CWE:
 

Topic
Date
Author
Med.
C-MOR Video Surveillance 5.2401 Path Traversal
10.09.2024
Matthias Deeg
Med.
Artica Proxy 4.40 / 4.50 Local File Inclusion / Traversal
06.03.2024
Jaggar Henry
Low
WordPress User Meta Lite / Pro 2.4.3 Path Traversal
31.05.2022
Julien Ahrens
Med.
SAP Solution Manager 7.2 File Disclosure / Denial Of Service
15.06.2021
Pablo Artuso
Med.
WordPress 5.1.1 Liberator Themes Arbitrary File Download
18.03.2019
KingSkrupellos
Med.
WordPress 5.1.1 Green_Farming_New Themes Arbitrary File Download
18.03.2019
KingSkrupellos
Med.
WordPress 4.8.9 Rowe Themes Arbitrary File Download
18.03.2019
KingSkrupellos
High
D-Link DWR-116 Arbitrary File Download
07.04.2017
Smash_
High
Wordpress Plugin Membership Simplified v1.58 - Arbitrary File Download
16.03.2017
Munir Njiru
Med.
QNAP QTS 4.2.1 Build 20160601 Arbitrary File Overwrite
19.08.2016
Sebastian Nerz
High
MiCasaVerde VeraLite 1.5.408 Traversal & Authorization & CSRF & Disclosure
02.08.2013
Daniel Crowley


CVEMAP Search Results

CVE
Details
Description
2024-10-08
Waiting for details
CVE-2024-43614

Updating...
 

 
Microsoft Defender for Endpoint for Linux Spoofing Vulnerability

 
Waiting for details
CVE-2024-47948

Updating...
 

 
In JetBrains TeamCity before 2024.07.3 path traversal leading to information disclosure was possible via server backups

 
Waiting for details
CVE-2024-47949

Updating...
 

 
In JetBrains TeamCity before 2024.07.3 path traversal allowed backup file write to arbitrary location

 
2024-10-04
Waiting for details
CVE-2024-47651

Updating...
 

 
This vulnerability exists in Shilpi Client Dashboard due to improper handling of multiple parameters in the API endpoint. An authenticated remote attacker could exploit this vulnerability by including multiple �??userid�?� parameters in the API request body leading to unauthorized access of sensitive information belonging to other users.

 
2024-10-01
Waiting for details
CVE-2024-9405

Updating...
 

 
An incorrect limitation of a path to a restricted directory (path traversal) has been detected in Pluck CMS, affecting version 4.7.18. An unauthenticated attacker could extract sensitive information from the server via the absolute path of a file located in the same directory or subdirectory as the module, but not from recursive directories.

 
2024-09-17
Waiting for details
CVE-2024-45816

Updating...
 

 
Backstage is an open framework for building developer portals. When using the AWS S3 or GCS storage provider for TechDocs it is possible to access content in the entire storage bucket. This can leak contents of the bucket that are not intended to be accessible, as well as bypass permission checks in Backstage. This has been fixed in the 1.10.13 release of the `@backstage/plugin-techdocs-backend` package. All users are advised to upgrade. There are no known workarounds for this vulnerability.

 
2024-09-10
Waiting for details
CVE-2024-43454

Updating...
 

 
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability

 
Waiting for details
CVE-2024-38258

Updating...
 

 
Windows Remote Desktop Licensing Service Information Disclosure Vulnerability

 
Waiting for details
CVE-2023-6841

Updating...
 

 
A denial of service vulnerability was found in keycloak where the amount of attributes per object is not limited,an attacker by sending repeated HTTP requests could cause a resource exhaustion when the application send back rows with long attribute values.

 
2024-08-12
Waiting for details
CVE-2024-7693

Updating...
 

 
Raiden MAILD Remote Management System from Team Johnlong Software has a Relative Path Traversal vulnerability, allowing unauthenticated remote attackers to read arbitrary file on the remote server.

 

 


Copyright 2024, cxsecurity.com

 

Back to Top