CWE-22— Path Traversal
The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.— MITRE CWE catalog
8,883 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-22page 31 of 178
- CVE-2013-3514MEDIUMCVSS v2 4.3EG 4.32014-05-14
Multiple directory traversal vulnerabilities in OpenX before 2.8.10 revision 82710 allow remote administrators to read arbitrary files via a .. (dot dot) in the group parameter to (1) plugin-preferences.php or (2) plugin-settings.php in ww…
- CVE-2013-3541HIGHCVSS v2 7.8EG 7.82013-10-04
Directory traversal vulnerability in cgi-bin/admin/fileread in AirLive WL2600CAM and possibly other camera models allows remote attackers to read arbitrary files via a .. (dot dot) in the READ.filePath parameter.
- CVE-2013-3598MEDIUMCVSS v2 5.0EG 5.02013-08-28
Directory traversal vulnerability in servlet/CreateTemplateServlet in SearchBlox before 7.5 build 1 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the name parameter.
- CVE-2013-3626HIGHCVSS v2 9.3EG 9.32013-11-06
Directory traversal vulnerability in the Session Server in Attachmate Verastream Host Integrator (VHI) 6.0 through 7.5 SP 1 HF 1 allows remote attackers to upload and execute arbitrary files via a crafted message.
- CVE-2013-3650MEDIUMCVSS v2 5.0EG 5.02013-06-30
Directory traversal vulnerability in the lfCheckFileName function in data/class/pages/LC_Page_ResizeImage.php in LOCKON EC-CUBE before 2.12.5 allows remote attackers to read arbitrary image files via vectors involving the image parameter t…
- CVE-2013-3654MEDIUMCVSS v2 5.0EG 5.02013-06-30
Directory traversal vulnerability in LOCKON EC-CUBE 2.12.0 through 2.12.4 allows remote attackers to read arbitrary image files via vectors related to data/class/SC_CheckError.php and data/class/SC_FormParam.php, a different vulnerability …
- CVE-2013-3658HIGHCVSS v2 9.4EG 9.42013-09-10
Directory traversal vulnerability in VMware ESXi 4.0 through 5.0, and ESX 4.0 and 4.1, allows remote attackers to delete arbitrary host OS files via unspecified vectors.
- CVE-2013-3661MEDIUMCVSS v2 4.9EG 4.92013-05-24
The EPATHOBJ::bFlatten function in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows Server 2012, and Windows RT does not check…
- CVE-2013-3706MEDIUMCVSS v2 5.0EG 5.02014-03-06
Directory traversal vulnerability in the PreBoot service in Novell ZENworks Configuration Management (ZCM) 11.2 allows remote attackers to read arbitrary files via a .. (dot dot) in a preboot update pathname, aka ZDI-CAN-1595.
- CVE-2013-3739MEDIUMCVSS v2 5.0EG 5.02014-06-05
Directory traversal vulnerability in editor.php in Network Weathermap 0.97c and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the mapname parameter in a show_config action.
- CVE-2013-3921MEDIUMCVSS v2 5.0EG 5.02013-12-05
Directory traversal vulnerability in Easytime Studio Easy File Manager 1.1 for iOS allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) to the default URI.
- CVE-2013-3922HIGHCVSS v2 7.8EG 7.82013-11-25
Directory traversal vulnerability in Gummy Bear Studios FTP Drive + HTTP Server 1.0.4 and earlier allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) in a GET request.
- CVE-2013-3923MEDIUMCVSS v2 5.0EG 5.02013-11-26
Directory traversal vulnerability in SavySoda WiFi HD Free before 7.0 allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) in a GET request.
- CVE-2013-3993CRITICALCVSS 6.5EG 9.0⚠ KEV2014-07-07
IBM InfoSphere BigInsights before 2.1.0.3 allows remote authenticated users to bypass intended file and directory restrictions, or access untrusted data or code, via crafted parameters in unspecified API calls.
- CVE-2013-4054MEDIUMCVSS v2 4.3EG 4.32014-03-02
Directory traversal vulnerability in WMQ Telemetry in IBM WebSphere MQ 7.5 before 7.5.0.3 allows remote attackers to read arbitrary files via a crafted URI.
- CVE-2013-4093MEDIUMCVSS v2 5.0EG 5.02013-06-28
The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows remote attackers to obtain sensitive information via (1) a direct request to dwr/call/plaincall/AsyncOperationsContainer.getOperationState.d…
- CVE-2013-4097MEDIUMCVSS v2 5.0EG 5.02013-06-28
ServerAdmin/TestDRConnection.jsp in DS3 Authentication Server allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in a -REG-E-OPEN error message.
- CVE-2013-4173MEDIUMCVSS v2 5.0EG 5.02013-10-11
Directory traversal vulnerability in the trend-data daemon (xymond_rrd) in Xymon 4.x before 4.3.12 allows remote attackers to delete arbitrary files via a .. (dot dot) in the host name in a "drophost" command.
- CVE-2013-4420MEDIUMCVSS v2 5.8EG 5.82014-02-20
Multiple directory traversal vulnerabilities in the (1) tar_extract_glob and (2) tar_extract_all functions in libtar 1.2.20 and earlier allow remote attackers to overwrite arbitrary files via a .. (dot dot) in a crafted tar file.
- CVE-2013-4510HIGHCVSS v2 7.8EG 7.52013-11-18
Directory traversal vulnerability in the client in Tryton 3.0.0, as distributed before 20131104 and earlier, allows remote servers to write arbitrary files via path separators in the extension of a report.
- CVE-2013-4524MEDIUMCVSS v2 6.8EG 6.82013-11-26
Directory traversal vulnerability in repository/filesystem/lib.php in Moodle through 2.2.11, 2.3.x before 2.3.10, 2.4.x before 2.4.7, and 2.5.x before 2.5.3 allows remote authenticated users to read arbitrary files via a .. (dot dot) in a …
- CVE-2013-4654CRITICALCVSS 9.8EG 9.82019-11-13
Symlink Traversal vulnerability in TP-LINK TL-WDR4300 and TL-1043ND..
- CVE-2013-4656CRITICALCVSS 9.8EG 9.82019-11-13
Symlink Traversal vulnerability in ASUS RT-AC66U and RT-N56U due to misconfiguration in the SMB service.
- CVE-2013-4657CRITICALCVSS 9.8EG 9.82019-11-13
Symlink Traversal vulnerability in NETGEAR WNR3500U and WNR3500L due to misconfiguration in the SMB service.
- CVE-2013-4658CRITICALCVSS 9.8EG 9.82019-10-25
Linksys EA6500 has SMB Symlink Traversal allowing symbolic links to be created to locations outside of the Samba share.
- CVE-2013-4668MEDIUMCVSS v2 5.0EG 5.02013-07-18
Directory traversal vulnerability in File Roller 3.6.x before 3.6.4, 3.8.x before 3.8.3, and 3.9.x before 3.9.3, when libarchive is used, allows remote attackers to create arbitrary files via a crafted archive that is not properly handled …
- CVE-2013-4702MEDIUMCVSS v2 5.0EG 5.02013-08-30
Multiple directory traversal vulnerabilities in the doApiAction function in data/class/api/SC_Api_Operation.php in LOCKON EC-CUBE 2.12.0 through 2.12.5 on Windows allow remote attackers to read arbitrary files via vectors involving a (1) O…
- CVE-2013-4855HIGHCVSS 8.8EG 8.82019-10-25
D-Link DIR-865L has SMB Symlink Traversal due to misconfiguration in the SMB service allowing symbolic links to be created to locations outside of the Samba share.
- CVE-2013-4861MEDIUMCVSS 6.5EG 6.52020-01-28
Directory traversal vulnerability in cgi-bin/cmh/get_file.sh in MiCasaVerde VeraLite with firmware 1.5.408 allows remote authenticated users to read arbirary files via a .. (dot dot) in the filename parameter.
- CVE-2013-4900MEDIUMCVSS v2 5.0EG 5.02013-09-09
Directory traversal vulnerability in DeWeS web server 0.4.2 and possibly earlier, as used in Twilight CMS, allows remote attackers to read arbitrary files via a ..%5c (dot dot encoded backslash) in a GET request.
- CVE-2013-5011HIGHCVSS v2 7.2EG 7.22014-01-10
Unquoted Windows search path vulnerability in the client in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 and 12.x before 12.1.2 RU2 and Endpoint Protection Small Business Edition 12.x before 12.1.2 RU2 allows local users to gain…
- CVE-2013-5021HIGHCVSS v2 9.3EG 9.32013-08-06
Multiple absolute path traversal vulnerabilities in National Instruments cwui.ocx, as used in National Instruments LabWindows/CVI 2012 SP1 and earlier, National Instruments LabVIEW 2012 SP1 and earlier, the Data Analysis component in ABB D…
- CVE-2013-5022HIGHCVSS v2 10.0EG 10.02013-08-06
Absolute path traversal vulnerability in the 3D Graph ActiveX control in cw3dgrph.ocx in National Instruments LabWindows/CVI 2012 SP1 and earlier, LabVIEW 2012 SP1 and earlier, and other products allows remote attackers to create and execu…
- CVE-2013-5107MEDIUMCVSS v2 5.0EG 5.02013-12-14
Directory traversal vulnerability in RockMongo 1.1.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the ROCK_LANG cookie, as demonstrated in a login.index action to index.php.
- CVE-2013-5216MEDIUMCVSS v2 5.0EG 5.02013-09-12
Directory traversal vulnerability in logreader/uploadreader.jsp in CapaSystems Performance Guard before 6.2.102 allows remote attackers to read arbitrary files via unspecified vectors.
- CVE-2013-5219LOWCVSS v2 3.3EG 3.32013-12-30
Directory traversal vulnerability on the HOT HOTBOX router with software 2.1.11 allows remote attackers to read arbitrary files via a .. (dot dot) in a URI, as demonstrated by a request for /etc/passwd.
- CVE-2013-5301HIGHCVSS v2 7.8EG 7.82013-08-16
Directory traversal vulnerability in help.php in Trustport Webfilter 5.5.0.2232 allows remote attackers to read arbitrary files via a .. (dot dot) in the hf parameter.
- CVE-2013-5528MEDIUMCVSS v2 4.0EG 4.02013-10-11
Directory traversal vulnerability in the Tomcat administrative web interface in Cisco Unified Communications Manager allows remote authenticated users to read arbitrary files via directory traversal sequences in an unspecified input string…
- CVE-2013-5534MEDIUMCVSS v2 4.0EG 4.02013-10-19
Directory traversal vulnerability in the attachment service in the Voice Message Web Service (aka VMWS or Cisco Unity Web Service) in Cisco Unity Connection allows remote authenticated users to create files, and consequently execute arbitr…
- CVE-2013-5554HIGHCVSS v2 7.5EG 7.52013-11-08
Directory traversal vulnerability in the web-management interface in the server in Cisco Wide Area Application Services (WAAS) Mobile before 3.5.5 allows remote attackers to upload and execute arbitrary files via a crafted POST request, ak…
- CVE-2013-5639HIGHCVSS v2 7.5EG 7.52014-03-11
Directory traversal vulnerability in users/login.php in Gnew 2013.1 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the gnew_language cookie.
- CVE-2013-5648MEDIUMCVSS v2 6.8EG 6.82013-08-29
Absolute path traversal vulnerability in the handleStartDataFile function in DigiDocSAXParser.c in libdigidoc 3.6.0.0, as used in ID-software before 3.7.2 and other products, allows remote attackers to overwrite arbitrary files via a filen…
- CVE-2013-5655MEDIUMCVSS v2 6.4EG 6.42014-05-14
Directory traversal vulnerability in the FTP server in YingZhi Python Programming Language for iOS 1.9 allows remote attackers to read and possibly write arbitrary files via a .. (dot dot) in the default URI.
- CVE-2013-5688MEDIUMCVSS v2 5.5EG 5.52013-11-05
Multiple directory traversal vulnerabilities in index.php in AjaXplorer 5.0.2 and earlier allow remote authenticated users to read arbitrary files via a ../%00 (dot dot backslash encoded null byte) in the file parameter in a (1) download o…
- CVE-2013-5692HIGHCVSS v2 8.5EG 8.52013-09-30
Directory traversal vulnerability in X2Engine X2CRM before 3.5 allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the file parameter to index.php/admin/translationManager.
- CVE-2013-5751MEDIUMCVSS v2 5.0EG 5.02013-09-16
Directory traversal vulnerability in SAP NetWeaver 7.x allows remote attackers to read arbitrary files via unspecified vectors.
- CVE-2013-5756MEDIUMCVSS v2 4.0EG 4.02014-08-03
Directory traversal vulnerability in Yealink VoIP Phone SIP-T38G allows remote authenticated users to read arbitrary files via a .. (dot dot) in the page parameter to cgi-bin/cgiServer.exx.
- CVE-2013-5757MEDIUMCVSS v2 4.0EG 4.02014-08-03
Absolute path traversal vulnerability in Yealink VoIP Phone SIP-T38G allows remote authenticated users to read arbitrary files via a full pathname in the dumpConfigFile function in the command parameter to cgi-bin/cgiServer.exx.
- CVE-2013-5979MEDIUMCVSS v2 5.0EG 5.02013-10-02
Directory traversal vulnerability in Spring Signage Xibo 1.2.x before 1.2.3 and 1.4.x before 1.4.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter to index.php.
- CVE-2013-5984MEDIUMCVSS v2 6.4EG 6.42014-05-12
Directory traversal vulnerability in userfiles/modules/admin/backup/delete.php in Microweber before 0.830 allows remote attackers to delete arbitrary files via a .. (dot dot) in the file parameter.
Map vulnerabilities like CWE-22 to your infrastructure
EchelonGraph correlates every CVE — across CWE-22 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →