Fallos del tipo CWE-22

5975 resultados

Travessia de diretório (path traversal)

A aplicação constrói caminhos de arquivo a partir de entrada do usuário sem validar adequadamente sequências como '../' ou símbolos absolutos, permitindo que um atacante acesse arquivos fora do diretório permitido. Isso expõe dados sensíveis ou permite execução não autorizada de operações no sistema de arquivos.

Ejemplo

Um sistema web que serve documentos de um diretório específico recebe a requisição 'GET /doc?file=../../etc/passwd'. Se não validar a entrada, o código resolve o caminho para fora do diretório restrito e vaza o arquivo de senhas do sistema.

Cómo mitigar

Valide caminhos usando listas brancas de nomes de arquivo permitidos, normalize caminhos (remover '../' e símbolos), use APIs que isolem automaticamente operações em diretório base (ex: chroot, sandbox), e evite concatenar entrada direta em construtores de caminhos. Teste com payloads comuns de path traversal em testes de segurança.

CVE-2026-84702HIGHfacefusion before 3.7.0 Path Traversal via Job IdentifierEPSS 0.4%CVE-2024-41373MEDIUMICEcoder 8.1 contains a Path Traversal vulnerability via lib/backup-versions-preview-loader.php.EPSS 0.4%CVE-2026-0669HIGHPath Traversal vulnerability in CSS extension on certain web serversEPSS 0.4%CVE-2026-62999HIGHCopier: Percent-encoded dot segments in template URLs can allow trusted-prefix escape (Incomplete fix for trust-prefix bypass)EPSS 0.4%CVE-2026-47253HIGHAnyquery: Path Traversal in `clear_plugin_cache` Allows Arbitrary Directory DeletionEPSS 0.4%CVE-2025-52452HIGHImproper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Salesforce Tableau Server on Windows, Linux EPSS 0.4%CVE-2025-4419MEDIUMHot Random Image <= 1.9.2 - Path Traversal to Authenticated (Contributor+) Limited Arbitrary Image Access via path ParameterEPSS 0.4%CVE-2025-14182MEDIUMSobey Media Convergence System upload path traversalEPSS 0.4%CVE-2026-25152MEDIUM@backstage/plugin-techdocs-node vulnerable to possible Path Traversal in TechDocs Local GeneratorEPSS 0.4%CVE-2026-17071LOWIBM i is Affected By Multiple Vulnerabilities in Digital Certificate ManagerEPSS 0.4%CVE-2025-67488HIGHSiYuan: ZipSlip -> Arbitrary File Overwrite -> RCEEPSS 0.4%CVE-2026-7521MEDIUMSAML certificate deletion allows path traversal to delete arbitrary files outside the config directoryEPSS 0.4%CVE-2024-22377MEDIUMPingFederate Runtime Node Path TraversalEPSS 0.4%CVE-2026-66777MEDIUMMultiple vulnerabilities in SAP Business AI Platform (Approuter)EPSS 0.4%CVE-2025-28980HIGHWordPress Aviation Weather from NOAA plugin <= 0.7.2 - Arbitrary File Deletion VulnerabilityEPSS 0.4%CVE-2026-49253HIGHelecterm: Path Traversal in Zmodem and Trzsz Download Filename HandlingEPSS 0.4%CVE-2026-35496MEDIUMA path traversal vulnerability exists in CubeCart prior to 6.6.0, which may allow a user with an administrative privilege to access higher-lEPSS 0.4%CVE-2026-44996MEDIUMOpenClaw < 2026.4.15 - Arbitrary Local File Read via Webchat Audio EmbeddingEPSS 0.4%CVE-2025-6989HIGHKallyas <= 4.21.0 - Authenticated (Contributor+) Arbitrary Folder DeletionEPSS 0.4%CVE-2019-1836MEDIUMCisco Nexus 9000 Series Fabric Switches Application Centric Infrastructure Mode Symbolic Link Path Traversal VulnerabilityEPSS 0.4%