Fallos del tipo CWE-22

5972 resultados

Travessia de diretório (path traversal)

A aplicação constrói caminhos de arquivo a partir de entrada do usuário sem validar adequadamente sequências como '../' ou símbolos absolutos, permitindo que um atacante acesse arquivos fora do diretório permitido. Isso expõe dados sensíveis ou permite execução não autorizada de operações no sistema de arquivos.

Ejemplo

Um sistema web que serve documentos de um diretório específico recebe a requisição 'GET /doc?file=../../etc/passwd'. Se não validar a entrada, o código resolve o caminho para fora do diretório restrito e vaza o arquivo de senhas do sistema.

Cómo mitigar

Valide caminhos usando listas brancas de nomes de arquivo permitidos, normalize caminhos (remover '../' e símbolos), use APIs que isolem automaticamente operações em diretório base (ex: chroot, sandbox), e evite concatenar entrada direta em construtores de caminhos. Teste com payloads comuns de path traversal em testes de segurança.

CVE-2026-40503HIGHOpenHarness Path Traversal Information Disclosure via /memory showEPSS 0.5%CVE-2025-59056MEDIUMFreePBX vulnerable to unauthenticated Denial of ServiceEPSS 0.5%CVE-2026-50547HIGHInvoicePlane permits local file inclusion through the e-invoice XML configuration identifierEPSS 0.5%CVE-2026-53553HIGHGoploy: Arbitrary File Read via Path Traversal in /deploy/fileDiff allows Remote Server CompromiseEPSS 0.5%CVE-2025-42919MEDIUMInformation Disclosure vulnerability in SAP NetWeaver Application Server JavaEPSS 0.5%CVE-2026-59832HIGHSiYuan: Authenticated path traversal in /snippets/ static handler (serveSnippets) leaks conf/conf.json secrets and siyuan.dbEPSS 0.5%CVE-2025-50350MEDIUMPHPGurukul Pre-School Enrollment System Project v1.0 is vulnerable to Directory Traversal in manage-classes.php.EPSS 0.5%CVE-2025-53363MEDIUMDpanel has an arbitrary file read vulnerabilityEPSS 0.5%CVE-2026-76598HIGHJoomla Extension - fabrikar.com - Unauthenticated arbitrary directory listing via onAjax_getFolders in Fabrik < 4.7.2EPSS 0.5%CVE-2025-54659MEDIUMAn Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] vulnerability in Fortinet FortiSOAREPSS 0.5%CVE-2025-40592MEDIUMA vulnerability has been identified in Mendix Studio Pro 10 (All versions < V10.24.24 for Windows), Mendix Studio Pro 10 (All versions < V10EPSS 0.5%CVE-2025-4186MEDIUMWangshen SecGate 3600 g=route_ispinfo_export_save path traversalEPSS 0.5%CVE-2024-25154MEDIUMPath Traversal in FileCatalyst Direct 3.8.8 and EarlierEPSS 0.5%CVE-2024-31978HIGHA vulnerability has been identified in SINEC NMS (All versions < V2.0 SP2). Affected devices allow authenticated users to export monitoring EPSS 0.5%CVE-2019-10152HIGHA path traversal vulnerability has been discovered in podman before version 1.4.0 in the way it handles symlinks inside containers. An attacEPSS 0.5%CVE-2026-24741HIGHConvertX Vulnerable to Arbitrary File Deletion via Path Traversal in `POST /delete`EPSS 0.5%CVE-2025-54162MEDIUMFile Station 5EPSS 0.5%CVE-2026-87023HIGHTanium addressed a path traversal vulnerability in Comply.EPSS 0.5%CVE-2026-24687MEDIUMUmbraco.Forms has path traversal and file enumeration vulnerability in Linux/MacEPSS 0.5%CVE-2026-31156MEDIUMA path injection vulnerability exists in OpenPLC v3 (2c82b0e79c53f8c1f1458eee15fec173400d6e1a) as the binary program compiled from glue_geneEPSS 0.5%