Weaknesses of type CWE-24

111 results
CVE-2024-2825MEDIUMlakernote EasyAdmin saveReportFile path traversalEPSS 0.7%CVE-2024-0465LOWcode-projects Employee Profile Management System download.php path traversalEPSS 0.7%CVE-2025-44962MEDIUMRUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build allows ../ directory traversal to read files.EPSS 0.7%CVE-2024-10379MEDIUMESAFENET CDG DecryptApplicationService.java actionViewDecyptFile path traversalEPSS 0.7%CVE-2023-3098MEDIUMKylinSoft youker-assistant restore_all_sound_file path traversalEPSS 0.7%CVE-2023-7098LOWicret EasyImages hide.php path traversalEPSS 0.7%CVE-2025-57618HIGHA path traversal vulnerability in FastX3 thru 3.3.67 allows an unauthenticated attacker to read arbitrary files on the server. By leveragingEPSS 0.7%CVE-2024-3218MEDIUMShibang Communications IP Network Intercom Broadcasting System busyscreenshotpush.php path traversalEPSS 0.7%CVE-2024-8409MEDIUMABCD ABCD2 show_image.php path traversalEPSS 0.7%CVE-2025-53513HIGHZip slip vulnerability in JujuEPSS 0.6%CVE-2024-0341LOWInis GET Request File.php path traversalEPSS 0.6%CVE-2025-61318MEDIUMEmlog Pro 2.5.20 has an arbitrary file deletion vulnerability. This vulnerability stems from the admin/template.php component and the admin/EPSS 0.6%CVE-2025-67364HIGHfast-filesystem-mcp version 3.4.0 contains a critical path traversal vulnerability in its file operation tools including fast_read_file. ThiEPSS 0.6%CVE-2024-13130MEDIUMDahua IPC-HFW1200S Web Interface Sha1Account1 path traversalEPSS 0.6%CVE-2024-6786MEDIUMMXview One Series vulnerable to Path TraversalEPSS 0.5%CVE-2025-32807MEDIUMA path traversal vulnerability in FusionDirectory before 1.5 allows remote attackers to read arbitrary files on the host that end with .png EPSS 0.5%CVE-2023-20098MEDIUMA vulnerability in the CLI of Cisco SDWAN vManage Software could allow an authenticated, local attacker to delete arbitrary files. This vEPSS 0.5%CVE-2025-1584MEDIUMopensolon Solon StaticMappings.java path traversalEPSS 0.5%CVE-2024-2564MEDIUMPandaXGO PandaX user.go ExportUser path traversalEPSS 0.5%CVE-2025-46094LOWLiquidFiles before 4.1.2 allows directory traversal by configuring the pathname of a local executable file as an Actionscript.EPSS 0.5%