Weaknesses of type CWE-22

5,866 results

Traversal de diretório (path traversal)

A aplicação recebe um caminho de arquivo fornecido pelo usuário e o usa para acessar arquivos sem validar adequadamente se o resultado fica dentro do diretório permitido. Um atacante injeta sequências como '../' ou '..' para "escapar" do diretório esperado e acessar arquivos sensíveis do sistema.

Example

Um site permite download de arquivos do diretório /uploads passando o nome via URL: download.php?file=documento.pdf. Um atacante envia file=../../etc/passwd e consegue ler arquivos fora de /uploads, porque o código não neutraliza a sequência '..'.

How to mitigate

Valide e canonicalize todo caminho fornecido pelo usuário antes de usá-lo: implemente uma whitelist de nomes permitidos, normalize caminhos para sua forma canônica, verifique se o resultado está dentro do diretório esperado, e use APIs de segurança da linguagem (ex: Path.normalize() + validação de prefix em Java, pathlib em Python).

CVE-2024-44825HIGHDirectory Traversal vulnerability in Centro de Tecnologia da Informaco Renato Archer InVesalius3 v3.1.99995 allows attackers to write arbitrEPSS 0.9%CVE-2025-67818HIGHAn issue was discovered in Weaviate OSS before 1.33.4. An attacker with access to insert data into the database can craft an entry name withEPSS 0.9%CVE-2026-93992HIGHGopeed through 2.0.0-beta.3 Arbitrary File Write via Path TraversalEPSS 0.9%CVE-2022-28544MEDIUMPath traversal vulnerability in unzip method of InstallAgentCommonHelper in Galaxy store prior to version 4.5.40.5 allows attacker to accessEPSS 0.9%CVE-2024-13981CRITICALLiveBos UploadFile.do Arbitrary File UploadEPSS 0.9%CVE-2024-43022HIGHAn issue in the downloader.php component of TOSEI online store management system v4.02, v4.03, and v4.04 allows attackers to execute a direcEPSS 0.9%CVE-2024-31457HIGHgin-vue-admin background arbitrary code coverage vulnerabilityEPSS 0.9%CVE-2023-22901MEDIUMChangingTec MOTP - Path TraversalEPSS 0.9%CVE-2019-25471CRITICALFileThingie 2.5.7 Arbitrary File Upload via ft2.phpEPSS 0.9%CVE-2025-34173MEDIUMNetgate pfSense CE Snort package v4.1.6_25 Directory Traversal Information DisclosureEPSS 0.9%CVE-2025-11914MEDIUMShenzhen Ruiming Technology Streamax Crocus DeviceFileReport.do download path traversalEPSS 0.9%CVE-2026-40076CRITICALOpenMRS Core arbitrary file write and code execution via Zip Slip in module uploadEPSS 0.9%CVE-2025-7694MEDIUMWoffice Core <= 5.4.26 - Authenticated (Contributor+) Arbitrary File DeletionEPSS 0.9%CVE-2023-29004MEDIUMPath Traversal Vulnerability in hap-wi/roxy-wi EPSS 0.9%CVE-2021-26619HIGHBigFileAgent arbitrary file Deleting vulnerabilityEPSS 0.9%CVE-2026-65690HIGHBold Reports Standalone Report Designer < 14.1.12 Path Traversal RCE via File UploadEPSS 0.9%CVE-2024-0763HIGHImproper validation of document removal parameterEPSS 0.9%CVE-2024-58310HIGHAPC Network Management Card 4 Path Traversal via Directory TraversalEPSS 0.9%CVE-2024-12035HIGHCS Framework <= 7.0 - Authenticated (Subscriber+) Arbitrary File DeletionEPSS 0.9%CVE-2024-7145HIGHJetElements <= 2.6.20 - Authenticated (Contributor+) Arbitrary Local File InclusionEPSS 0.9%