CWE-22— Path Traversal
The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.— MITRE CWE catalog
9,454 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-22page 37 of 190
- CVE-2015-10134HIGHCVSS 7.5EG 7.52025-07-19
The Simple Backup plugin for WordPress is vulnerable to Arbitrary File Download in versions up to, and including, 2.7.10. via the download_backup_file function. This is due to a lack of capability checks and file type validation. This make…
- CVE-2015-10136HIGHCVSS 7.5EG 7.52025-07-19
The GI-Media Library plugin for WordPress is vulnerable to Directory Traversal in versions before 3.0 via the 'fileid' parameter. This allows unauthenticated attackers to read the contents of arbitrary files on the server, which can contai…
- CVE-2015-1191MEDIUMCVSS v2 5.0EG 5.02015-01-21
Multiple directory traversal vulnerabilities in pigz 2.3.1 allow remote attackers to write to arbitrary files via a (1) full pathname or (2) .. (dot dot) in an archive.
- CVE-2015-1192MEDIUMCVSS v2 5.0EG 5.02015-01-21
Absolute path traversal vulnerability in kgb 1.0b4 allows remote attackers to write to arbitrary files via a full pathname in a crafted archive.
- CVE-2015-1193MEDIUMCVSS v2 5.0EG 5.02015-01-21
Multiple directory traversal vulnerabilities in pax 1:20140703 allow remote attackers to write to arbitrary files via a (1) full pathname or (2) .. (dot dot) in an archive.
- CVE-2015-1198HIGHCVSS 7.5EG 7.52017-08-28
Multiple directory traversal vulnerabilities in ha 0.999p+dfsg-5.
- CVE-2015-1199HIGHCVSS 7.5EG 7.52017-08-28
Directory traversal vulnerability in ppmd 10.1-5.
- CVE-2015-1365MEDIUMCVSS v2 5.0EG 5.02015-01-27
Directory traversal vulnerability in pixabay-images.php in the Pixabay Images plugin before 2.4 for WordPress allows remote attackers to write to arbitrary files via a .. (dot dot) in the q parameter.
- CVE-2015-1386HIGHCVSS 7.5EG 7.52017-08-28
Directory traversal vulnerability in unshield 1.0-1.
- CVE-2015-1395HIGHCVSS 7.5EG 7.52017-08-25
Directory traversal vulnerability in GNU patch versions which support Git-style patching before 2.7.3 allows remote attackers to write to arbitrary files with the permissions of the target user via a .. (dot dot) in a diff file name.
- CVE-2015-1396HIGHCVSS 7.5EG 7.52019-11-25
A Directory Traversal vulnerability exists in the GNU patch before 2.7.4. A remote attacker can write to arbitrary files via a symlink attack in a patch file. NOTE: this issue exists because of an incomplete fix for CVE-2015-1196.
- CVE-2015-1429HIGHCVSS 7.5EG 7.52017-10-06
Directory traversal vulnerability in Cybele Software Thinfinity Remote Desktop Workstation 3.0.0.3 32-bit and 64-bit allows remote attackers to download arbitrary files via a .. (dot dot) in an unspecified parameter.
- CVE-2015-1503HIGHCVSS 7.5EG 8.32018-05-08
Multiple directory traversal vulnerabilities in IceWarp Mail Server before 11.2 allow remote attackers to read arbitrary files via a (1) .. (dot dot) in the file parameter to a webmail/client/skins/default/css/css.php page or .../. (dot do…
- CVE-2015-1577MEDIUMCVSS v2 6.4EG 6.42015-02-11
Directory traversal vulnerability in u5admin/deletefile.php in u5CMS before 3.9.4 allows remote attackers to write to arbitrary files via a (1) .. (dot dot) or (2) full pathname in the f parameter.
- CVE-2015-1579MEDIUMCVSS v2 5.0EG 5.02015-02-11
Directory traversal vulnerability in the Elegant Themes Divi theme for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter in a revslider_show_image action to wp-admin/admin-ajax.php. NOTE: th…
- CVE-2015-1589MEDIUMCVSS v2 5.0EG 5.02015-02-23
Directory traversal vulnerability in arCHMage 0.2.4 allows remote attackers to write to arbitrary files via a .. (dot dot) in a CHM file.
- CVE-2015-1834MEDIUMCVSS 6.5EG 6.52017-05-25
A path traversal vulnerability was identified in the Cloud Foundry component Cloud Controller that affects cf-release versions prior to v208 and Pivotal Cloud Foundry Elastic Runtime versions prior to 1.4.2. Path traversal is the 'outbreak…
- CVE-2015-1847HIGHCVSS 7.5EG 7.52017-07-25
Directory traversal vulnerability in the web request/response interface in Appserver before 1.0.3 allows remote attackers to read normally inaccessible files via a .. (dot dot) in a crafted URL.
- CVE-2015-1876HIGHCVSS 7.5EG 7.52017-08-28
Directory traversal vulnerability in ES File Explorer 3.2.4.1.
- CVE-2015-2007MEDIUMCVSS 5.0EG 5.02016-01-03
Directory traversal vulnerability in IBM Security QRadar SIEM 7.2.x before 7.2.5 Patch 6 allows remote authenticated users to read arbitrary files via a crafted URL.
- CVE-2015-2060MEDIUMCVSS 5.3EG 5.32019-11-29
cabextract before 1.6 does not properly check for leading slashes when extracting files, which allows remote attackers to conduct absolute directory traversal attacks via a malformed UTF-8 character that is changed to a UTF-8 encoded slash.
- CVE-2015-2067MEDIUMCVSS v2 5.0EG 5.02015-02-24
Directory traversal vulnerability in web/ajax_pluginconf.php in the MAGMI (aka Magento Mass Importer) plugin for Magento Server allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
- CVE-2015-2071MEDIUMCVSS v2 4.0EG 4.02015-02-24
Directory traversal vulnerability in cm/newui/blog/export.jsp in eTouch SamePage Enterprise Edition 4.4.0.0.239 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the filepath parameter.
- CVE-2015-2073HIGHCVSS 7.5EG 7.52021-08-09
The File RepositoRy Server (FRS) CORBA listener in SAP BussinessObjects Edge 4.0 allows remote attackers to read arbitrary files via a full pathname, aka SAP Note 2018682.
- CVE-2015-2074HIGHCVSS 7.5EG 7.52021-08-09
The File Repository Server (FRS) CORBA listener in SAP BussinessObjects Edge 4.0 allows remote attackers to write to arbitrary files via a full pathname, aka SAP Note 2018681.
- CVE-2015-2243HIGHCVSS v2 7.5EG 7.52015-03-09
Directory traversal vulnerability in Webshop hun 1.062S allows remote attackers to have unspecified impact via directory traversal sequences in the mappa parameter to index.php.
- CVE-2015-2304MEDIUMCVSS v2 6.4EG 6.42015-03-15
Absolute path traversal vulnerability in bsdcpio in libarchive 3.1.2 and earlier allows remote attackers to write to arbitrary files via a full pathname in an archive.
- CVE-2015-2856HIGHCVSS 7.5EG 8.22017-10-10
Directory traversal vulnerability in the template function in function.inc in Accellion File Transfer Appliance devices before FTA_9_11_210 allows remote attackers to read arbitrary files via a .. (dot dot) in the statecode cookie.
- CVE-2015-2996HIGHCVSS v2 8.5EG 8.52015-06-08
Multiple directory traversal vulnerabilities in SysAid Help Desk before 15.2 allow remote attackers to (1) read arbitrary files via a .. (dot dot) in the fileName parameter to getGfiUpgradeFile or (2) cause a denial of service (CPU and mem…
- CVE-2015-3035CRITICALCVSS 7.5EG 9.0⚠ KEV2015-04-22
Directory traversal vulnerability in TP-LINK Archer C5 (1.2) with firmware before 150317, C7 (2.0) with firmware before 150304, and C8 (1.0) with firmware before 150316, Archer C9 (1.0), TL-WDR3500 (1.0), TL-WDR3600 (1.0), and TL-WDR4300 (…
- CVE-2015-3151HIGHCVSS 7.8EG 7.82020-01-14
Directory traversal vulnerability in abrt-dbus in Automatic Bug Reporting Tool (ABRT) allows local users to read, write to, or change ownership of arbitrary files via unspecified vectors to the (1) NewProblem, (2) GetInfo, (3) SetElement, …
- CVE-2015-3297HIGHCVSS 7.5EG 7.52017-07-07
Directory traversal vulnerability in node/utils/Minify.js in Etherpad 1.1.1 through 1.5.2 allows remote attackers to read arbitrary files by leveraging replacement of backslashes with slashes in the path parameter of HTTP API requests.
- CVE-2015-3309HIGHCVSS 7.5EG 7.52020-02-13
Directory traversal vulnerability in node/utils/Minify.js in Etherpad 1.1.2 through 1.5.4 allows remote attackers to read arbitrary files with permissions of the user running the service via a .. (dot dot) in the path parameter of HTTP API…
- CVE-2015-4068CRITICALCVSS 9.1EG 9.1⚠ KEV2015-05-29
Directory traversal vulnerability in Arcserve UDP before 5.0 Update 4 allows remote attackers to obtain sensitive information or cause a denial of service via a crafted file path to the (1) reportFileServlet or (2) exportServlet servlet.
- CVE-2015-4074HIGHCVSS 7.5EG 8.22017-09-20
Directory traversal vulnerability in the Helpdesk Pro plugin before 1.4.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter in a ticket.download_attachment task.
- CVE-2015-4085HIGHCVSS 7.5EG 7.52017-09-07
Directory traversal vulnerability in node/hooks/express/tests.js in Etherpad frontend tests before 1.6.1.
- CVE-2015-4180HIGHCVSS 7.5EG 7.52017-08-25
Directory traversal vulnerability in get_file.php in phpMyBackupPro 2.1 through 2.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter. NOTE: the provenance of this information is unknown; the details…
- CVE-2015-4181HIGHCVSS 7.5EG 7.52017-08-25
Directory traversal vulnerability in get_file.php in phpMyBackupPro 2.1 through 2.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter. NOTE: the provenance of this information is unknown; the details…
- CVE-2015-4461MEDIUMCVSS 6.5EG 6.52018-02-05
Absolute path traversal vulnerability in eFront CMS 3.6.15.4 and earlier allows remote Professor users to obtain sensitive information via a full pathname in the other parameter.
- CVE-2015-4617HIGHCVSS 7.5EG 7.52019-02-15
Vulnerability in Easy2map-photos WordPress Plugin v1.09 MapPinImageUpload.php and MapPinIconSave.php allows path traversal when specifying file names creating files outside of the upload directory.
- CVE-2015-4632HIGHCVSS 7.5EG 8.12018-10-18
Multiple directory traversal vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before 3.18.08, and 3.20.x before 3.20.1 allow remote attackers to read arbitrary files via a ..%2f (dot dot encoded slash) in the te…
- CVE-2015-4694HIGHCVSS 8.6EG 8.62016-01-08
Directory traversal vulnerability in download.php in the Zip Attachments plugin before 1.5.1 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the za_file parameter.
- CVE-2015-4703MEDIUMCVSS 5.3EG 5.32016-01-12
Absolute path traversal vulnerability in mysqldump_download.php in the WordPress Rename plugin 1.0 for WordPress allows remote attackers to read arbitrary files via a full pathname in the dumpfname parameter.
- CVE-2015-4704HIGHCVSS 7.5EG 7.52017-05-23
Directory traversal vulnerability in the Download Zip Attachments plugin 1.0 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the File parameter to download.php.
- CVE-2015-4988HIGHCVSS 8.6EG 8.62016-01-18
Directory traversal vulnerability in the replay server in IBM Tealeaf Customer Experience before 8.7.1.8818, 8.8 before 8.8.0.9026, 9.0.0, 9.0.0A, 9.0.1 before 9.0.1.1083, 9.0.1A before 9.0.1.5073, 9.0.2 before 9.0.2.1095, and 9.0.2A befor…
- CVE-2015-5079HIGHCVSS 7.5EG 7.52018-02-28
Directory traversal vulnerability in widgets/logs.php in BlackCat CMS before 1.1.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the dl parameter.
- CVE-2015-5174MEDIUMCVSS 4.3EG 4.32016-02-25
Directory traversal vulnerability in RequestUtil.java in Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.65, and 8.x before 8.0.27 allows remote authenticated users to bypass intended SecurityManager restrictions and list a parent director…
- CVE-2015-5313LOWCVSS 2.5EG 2.52016-04-11
Directory traversal vulnerability in the virStorageBackendFileSystemVolCreate function in storage/storage_backend_fs.c in libvirt, when fine-grained Access Control Lists (ACL) are in effect, allows local users with storage_vol:create ACL b…
- CVE-2015-5345MEDIUMCVSS 5.3EG 5.32016-02-25
The Mapper component in Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.68, 8.x before 8.0.30, and 9.x before 9.0.0.M2 processes redirects before considering security constraints and Filters, which allows remote attackers to determine the …
- CVE-2015-5467CRITICALCVSS 9.8EG 9.82023-09-21
web\ViewAction in Yii (aka Yii2) 2.x before 2.0.5 allows attackers to execute any local .php file via a relative path in the view parameeter.
Map vulnerabilities like CWE-22 to your infrastructure
EchelonGraph correlates every CVE — across CWE-22 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →