Fallos del tipo CWE-22

6055 resultados

Travessia de diretório (path traversal)

A aplicação constrói caminhos de arquivo a partir de entrada do usuário sem validar adequadamente sequências como '../' ou símbolos absolutos, permitindo que um atacante acesse arquivos fora do diretório permitido. Isso expõe dados sensíveis ou permite execução não autorizada de operações no sistema de arquivos.

Ejemplo

Um sistema web que serve documentos de um diretório específico recebe a requisição 'GET /doc?file=../../etc/passwd'. Se não validar a entrada, o código resolve o caminho para fora do diretório restrito e vaza o arquivo de senhas do sistema.

Cómo mitigar

Valide caminhos usando listas brancas de nomes de arquivo permitidos, normalize caminhos (remover '../' e símbolos), use APIs que isolem automaticamente operações em diretório base (ex: chroot, sandbox), e evite concatenar entrada direta em construtores de caminhos. Teste com payloads comuns de path traversal em testes de segurança.

CVE-2025-61658LOWSpecial:GlobalContributions shows edits on wikis the viewer doesn't have access toEPSS 0.3%CVE-2025-10559HIGHPath Traversal vulnerability affecting Factory Resource Management in DELMIA Factory Resource Manager from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2025xEPSS 0.3%CVE-2024-10933MEDIUMOpenBSD readdir directory traversalEPSS 0.3%CVE-2025-8941HIGHLinux-pam: incomplete fix for cve-2025-6020EPSS 0.3%CVE-2025-53905MEDIUMVim has path traversial issue with tar.vim and special crafted tar filesEPSS 0.3%CVE-2023-4782MEDIUMTerraform Allows Arbitrary File Write During Init OperationEPSS 0.3%CVE-2026-106491MEDIUMBackstage: Improper input validation in proxy-backendEPSS 0.3%CVE-2025-24329MEDIUMOAM service path traversal issue caused by a crafted SOAP message archive field within the RAN management networkEPSS 0.3%CVE-2017-20181MEDIUMhgzojer Vocable Trainer VocableTrainerProvider.java path traversalEPSS 0.3%CVE-2025-69619MEDIUMA path traversal in My Text Editor v1.6.2 allows attackers to cause a Denial of Service (DoS) via writing files to the internal storage.EPSS 0.3%CVE-2024-6281HIGHPath Traversal in parisneo/lollmsEPSS 0.3%CVE-2026-10264MEDIUMlharries whatsapp-mcp Send API Endpoint main.go SendMessageRequest path traversalEPSS 0.3%CVE-2025-15693LOWJCH Optimize 4.2.1 - 5.0.0 - Admin+ Path TraversalEPSS 0.3%CVE-2025-55214MEDIUMCopier safe template has filesystem write access outside destination pathEPSS 0.3%CVE-2026-19532MEDIUMPath Traversal in HAVELSAN's Liman MYSEPSS 0.3%CVE-2024-27871MEDIUMA path handling issue was addressed with improved validation. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6. An app mayEPSS 0.3%CVE-2026-53951HIGHCopier: trust-prefix bypass via path traversal runs tasks unpromptedEPSS 0.3%CVE-2022-42280HIGHNVIDIA BMC contains a vulnerability in SPX REST auth handler, where an un-authorized attacker can exploit a path traversal, which may lead tEPSS 0.3%CVE-2026-84069MEDIUMWebFacing Email Accounts for cPanel 5.3 - 5.3.6 - Unauthenticated LFI via assets/index.phpEPSS 0.3%CVE-2026-14967LOWPath traversal in github_workflows allows writing artifacts outside output directoryEPSS 0.3%