi /../ directory traversal for file upload with resultant code ex
ВысокаяCVSS 7,2Эксплойта нетEPSS 3 %riello-ups · netman 20824 дек. 2025 г.
- CVE-2026-6895923Наблюдать
SKYSEA Client View and SKYMEC IT Manager contain a path traversal vulnerability.
СредняяCVSS 5,8Эксплойта нетEPSS 1 %sky co., ltd. · skysea client view25 авг. 2026 г.
- CVE-2025-5828622Наблюдать
Denial of service (DoS) vulnerability in the office service.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %huawei · harmonyos11 окт. 2025 г.
- GHSA-4fg7-vxc8-qx5w22Наблюдать
rage vulnerable to malicious plugin names, recipients, or identities causing arbitrary binary execution
СредняяCVSS 5,5Эксплойта нетcrates.io · rage18 дек. 2024 г.
- GHSA-32gq-x56h-299c22Наблюдать
age vulnerable to malicious plugin names, recipients, or identities causing arbitrary binary execution
СредняяCVSS 5,5Эксплойта нетGo · filippo.io/age18 дек. 2024 г.
- CVE-2026-2387721Наблюдать
Directory Traversal & Filesystem can be accessed by a non-admin user
СредняяCVSS 5,3Эксплойта нетEPSS 1 %swingmx · swing music19 янв. 2026 г.