Fallos del tipo CWE-22

5926 resultados

Travessia de diretório (path traversal)

A aplicação constrói caminhos de arquivo a partir de entrada do usuário sem validar adequadamente sequências como '../' ou símbolos absolutos, permitindo que um atacante acesse arquivos fora do diretório permitido. Isso expõe dados sensíveis ou permite execução não autorizada de operações no sistema de arquivos.

Ejemplo

Um sistema web que serve documentos de um diretório específico recebe a requisição 'GET /doc?file=../../etc/passwd'. Se não validar a entrada, o código resolve o caminho para fora do diretório restrito e vaza o arquivo de senhas do sistema.

Cómo mitigar

Valide caminhos usando listas brancas de nomes de arquivo permitidos, normalize caminhos (remover '../' e símbolos), use APIs que isolem automaticamente operações em diretório base (ex: chroot, sandbox), e evite concatenar entrada direta em construtores de caminhos. Teste com payloads comuns de path traversal em testes de segurança.

CVE-2026-88937HIGHknowns through 0.33.0 Path Traversal via Template EngineEPSS 0.7%CVE-2026-41058HIGHAVideo has an incomplete fix for CVE-2026-33293 (Path Traversal) in AVideoEPSS 0.7%CVE-2026-35214HIGHBudibase: Path traversal in plugin file upload enables arbitrary directory deletion and file writeEPSS 0.7%CVE-2026-62384HIGHNLTK FramenetCorpusReader Symlink Sandbox Bypass before 3.10.2EPSS 0.7%CVE-2025-66687HIGHDoom Launcher 3.8.1.0 is vulnerable to Directory Traversal due to missing file path validation during the extraction of game filesEPSS 0.7%CVE-2026-63312HIGHNLTK StreamBackedCorpusView Bypasses pathsec.ENFORCE Arbitrary File ReadEPSS 0.7%CVE-2026-29871HIGHA path traversal vulnerability exists in the awesome-llm-apps project in commit e46690f99c3f08be80a9877fab52acacf7ab8251 (2026-01-19) in theEPSS 0.7%CVE-2025-54140HIGHpyLoad has Path Traversal Vulnerability in json/upload Endpoint that allows Arbitrary File WriteEPSS 0.7%CVE-2019-25099MEDIUMArthmoor QSF-Portal index.php path traversalEPSS 0.7%CVE-2026-24209HIGHNVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a path traversal issue. A successful exploit of this vEPSS 0.7%CVE-2026-24469HIGHC++ HTTP Server has Critical Path Traversal Vulnerability in RequestHandler Allowing Arbitrary File ReadEPSS 0.7%CVE-2019-15266MEDIUMCisco Wireless LAN Controller Path Traversal VulnerabilityEPSS 0.7%CVE-2025-34248HIGHD-Link Nuclias Connect < v1.3.1.4 Directory Traversal to Arbitrary File DeletionEPSS 0.7%CVE-2025-39473HIGHWordPress Seofy Core plugin <= 1.6.8 - Local File Inclusion VulnerabilityEPSS 0.7%CVE-2024-48213MEDIUMRockOA v2.6.5 is vulnerable to Directory Traversal in webmain/system/beifen/beifenAction.php.EPSS 0.7%CVE-2024-3034LOWBackUpWordPress <= 3.13 - Authenticated (Admin+) Directory TraversalEPSS 0.7%CVE-2022-3090HIGHRed Lion Controls Crimson 3.0 versions 707.000 and prior, Crimson 3.1 versions 3126.001 and prior, and Crimson 3.2 versions 3.2.0044.0 and pEPSS 0.6%CVE-2024-1704MEDIUMZhongBangKeJi CRMEB crud delete path traversalEPSS 0.6%CVE-2026-5192HIGHForminator Forms – Contact Form, Payment Form & Custom Form Builder <= 1.52.1 - Unauthenticated Arbitrary File Read via 'upload-1[file][file_path]'EPSS 0.6%CVE-2024-42718MEDIUMA path traversal vulnerability in Croogo CMS 4.0.7 allows remote attackers to read arbitrary files via a specially crafted path in the 'editEPSS 0.6%