Fallos del tipo CWE-22

6048 resultados

Travessia de diretório (path traversal)

A aplicação constrói caminhos de arquivo a partir de entrada do usuário sem validar adequadamente sequências como '../' ou símbolos absolutos, permitindo que um atacante acesse arquivos fora do diretório permitido. Isso expõe dados sensíveis ou permite execução não autorizada de operações no sistema de arquivos.

Ejemplo

Um sistema web que serve documentos de um diretório específico recebe a requisição 'GET /doc?file=../../etc/passwd'. Se não validar a entrada, o código resolve o caminho para fora do diretório restrito e vaza o arquivo de senhas do sistema.

Cómo mitigar

Valide caminhos usando listas brancas de nomes de arquivo permitidos, normalize caminhos (remover '../' e símbolos), use APIs que isolem automaticamente operações em diretório base (ex: chroot, sandbox), e evite concatenar entrada direta em construtores de caminhos. Teste com payloads comuns de path traversal em testes de segurança.

CVE-2026-24801MEDIUMA Potential SPA-vulnerability in Ralim/IronOSEPSS 0.2%CVE-2026-34730MEDIUMCopier `_external_data` allows path traversal and absolute-path local file read without unsafe modeEPSS 0.2%CVE-2025-4661MEDIUMPath transversal vulnerability potentially leading to sensitive information disclosureEPSS 0.2%CVE-2026-40000LOWPath Traversal Vulnerability in ZTE Blade A75 5GEPSS 0.2%CVE-2026-46345HIGHcompliance-trestle - jinja has an Arbitrary File Write via Path TraversalEPSS 0.2%CVE-2026-2399MEDIUMCWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause critical files oEPSS 0.2%CVE-2026-92816HIGHComfyUI before 0.30.0 Path Traversal via dataset save nodesEPSS 0.2%CVE-2024-46939LOWGame Extension Engine Path Traversal VulnerabilityEPSS 0.2%CVE-2026-85690HIGHPlandex 2.2.1 Path Traversal via ApplyFilesEPSS 0.2%CVE-2026-28486MEDIUMOpenClaw 2026.1.16-2 < 2026.2.14 - Path Traversal (Zip Slip) in Archive Extraction via Installation CommandsEPSS 0.2%CVE-2022-3101—A flaw was found in tripleo-ansible. Due to an insecure default configuration, the permissions of a sensitive file are not sufficiently restEPSS 0.2%CVE-2022-3146—A flaw was found in tripleo-ansible. Due to an insecure default configuration, the permissions of a sensitive file are not sufficiently restEPSS 0.2%CVE-2026-26960HIGHnode-tar has Arbitrary File Read/Write via Hardlink Target Escape Through Symlink Chain in ExtractionEPSS 0.2%CVE-2026-58484HIGHNetwork-AI: Poisoned environment backup manifest allows arbitrary recursive deletion during backup pruningEPSS 0.2%CVE-2026-3840HIGHPath Traversal in kedro-org/kedroEPSS 0.2%CVE-2026-19444MEDIUMKubernetes kubectl cp path traversal on Windows allows arbitrary file writesEPSS 0.2%CVE-2026-13622HIGHKubevirt: virt-handler-rhel9: kubevirt: virt-handler migration proxy follows symlinks allowing container escape to hostEPSS 0.2%CVE-2026-41530MEDIUMThe automatic folder creation feature of Lhaz and Lhaz+ provided by Chitora soft contains a path traversal vulnerability. When the affected EPSS 0.2%CVE-2024-38358LOWSymlink bypasses filesystem sandbox in wasmerEPSS 0.2%CVE-2022-29837MEDIUMPath traversal Vulnerability in Western Digital My Cloud Home, My Cloud Home Duo and SanDisk ibi DevicesEPSS 0.2%