CWE-27 · 21 kayıt
Path Traversal: 'dir/../../filename'
Bu sınıftaki CVE’ler
21 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
50Planlayın | CVE-2024-24809Silahlaştırılmış | Traccar vulnerable to Path Traversal: 'dir/../../filename' and Unrestricted Upload of File with Dangerous Typetraccar · traccar · CWE-27 | Yüksek8,5 | — | %54,4 | 10 Nis 2024 |
39İzleyin | CVE-2024-21896İstismar yok | The permission model protects itself against path traversal attacks by calling path.resolve() on any paths given by the user.nodejs · node.js · CWE-27 | Kritik9,8 | — | %1,3 | 19 Şub 2024 |
35İzleyin | CVE-2025-66518İstismar yok | Apache Kyuubi: Unauthorized directory access due to missing path normalizationapache · kyuubi · CWE-27 | Yüksek8,8 | — | %1,0 | 5 Oca 2026 |
34İzleyin | CVE-2023-34125İstismar yok | Path Traversal vulnerability in GMS and Analytics allows an authenticated attacker to read arbitrary files from the underlying filesystem wisonicwall · analytics · CWE-27 | Orta6,5 | — | %25,4 | 12 Tem 2023 |
34İzleyin | CVE-2025-10438İstismar yok | Path Traversal in Yordam BT's Yordam Katalogyordam information technology consulting education and electrical systems industry trade inc. · yordam katalog · CWE-27 | Yüksek8,6 | — | %0,4 | 25 Eyl 2025 |
31İzleyin | CVE-2021-35027İstismar yok | A directory traversal vulnerability in the web server of the Zyxel VPN2S firmware version 1.12 could allow a remote attacker to gain access zyxel · zywall vpn2s firmware · CWE-27 | Yüksek7,5 | — | %2,0 | 29 Eyl 2021 |
30İzleyin | CVE-2024-20348İstismar yok | A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauthcisco · nexus dashboard fabric controller · CWE-27 | Yüksek7,5 | — | %0,8 | 3 Nis 2024 |
30İzleyin | CVE-2025-58761İstismar yok | Tautulli vulnerable to Unauthenticated Path Traversal in `real_pms_image_proxy`tautulli · tautulli · CWE-27 | Yüksek7,5 | — | %0,7 | 9 Eyl 2025 |
30İzleyin | CVE-2026-76344İstismar yok | Path Traversal through the Search Dispatch REST API in Splunk Enterprisesplunk · splunk · CWE-27 | Yüksek7,7 | — | %0,4 | 19 Ağu 2026 |
28İzleyin | CVE-2024-43658İstismar yok | Using the <redacted> action or <redacted>.sh script, arbitrary files and directories can be deleted using directory traversal.iocharger · iocharger firmware for ac models · CWE-27 | Yüksek7,2 | — | %0,5 | 9 Oca 2025 |
26İzleyin | CVE-2023-20129İstismar yok | Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilitiescisco · prime infrastructure · CWE-27 | Orta6,5 | — | %0,9 | 5 Nis 2023 |
26İzleyin | CVE-2023-20127İstismar yok | Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilitiescisco · prime infrastructure · CWE-27 | Orta6,5 | — | %0,9 | 5 Nis 2023 |
26İzleyin | CVE-2025-52237İstismar yok | An issue in the component /stl/actions/download?filePath of SSCMS v7.3.1 allows attackers to execute a directory traversal.sscms · sscms · CWE-27 | Orta6,5 | — | %0,5 | 5 Ağu 2025 |
26İzleyin | CVE-2023-20130İstismar yok | Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilitiescisco · prime infrastructure · CWE-27 | Orta6,5 | — | %0,4 | 5 Nis 2023 |
26İzleyin | CVE-2023-20090İstismar yok | Cisco TelePresence Collaboration Endpoint and RoomOS Software Privilege Escalation Vulnerabilitycisco · telepresence collaboration endpoint · CWE-27 | Orta6,7 | — | %0,2 | 15 Kas 2024 |
23İzleyin | CVE-2026-20018İstismar yok | Cisco Firepower Management Center Software and Firepower Threat Defense Path Traversal Vulnerabilitycisco · cisco secure firewall management center (fmc) · CWE-27 | Orta5,9 | — | %0,4 | 4 Mar 2026 |
23İzleyin | CVE-2026-17495İstismar yok | moment vulnerable to Path Traversal via crafted non-string locale namemoment · moment · CWE-27 | Orta5,9 | — | %0,4 | 15 Eyl 2026 |
22İzleyin | CVE-2025-58292İstismar yok | Denial of service (DoS) vulnerability in the office service.huawei · harmonyos · CWE-27 | Orta5,5 | — | %0,1 | 11 Eki 2025 |
21İzleyin | CVE-2023-20131İstismar yok | Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilitiescisco · prime infrastructure · CWE-27 | Orta5,4 | — | %0,6 | 5 Nis 2023 |
20İzleyin | CVE-2024-7458İstismar yok | elunez eladmin Database Management/Deployment Management upload path traversaleladmin · eladmin · CWE-27 | Orta5,1 | — | %0,8 | 4 Ağu 2024 |
19İzleyin | CVE-2024-25828İstismar yok | cmseasy V7.7.7.9 has an arbitrary file deletion vulnerability in lib/admin/template_admin.php.cmseasy · cmseasy · CWE-27 | Orta4,9 | — | %0,6 | 22 Şub 2024 |
- CVE-2024-2480950Planlayın
Traccar vulnerable to Path Traversal: 'dir/../../filename' and Unrestricted Upload of File with Dangerous Type
YüksekCVSS 8,5SilahlaştırılmışEPSS %54traccar · traccar10 Nis 2024
- CVE-2024-2189639İzleyin
The permission model protects itself against path traversal attacks by calling path.resolve() on any paths given by the user.
KritikCVSS 9,8İstismar yokEPSS %1nodejs · node.js19 Şub 2024
- CVE-2025-6651835İzleyin
Apache Kyuubi: Unauthorized directory access due to missing path normalization
YüksekCVSS 8,8İstismar yokEPSS %1apache · kyuubi5 Oca 2026
- CVE-2023-3412534İzleyin
Path Traversal vulnerability in GMS and Analytics allows an authenticated attacker to read arbitrary files from the underlying filesystem wi
OrtaCVSS 6,5İstismar yokEPSS %25sonicwall · analytics12 Tem 2023
- CVE-2025-1043834İzleyin
Path Traversal in Yordam BT's Yordam Katalog
YüksekCVSS 8,6İstismar yokEPSS %0yordam information technology consulting education and electrical systems industry trade inc. · yordam katalog25 Eyl 2025
- CVE-2021-3502731İzleyin
A directory traversal vulnerability in the web server of the Zyxel VPN2S firmware version 1.12 could allow a remote attacker to gain access
YüksekCVSS 7,5İstismar yokEPSS %2zyxel · zywall vpn2s firmware29 Eyl 2021
- CVE-2024-2034830İzleyin
A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauth
YüksekCVSS 7,5İstismar yokEPSS %1cisco · nexus dashboard fabric controller3 Nis 2024
- CVE-2025-5876130İzleyin
Tautulli vulnerable to Unauthenticated Path Traversal in `real_pms_image_proxy`
YüksekCVSS 7,5İstismar yokEPSS %1tautulli · tautulli9 Eyl 2025
- CVE-2026-7634430İzleyin
Path Traversal through the Search Dispatch REST API in Splunk Enterprise
YüksekCVSS 7,7İstismar yokEPSS %0splunk · splunk19 Ağu 2026
- CVE-2024-4365828İzleyin
Using the <redacted> action or <redacted>.sh script, arbitrary files and directories can be deleted using directory traversal.
YüksekCVSS 7,2İstismar yokEPSS %1iocharger · iocharger firmware for ac models9 Oca 2025
- CVE-2023-2012926İzleyin
Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilities
OrtaCVSS 6,5İstismar yokEPSS %1cisco · prime infrastructure5 Nis 2023
- CVE-2023-2012726İzleyin
Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilities
OrtaCVSS 6,5İstismar yokEPSS %1cisco · prime infrastructure5 Nis 2023
- CVE-2025-5223726İzleyin
An issue in the component /stl/actions/download?filePath of SSCMS v7.3.1 allows attackers to execute a directory traversal.
OrtaCVSS 6,5İstismar yokEPSS %0sscms · sscms5 Ağu 2025
- CVE-2023-2013026İzleyin
Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilities
OrtaCVSS 6,5İstismar yokEPSS %0cisco · prime infrastructure5 Nis 2023
- CVE-2023-2009026İzleyin
Cisco TelePresence Collaboration Endpoint and RoomOS Software Privilege Escalation Vulnerability
OrtaCVSS 6,7İstismar yokEPSS %0cisco · telepresence collaboration endpoint15 Kas 2024
- CVE-2026-2001823İzleyin
Cisco Firepower Management Center Software and Firepower Threat Defense Path Traversal Vulnerability
OrtaCVSS 5,9İstismar yokEPSS %0cisco · cisco secure firewall management center (fmc)4 Mar 2026
- CVE-2026-1749523İzleyin
moment vulnerable to Path Traversal via crafted non-string locale name
OrtaCVSS 5,9İstismar yokEPSS %0moment · moment15 Eyl 2026
- CVE-2025-5829222İzleyin
Denial of service (DoS) vulnerability in the office service.
OrtaCVSS 5,5İstismar yokEPSS %0huawei · harmonyos11 Eki 2025
- CVE-2023-2013121İzleyin
Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Vulnerabilities
OrtaCVSS 5,4İstismar yokEPSS %1cisco · prime infrastructure5 Nis 2023
- CVE-2024-745820İzleyin
elunez eladmin Database Management/Deployment Management upload path traversal
OrtaCVSS 5,1İstismar yokEPSS %1eladmin · eladmin4 Ağu 2024
- CVE-2024-2582819İzleyin
cmseasy V7.7.7.9 has an arbitrary file deletion vulnerability in lib/admin/template_admin.php.
OrtaCVSS 4,9İstismar yokEPSS %1cmseasy · cmseasy22 Şub 2024