İçeriğe atla
Noroxi

CWE-27 · 21 kayıt

Path Traversal: 'dir/../../filename'

Bu sınıftaki CVE’ler

21 kayıt

  • CVE-2024-24809
    50Planlayın

    Traccar vulnerable to Path Traversal: 'dir/../../filename' and Unrestricted Upload of File with Dangerous Type

    YüksekCVSS 8,5SilahlaştırılmışEPSS %54

    traccar · traccar10 Nis 2024

  • CVE-2024-21896
    39İzleyin

    The permission model protects itself against path traversal attacks by calling path.resolve() on any paths given by the user.

    KritikCVSS 9,8İstismar yokEPSS %1

    nodejs · node.js19 Şub 2024

  • CVE-2025-66518
    35İzleyin

    Apache Kyuubi: Unauthorized directory access due to missing path normalization

    YüksekCVSS 8,8İstismar yokEPSS %1

    apache · kyuubi5 Oca 2026

  • CVE-2023-34125
    34İzleyin

    Path Traversal vulnerability in GMS and Analytics allows an authenticated attacker to read arbitrary files from the underlying filesystem wi

    OrtaCVSS 6,5İstismar yokEPSS %25

    sonicwall · analytics12 Tem 2023

  • CVE-2025-10438
    34İzleyin

    Path Traversal in Yordam BT's Yordam Katalog

    YüksekCVSS 8,6İstismar yokEPSS %0

    yordam information technology consulting education and electrical systems industry trade inc. · yordam katalog25 Eyl 2025

  • CVE-2021-35027
    31İzleyin

    A directory traversal vulnerability in the web server of the Zyxel VPN2S firmware version 1.12 could allow a remote attacker to gain access

    YüksekCVSS 7,5İstismar yokEPSS %2

    zyxel · zywall vpn2s firmware29 Eyl 2021

  • CVE-2024-20348
    30İzleyin

    A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauth

    YüksekCVSS 7,5İstismar yokEPSS %1

    cisco · nexus dashboard fabric controller3 Nis 2024

  • CVE-2025-58761
    30İzleyin

    Tautulli vulnerable to Unauthenticated Path Traversal in `real_pms_image_proxy`

    YüksekCVSS 7,5İstismar yokEPSS %1

    tautulli · tautulli9 Eyl 2025

  • CVE-2026-76344
    30İzleyin

    Path Traversal through the Search Dispatch REST API in Splunk Enterprise

    YüksekCVSS 7,7İstismar yokEPSS %0

    splunk · splunk19 Ağu 2026

  • CVE-2024-43658
    28İzleyin

    Using the <redacted> action or <redacted>.sh script, arbitrary files and directories can be deleted using directory traversal.

    YüksekCVSS 7,2İstismar yokEPSS %1

    iocharger · iocharger firmware for ac models9 Oca 2025

  • CVE-2023-20129
    26İzleyin

    Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilities

    OrtaCVSS 6,5İstismar yokEPSS %1

    cisco · prime infrastructure5 Nis 2023

  • CVE-2023-20127
    26İzleyin

    Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilities

    OrtaCVSS 6,5İstismar yokEPSS %1

    cisco · prime infrastructure5 Nis 2023

  • CVE-2025-52237
    26İzleyin

    An issue in the component /stl/actions/download?filePath of SSCMS v7.3.1 allows attackers to execute a directory traversal.

    OrtaCVSS 6,5İstismar yokEPSS %0

    sscms · sscms5 Ağu 2025

  • CVE-2023-20130
    26İzleyin

    Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilities

    OrtaCVSS 6,5İstismar yokEPSS %0

    cisco · prime infrastructure5 Nis 2023

  • CVE-2023-20090
    26İzleyin

    Cisco TelePresence Collaboration Endpoint and RoomOS Software Privilege Escalation Vulnerability

    OrtaCVSS 6,7İstismar yokEPSS %0

    cisco · telepresence collaboration endpoint15 Kas 2024

  • CVE-2026-20018
    23İzleyin

    Cisco Firepower Management Center Software and Firepower Threat Defense Path Traversal Vulnerability

    OrtaCVSS 5,9İstismar yokEPSS %0

    cisco · cisco secure firewall management center (fmc)4 Mar 2026

  • CVE-2026-17495
    23İzleyin

    moment vulnerable to Path Traversal via crafted non-string locale name

    OrtaCVSS 5,9İstismar yokEPSS %0

    moment · moment15 Eyl 2026

  • CVE-2025-58292
    22İzleyin

    Denial of service (DoS) vulnerability in the office service.

    OrtaCVSS 5,5İstismar yokEPSS %0

    huawei · harmonyos11 Eki 2025

  • CVE-2023-20131
    21İzleyin

    Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilities

    OrtaCVSS 5,4İstismar yokEPSS %1

    cisco · prime infrastructure5 Nis 2023

  • CVE-2024-7458
    20İzleyin

    elunez eladmin Database Management/Deployment Management upload path traversal

    OrtaCVSS 5,1İstismar yokEPSS %1

    eladmin · eladmin4 Ağu 2024

  • CVE-2024-25828
    19İzleyin

    cmseasy V7.7.7.9 has an arbitrary file deletion vulnerability in lib/admin/template_admin.php.

    OrtaCVSS 4,9İstismar yokEPSS %1

    cmseasy · cmseasy22 Şub 2024

Tüm zafiyet sınıfları