Fallos del tipo CWE-22

5912 resultados

Travessia de diretório (path traversal)

A aplicação constrói caminhos de arquivo a partir de entrada do usuário sem validar adequadamente sequências como '../' ou símbolos absolutos, permitindo que um atacante acesse arquivos fora do diretório permitido. Isso expõe dados sensíveis ou permite execução não autorizada de operações no sistema de arquivos.

Ejemplo

Um sistema web que serve documentos de um diretório específico recebe a requisição 'GET /doc?file=../../etc/passwd'. Se não validar a entrada, o código resolve o caminho para fora do diretório restrito e vaza o arquivo de senhas do sistema.

Cómo mitigar

Valide caminhos usando listas brancas de nomes de arquivo permitidos, normalize caminhos (remover '../' e símbolos), use APIs que isolem automaticamente operações em diretório base (ex: chroot, sandbox), e evite concatenar entrada direta em construtores de caminhos. Teste com payloads comuns de path traversal em testes de segurança.

CVE-2026-40062HIGHA path Traversal vulnerability exists in Ziostation2 v2.9.8.7 and earlier. A remote unauthenticated attacker may get sensitive information oEPSS 0.7%CVE-2026-33236HIGHNLTK has a Downloader Path Traversal Vulnerability (AFO) - Arbitrary File OverwriteEPSS 0.7%CVE-2025-67083MEDIUMDirectory traversal vulnerability in InvoicePlane through 1.6.3 allows unauthenticated attackers to read files from the server. The ability EPSS 0.7%CVE-2026-44017HIGHDocling: Unsafe Zip Extraction in EasyOCR Model DownloadEPSS 0.7%CVE-2022-50992HIGHWeaver E-cology 9.5 Unauthenticated Arbitrary File Read via XmlRpcServletEPSS 0.7%CVE-2024-47164LOWThe `is_in_or_equal` function may be bypassed in GradioEPSS 0.7%CVE-2024-56509HIGHchangedetection.io has Improper Input Validation Leading to LFR/Path TraversalEPSS 0.7%CVE-2025-5509MEDIUMquequnlong shiyi-blog upload path traversalEPSS 0.7%CVE-2023-40266CRITICALAn issue was discovered in Atos Unify OpenScape Xpressions WebAssistant V7 before V7R1 FR5 HF42 P911. It allows path traversal.EPSS 0.7%CVE-2021-22151LOWKibana path traversal issueEPSS 0.7%CVE-2026-72770HIGHn8n before 1.123.67 Path Traversal via Git Node OperationsEPSS 0.7%CVE-2025-63371HIGHMilos Paripovic OneCommander 3.102.0.0 is vulnerable to Directory Traversal. The vulnerability resides in the ZIP file processing component,EPSS 0.7%CVE-2026-13014CRITICALRemote Code Execution vulnerability in "Suspicious" applicationEPSS 0.7%CVE-2025-5544MEDIUMaaluoxiang oa_system UserpanelController.java image path traversalEPSS 0.7%CVE-2026-49488MEDIUMApache OpenMeetings: Arbitrary File ReadEPSS 0.7%CVE-2025-15589MEDIUMMuYuCMS Template Management Template.php delete_dir_file path traversalEPSS 0.7%CVE-2025-3043MEDIUMGuoMinJim PersonManage login preHandle path traversalEPSS 0.7%CVE-2025-13261MEDIUMlsfusion platform DownloadFileRequestHandler.java DownloadFileRequestHandler path traversalEPSS 0.7%CVE-2023-35069HIGHPath Traversal in BullwarkEPSS 0.7%CVE-2026-33054CRITICALMesop: Path Traversal utilizing `FileStateSessionBackend` leads to Application Denial of Service and File Write/DeletionEPSS 0.7%