Falhas do tipo CWE-22

5.866 resultados

Travessia de diretório (Path Traversal)

A aplicação constrói caminhos de arquivo usando entrada do usuário sem validar adequadamente, permitindo que caracteres especiais como '../' façam o caminho "sair" do diretório permitido e acessar arquivos fora da zona restrita. Isso expõe dados sensíveis ou permite manipulação de arquivos críticos do sistema.

Exemplo

Um site permite download de documentos via URL como /download?file=relatorio.pdf, mas não valida o parâmetro. Um atacante usa /download?file=../../etc/passwd para ler o arquivo de senhas do servidor, ou /download?file=../../configuracao.db para acessar a base de dados da aplicação.

Como mitigar

Valide e normalize todos os caminhos de entrada (use funções nativas como realpath ou canonicalize), implemente uma whitelist de arquivos permitidos em vez de bloquear padrões perigosos, e configure permissões de arquivo restritivas no SO. Melhor ainda: nunca construa caminhos a partir de entrada do usuário — use índices ou IDs mapeados internamente.

CVE-2024-44825HIGHDirectory Traversal vulnerability in Centro de Tecnologia da Informaco Renato Archer InVesalius3 v3.1.99995 allows attackers to write arbitrEPSS 0.9%CVE-2025-67818HIGHAn issue was discovered in Weaviate OSS before 1.33.4. An attacker with access to insert data into the database can craft an entry name withEPSS 0.9%CVE-2026-93992HIGHGopeed through 2.0.0-beta.3 Arbitrary File Write via Path TraversalEPSS 0.9%CVE-2022-28544MEDIUMPath traversal vulnerability in unzip method of InstallAgentCommonHelper in Galaxy store prior to version 4.5.40.5 allows attacker to accessEPSS 0.9%CVE-2024-13981CRITICALLiveBos UploadFile.do Arbitrary File UploadEPSS 0.9%CVE-2024-43022HIGHAn issue in the downloader.php component of TOSEI online store management system v4.02, v4.03, and v4.04 allows attackers to execute a direcEPSS 0.9%CVE-2024-31457HIGHgin-vue-admin background arbitrary code coverage vulnerabilityEPSS 0.9%CVE-2023-22901MEDIUMChangingTec MOTP - Path TraversalEPSS 0.9%CVE-2019-25471CRITICALFileThingie 2.5.7 Arbitrary File Upload via ft2.phpEPSS 0.9%CVE-2025-34173MEDIUMNetgate pfSense CE Snort package v4.1.6_25 Directory Traversal Information DisclosureEPSS 0.9%CVE-2025-11914MEDIUMShenzhen Ruiming Technology Streamax Crocus DeviceFileReport.do download path traversalEPSS 0.9%CVE-2026-40076CRITICALOpenMRS Core arbitrary file write and code execution via Zip Slip in module uploadEPSS 0.9%CVE-2025-7694MEDIUMWoffice Core <= 5.4.26 - Authenticated (Contributor+) Arbitrary File DeletionEPSS 0.9%CVE-2023-29004MEDIUMPath Traversal Vulnerability in hap-wi/roxy-wi EPSS 0.9%CVE-2021-26619HIGHBigFileAgent arbitrary file Deleting vulnerabilityEPSS 0.9%CVE-2026-65690HIGHBold Reports Standalone Report Designer < 14.1.12 Path Traversal RCE via File UploadEPSS 0.9%CVE-2024-0763HIGHImproper validation of document removal parameterEPSS 0.9%CVE-2024-58310HIGHAPC Network Management Card 4 Path Traversal via Directory TraversalEPSS 0.9%CVE-2024-12035HIGHCS Framework <= 7.0 - Authenticated (Subscriber+) Arbitrary File DeletionEPSS 0.9%CVE-2024-7145HIGHJetElements <= 2.6.20 - Authenticated (Contributor+) Arbitrary Local File InclusionEPSS 0.9%