Fallos del tipo CWE-22

5905 resultados

Travessia de diretório (path traversal)

A aplicação constrói caminhos de arquivo a partir de entrada do usuário sem validar adequadamente sequências como '../' ou símbolos absolutos, permitindo que um atacante acesse arquivos fora do diretório permitido. Isso expõe dados sensíveis ou permite execução não autorizada de operações no sistema de arquivos.

Ejemplo

Um sistema web que serve documentos de um diretório específico recebe a requisição 'GET /doc?file=../../etc/passwd'. Se não validar a entrada, o código resolve o caminho para fora do diretório restrito e vaza o arquivo de senhas do sistema.

Cómo mitigar

Valide caminhos usando listas brancas de nomes de arquivo permitidos, normalize caminhos (remover '../' e símbolos), use APIs que isolem automaticamente operações em diretório base (ex: chroot, sandbox), e evite concatenar entrada direta em construtores de caminhos. Teste com payloads comuns de path traversal em testes de segurança.

CVE-2023-48242MEDIUMThe vulnerability allows an authenticated remote attacker to download arbitrary files in all paths of the system under the context of the apEPSS 0.8%CVE-2025-57698HIGHAstrBot Project v3.5.22 contains a directory traversal vulnerability. The handler function install_plugin_upload of the interface '/plugin/iEPSS 0.8%CVE-2023-24416MEDIUMWordPress All In One Favicon Plugin <= 4.7 is vulnerable to Arbitrary File DeletionEPSS 0.8%CVE-2026-46703CRITICALBoxLite: Path Traversal Vulnerability in boxlite Leads to Arbitrary File Write on the HostEPSS 0.8%CVE-2024-49766MEDIUMWerkzeug safe_join not safe on WindowsEPSS 0.8%CVE-2022-0223MEDIUMA CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could allow an attacker tEPSS 0.8%CVE-2022-22731MEDIUMA CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in a function that could allowEPSS 0.8%CVE-2026-54223HIGHRemote Code Execution via arbitrary file read and write in UBB.threadsEPSS 0.8%CVE-2026-48020HIGHTraefik StripPrefix Route-Level Auth Bypass via Path NormalizationEPSS 0.8%CVE-2022-32938MEDIUMA parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 16.1 and iPadOS 1EPSS 0.8%CVE-2026-22562CRITICALA malicious actor with access to the UniFi Play network could exploit a Path Traversal vulnerability found in the device firmware to write fEPSS 0.8%CVE-2026-54403HIGHA malicious actor with access to the network could exploit a Path Traversal vulnerability found in certain devices running UniFi OS to bypasEPSS 0.8%CVE-2024-54373HIGHWordPress EduAdmin Booking plugin <= 5.2.0 - Local File Inclusion vulnerabilityEPSS 0.8%CVE-2026-81554HIGHDataStage on Cloud Pak for Data has several vulnerabilities due to open source softwareEPSS 0.8%CVE-2026-10053HIGHImproper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in GitLabEPSS 0.8%CVE-2023-45385HIGHProQuality pqprintshippinglabels before v.4.15.0 is vulnerable to Directory Traversal via the pqprintshippinglabels module.EPSS 0.8%CVE-2025-5161MEDIUMH3C SecCenter SMP-E1114P02 download operationDailyOut path traversalEPSS 0.8%CVE-2025-5160MEDIUMH3C SecCenter SMP-E1114P02 download path traversalEPSS 0.8%CVE-2024-52787CRITICALAn issue in the upload_documents method of libre-chat v0.0.6 allows attackers to execute a path traversal via supplying a crafted filename iEPSS 0.8%CVE-2024-10005HIGHConsul L7 Intentions Vulnerable To URL Path BypassEPSS 0.8%