Fallos del tipo CWE-23

424 resultados
CVE-2025-49466MEDIUMaerc before 93bec0d allows directory traversal in commands/msgview/open.go because of direct path concatenation of the name of an attachmentEPSS 0.6%CVE-2022-23531MEDIUMArbitrary file write when scanning a specially-crafted local PyPI packageEPSS 0.6%CVE-2026-1022HIGHGotac|Statistics Database System - Arbitrary File ReadEPSS 0.6%CVE-2024-22096MEDIUMRelative Path Traversal in Rapid SCADAEPSS 0.6%CVE-2025-0822MEDIUMBit Assist <= 1.5.2 - Path Traversal to Authenticated (Subscriber+) Arbitrary File Read via fileID ParameterEPSS 0.6%CVE-2022-2106LOWElcomplus SmartICS Path TraversalEPSS 0.6%CVE-2025-58752LOWVite's `server.fs` settings were not applied to HTML filesEPSS 0.6%CVE-2025-62878CRITICALLocal Path Provisioner vulnerable to Path Traversal via parameters.pathPatternEPSS 0.6%CVE-2025-30159MEDIUMKirby vulnerable to path traversal of snippet names in the `snippet()` helperEPSS 0.6%CVE-2023-3512HIGHRelative path traversal in Setelsa Security ConacWin CBEPSS 0.6%CVE-2022-42892MEDIUMA vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hosts a web service usiEPSS 0.6%CVE-2023-23778MEDIUMA relative path traversal vulnerability [CWE-23] in FortiWeb version 7.0.1 and below, 6.4 all versions, 6.3 all versions, 6.2 all versions mEPSS 0.6%CVE-2023-42456LOWsudo-rs Session File Relative Path Traversal vulnerabilityEPSS 0.6%CVE-2026-49290HIGHSlopsmith has path traversal in archive extractors that allows arbitrary file write → potential RCEEPSS 0.6%CVE-2025-66626HIGHargoproj/argo-workflows is vulnerable to RCE via ZipSlip and symbolic linksEPSS 0.6%CVE-2025-58456HIGHAutomationDirect Productivity Suite Relative Path TraversalEPSS 0.6%CVE-2024-49253HIGHWordPress Analyse Uploads plugin <= 0.5 - Arbitrary File Deletion vulnerabilityEPSS 0.6%CVE-2026-8073HIGHKirki <= 6.0.6 - Unauthenticated Limited Arbitrary File Read and Deletion via downloadZIPEPSS 0.6%CVE-2025-58078HIGHAutomationDirect Productivity Suite Relative Path TraversalEPSS 0.6%CVE-2025-58429HIGHAutomationDirect Productivity Suite Relative Path TraversalEPSS 0.6%