Fallos del tipo CWE-22

5925 resultados

Travessia de diretório (path traversal)

A aplicação constrói caminhos de arquivo a partir de entrada do usuário sem validar adequadamente sequências como '../' ou símbolos absolutos, permitindo que um atacante acesse arquivos fora do diretório permitido. Isso expõe dados sensíveis ou permite execução não autorizada de operações no sistema de arquivos.

Ejemplo

Um sistema web que serve documentos de um diretório específico recebe a requisição 'GET /doc?file=../../etc/passwd'. Se não validar a entrada, o código resolve o caminho para fora do diretório restrito e vaza o arquivo de senhas do sistema.

Cómo mitigar

Valide caminhos usando listas brancas de nomes de arquivo permitidos, normalize caminhos (remover '../' e símbolos), use APIs que isolem automaticamente operações em diretório base (ex: chroot, sandbox), e evite concatenar entrada direta em construtores de caminhos. Teste com payloads comuns de path traversal em testes de segurança.

CVE-2024-31240HIGHWordPress WP Poll Maker plugin <= 3.1 - Auth. Arbitrary File Deletion vulnerabilityEPSS 0.7%CVE-2022-23532HIGHneo4j-apoc-procedures is vulnerable to path traversalEPSS 0.7%CVE-2025-1785MEDIUMDownload Manager <= 3.3.08 - Authenticated (Author+) Path Traversal to Limited File OverwriteEPSS 0.7%CVE-2023-23608NONEspotipy Path traversal vulnerability that may lead to type confusion in URI handling codeEPSS 0.7%CVE-2026-34689HIGHAdobe Connect | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)EPSS 0.7%CVE-2024-24869HIGHWordPress Total Upkeep plugin <= 1.15.8 - Arbitrary File Download vulnerabilityEPSS 0.7%CVE-2026-73255MEDIUMMongoose: Path traversal in SSI #include directives enables arbitrary file readEPSS 0.7%CVE-2024-29502MEDIUMAn issue in Secure Lockdown Multi Application Edition v2.00.219 allows attackers to read arbitrary files via using UNC paths.EPSS 0.7%CVE-2026-82253HIGHgitoxide before 0.82.0 Path Traversal via Submodule Name Validation BypassEPSS 0.7%CVE-2026-28462HIGHOpenClaw < 2026.2.13 - Path Traversal in Trace and Download Output PathsEPSS 0.7%CVE-2026-16777MEDIUMStore Exporter <= 2.8.0 - Authenticated (Shop Manager+) Path Traversal to Arbitrary File Read and Arbitrary File Deletion via 'filename' ParameterEPSS 0.7%CVE-2025-34518HIGHIlevia EVE X1 Server 4.7.18.0.eden Relative Path TraversalEPSS 0.7%CVE-2023-29962MEDIUMS-CMS v5.0 was discovered to contain an arbitrary file read vulnerability.EPSS 0.7%CVE-2025-34517HIGHIlevia EVE X1 Server 4.7.18.0.eden Absolute Path TraversalEPSS 0.7%CVE-2026-2731CRITICALUnauthenticated RCE in Dynamicweb 9 and Dynamicweb 8EPSS 0.7%CVE-2022-4778MEDIUMpath traversal in elvexys StreamX using StreamView HTML component with public web server featureEPSS 0.7%CVE-2019-25671HIGHVA MAX 8.3.4 Remote Code Execution via changeip.phpEPSS 0.7%CVE-2024-6648HIGHPath Traversal in AP Page BuilderEPSS 0.7%CVE-2025-49559MEDIUMAdobe Commerce | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)EPSS 0.7%CVE-2025-2817HIGHPrivilege escalation in Thunderbird UpdaterEPSS 0.7%