CWE-552— Files or Directories Accessible to External Parties
The product makes files or directories accessible to unauthorized actors, even though they should not be.— MITRE CWE catalog
526 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-552page 7 of 11
- CVE-2024-0949CRITICALCVSS 9.8EG 9.82024-06-27
Missing Authentication, Files or Directories Accessible to External Parties, Use of Hard-coded Credentials vulnerability in Talya Informatics Elektraweb allows Authentication Bypass. This issue affects Elektraweb: before v17.0.68.
- CVE-2024-1005MEDIUMCVSS 5.3EG 5.32024-01-29
A vulnerability has been found in Shanxi Diankeyun Technology NODERP up to 6.0.2 and classified as critical. This vulnerability affects unknown code of the file /runtime/log. The manipulation leads to files or directories accessible. The a…
- CVE-2024-10126MEDIUMCVSS 4.3EG 4.32024-11-20
Local File Inclusion vulnerability in M-Files Server in versions before 24.11 (excluding 24.8 SR1, 24.2 SR3 and 23.8 SR7) allows an authenticated user to read server local files of a limited set of filetypes via document preview.
- CVE-2024-10403HIGHCVSS 7.5EG 7.52024-11-21
Brocade Fabric OS versions before 8.2.3e2, versions 9.0.0 through 9.2.0c, and 9.2.1 through 9.2.1a can capture the SFTP/FTP server password used for a firmware download operation initiated by SANnav or through WebEM in a weblinker core …
- CVE-2024-10526HIGHCVSS 8.6EG 8.62024-11-07
Rapid7 Velociraptor MSI Installer versions below 0.73.3 suffer from a vulnerability whereby it creates the installation directory with WRITE_DACL permission to the BUILTIN\\Users group. This allows local users who are not administrators to…
- CVE-2024-11399MEDIUMCVSS 6.8EG 6.82026-05-27
Files or directories accessible to external parties vulnerability in redis-server component in Synology BeeDrive for desktop before 1.3.2-13814 allows local users to conduct denial-of-service attacks via unspecified vectors.
- CVE-2024-11629HIGHCVSS 7.1EG 7.12025-02-12
In Progress® Telerik® Document Processing Libraries, versions prior to 2025 Q1 (2025.1.205), using .NET Standard 2.0, the contents of a file at an arbitrary path can be exported to RTF.
- CVE-2024-12917HIGHCVSS 8.3EG 8.32025-02-24
Files or Directories Accessible to External Parties vulnerability in Agito Computer Health4All allows Exploiting Incorrectly Configured Access Control Security Levels, Authentication Abuse. This issue affects Health4All: before 10.01.2025.
- CVE-2024-13126MEDIUMCVSS 4.6EG 4.62025-03-16
The Download Manager WordPress plugin before 3.3.07 doesn't prevent directory listing on web servers that don't use htaccess, allowing unauthorized access of files.
- CVE-2024-2052HIGHCVSS 7.5EG 7.52024-03-18
CWE-552: Files or Directories Accessible to External Parties vulnerability exists that could allow unauthenticated files and logs exfiltration and download of files when an attacker modifies the URL to download to a different location.
- CVE-2024-2055CRITICALCVSS 9.8EG 9.82024-03-05
The "Rich Filemanager" feature of Artica Proxy provides a web-based interface for file management capabilities. When the feature is enabled, it does not require authentication by default, and runs as the root user.
- CVE-2024-2056CRITICALCVSS 9.8EG 9.82024-03-05
Services that are running and bound to the loopback interface on the Artica Proxy are accessible through the proxy service. In particular, the "tailon" service is running, running as the root user, is bound to the loopback interface, and i…
- CVE-2024-21403CRITICALCVSS 9.0EG 9.02024-02-13
Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability
- CVE-2024-22240MEDIUMCVSS 4.9EG 4.92024-02-06
Aria Operations for Networks contains a local file read vulnerability. A malicious actor with admin privileges may exploit this vulnerability leading to unauthorized access to sensitive information.
- CVE-2024-23282MEDIUMCVSS 5.5EG 5.52024-06-10
The issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, watchOS 10.5. A maliciously crafted email may be able to initiate FaceTime calls without user a…
- CVE-2024-2364LOWCVSS 1.8EG 1.82024-03-10
A vulnerability classified as problematic has been found in Musicshelf 1.0/1.1 on Android. Affected is an unknown function of the file androidmanifest.xml of the component Backup Handler. The manipulation leads to exposure of backup file t…
- CVE-2024-24161HIGHCVSS 7.5EG 7.52024-02-02
MRCMS 3.0 contains an Arbitrary File Read vulnerability in /admin/file/edit.do as the incoming path parameter is not filtered.
- CVE-2024-27182MEDIUMCVSS 4.9EG 4.92024-08-02
In Apache Linkis <= 1.5.0, Arbitrary file deletion in Basic management services on A user with an administrator account could delete any file accessible by the Linkis system user . Users are recommended to upgrade to version 1.6.0, whi…
- CVE-2024-2759HIGHCVSS 7.5EG 7.52024-04-04
Improper access control vulnerability in Apaczka plugin for PrestaShop allows information gathering from saved templates without authentication.This issue affects Apaczka plugin for PrestaShop from v1 through v4.
- CVE-2024-27894HIGHCVSS 8.5EG 8.52024-03-12
The Pulsar Functions Worker includes a capability that permits authenticated users to create functions where the function's implementation is referenced by a URL. The supported URL schemes include "file", "http", and "https". When a functi…
- CVE-2024-29225MEDIUMCVSS 4.3EG 4.32024-04-04
ELECOM wireless LAN routers allow a network-adjacent unauthenticated attacker to obtain the configuration file containing sensitive information by sending a specially crafted request.
- CVE-2024-3037HIGHCVSS 7.8EG 7.82024-05-14
An arbitrary file deletion vulnerability exists in PaperCut NG/MF, specifically affecting Windows servers with Web Print enabled. To exploit this vulnerability, an attacker must first obtain local login access to the Windows Server hosting…
- CVE-2024-31141MEDIUMCVSS 6.5EG 6.52024-11-19
Files or Directories Accessible to External Parties, Improper Privilege Management vulnerability in Apache Kafka Clients. Apache Kafka Clients accept configuration data for customizing behavior, and includes ConfigProvider plugins in orde…
- CVE-2024-3164MEDIUMCVSS 4.5EG 4.52024-04-01
In dotCMS dashboard, the Tools and Log Files tabs under System → Maintenance Portlet, which is and always has been an Admin portlet, is accessible to anyone with that portlet and not just to CMS Admins. Users that get site admin but not …
- CVE-2024-32498MEDIUMCVSS 6.5EG 6.52024-07-05
An issue was discovered in OpenStack Cinder through 24.0.0, Glance before 28.0.2, and Nova before 29.0.3. Arbitrary file access can occur via custom QCOW2 external data. By supplying a crafted QCOW2 image that references a specific data fi…
- CVE-2024-34066HIGHCVSS 8.4EG 8.42024-05-03
Pterodactyl wings is the server control plane for Pterodactyl Panel. If the Wings token is leaked either by viewing the node configuration or posting it accidentally somewhere, an attacker can use it to gain arbitrary file write and read a…
- CVE-2024-35183MEDIUMCVSS 4.4EG 4.42024-05-15
wolfictl is a command line tool for working with Wolfi. A git authentication issue in versions prior to 0.16.10 allows a local user’s GitHub token to be sent to remote servers other than `github.com`. Most git-dependent functionality in …
- CVE-2024-3564HIGHCVSS 8.8EG 8.82024-06-01
The Content Blocks (Custom Post Widget) plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.3.0 via the plugin's 'content_block' shortcode. This makes it possible for authenticated attackers, …
- CVE-2024-36442HIGHCVSS 8.8EG 8.82024-08-22
cgi-bin/fdmcgiwebv2.cgi on Swissphone DiCal-RED 4009 devices allows an authenticated attacker to gain access to arbitrary files on the device's file system.
- CVE-2024-38429HIGHCVSS 7.5EG 7.52024-07-30
Matrix Tafnit v8 - CWE-552: Files or Directories Accessible to External Parties
- CVE-2024-38876HIGHCVSS 7.8EG 7.82024-08-02
A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 Domain Controller R9.2 (All versions), Omnivise T3000 Product Data Management (PDM) R9.2 (All versions), Omnivise T3000 R8.2 SP3 (…
- CVE-2024-3913HIGHCVSS 5.9EG 7.52024-08-13
An unauthenticated remote attacker can use this vulnerability to change the device configuration due to a file writeable for short time after system startup.
- CVE-2024-39581HIGHCVSS 7.3EG 7.32024-09-10
Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability to read, modify, …
- CVE-2024-39931CRITICALCVSS 9.9EG 9.92024-07-04
Gogs through 0.13.0 allows deletion of internal files.
- CVE-2024-40767MEDIUMCVSS 6.5EG 6.52024-07-24
In OpenStack Nova before 27.4.1, 28 before 28.2.1, and 29 before 29.1.1, by supplying a raw format image that is actually a crafted QCOW2 image with a backing file path or VMDK flat image with a descriptor file path, an authenticated user …
- CVE-2024-4098CRITICALCVSS 9.8EG 9.82024-06-20
The Shariff Wrapper plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 4.6.13 via the shariff3uu_fetch_sharecounts function. This allows unauthenticated attackers to include and execute arbitrary f…
- CVE-2024-41699MEDIUMCVSS 4.4EG 4.42024-08-20
Priority – CWE-552: Files or Directories Accessible to External Parties
- CVE-2024-43660HIGHCVSS 7.5EG 7.52025-01-09
The CGI script <redacted>.sh can be used to download any file on the filesystem. This issue affects Iocharger firmware for AC model chargers beforeversion 24120701. Likelihood: High, but credentials required. Impact: Critical – The sc…
- CVE-2024-44807MEDIUMCVSS 5.3EG 5.32024-10-11
A directory listing issue in the baserCMS plugin in D-ZERO CO., LTD. BurgerEditor and BurgerEditor Limited Edition before 2.25.1 allows remote attackers to obtain sensitive information by exposing a list of the uploaded files.
- CVE-2024-45276HIGHCVSS 7.5EG 7.52024-10-15
An unauthenticated remote attacker can get read access to files in the "/tmp" directory due to missing authentication.
- CVE-2024-45627MEDIUMCVSS 5.9EG 5.92025-01-14
In Apache Linkis <1.7.0, due to the lack of effective filtering of parameters, an attacker configuring malicious Mysql JDBC parameters in the DataSource Manager Module will allow the attacker to read arbitrary files from the Linkis serve…
- CVE-2024-45894MEDIUMCVSS 4.9EG 4.92024-10-07
BlueCMS 1.6 suffers from Arbitrary File Deletion via the file_name parameter in an /admin/database.php?act=del request.
- CVE-2024-47106MEDIUMCVSS 5.3EG 5.32025-01-18
IBM Jazz for Service Management 1.1.3 through 1.1.3.22 could allow a remote attacker to obtain sensitive information from improper access restrictions that could aid in further attacks against the system.
- CVE-2024-47518MEDIUMCVSS 6.4EG 6.42025-01-10
Specially constructed queries targeting ETM could discover active remote access sessions
- CVE-2024-48019MEDIUMCVSS 5.4EG 5.42025-02-04
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Files or Directories Accessible to External Parties vulnerability in Apache Doris. Application administrators can read arbitrary files from the server filesy…
- CVE-2024-4836HIGHCVSS 7.5EG 7.52024-07-02
Web services managed by Edito CMS (Content Management System) in versions from 3.5 through 3.25 leak sensitive data as they allow downloading configuration files by an unauthenticated user. The issue in versions 3.5 - 3.25 was removed in r…
- CVE-2024-48647HIGHCVSS 7.2EG 7.22024-10-30
A file disclosure vulnerability exists in Sage 1000 v7.0.0. This vulnerability allows remote attackers to retrieve arbitrary files from the server's file system by manipulating the URL parameter in HTTP requests. The attacker can exploit t…
- CVE-2024-48838LOWCVSS 3.3EG 3.32024-11-12
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a Files or Directories Accessible to External Parties vulnerability. A low privileged attacker with local access could potentially exploit this v…
- CVE-2024-48864CRITICALCVSS 9.1EG 9.12025-03-07
A files or directories accessible to external parties vulnerability has been reported to affect File Station 5. If exploited, the vulnerability could allow remote attackers to read/write files or directories. We have already fixed the vul…
- CVE-2024-49359HIGHCVSS 7.5EG 7.52024-10-24
ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all prior versions, the API endpoint `http://<Zima_Server_IP:PORT>/v2_1/file` in ZimaOS is vulnerable to a directory traver…
Map vulnerabilities like CWE-552 to your infrastructure
EchelonGraph correlates every CVE — across CWE-552 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →