CWE-73
407 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-73page 4 of 9
- CVE-2024-28826HIGHCVSS 8.8EG 8.82024-05-29
Improper restriction of local upload and download paths in check_sftp in Checkmk before 2.3.0p4, 2.2.0p27, 2.1.0p44, and in Checkmk 2.0.0 (EOL) allows attackers with sufficient permissions to configure the check to read and write local fil…
- CVE-2024-2917MEDIUMCVSS 5.4EG 5.42024-03-26
A vulnerability was found in Campcodes House Rental Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file index.php. The manipulation of the argument page leads to f…
- CVE-2024-30265HIGHCVSS 7.5EG 7.52024-04-03
Collabora Online is a collaborative online office suite based on LibreOffice technology. Any deployment of voilà dashboard allow local file inclusion. Any file on a filesystem that is readable by the user that runs the voilà dashboard se…
- CVE-2024-31492HIGHCVSS 8.2EG 8.22024-04-10
An external control of file name or path vulnerability [CWE-73] in FortiClientMac version 7.2.3 and below, version 7.0.10 and below installer may allow a local attacker to execute arbitrary code or commands via writing a malicious configu…
- CVE-2024-33671HIGHCVSS 7.7EG 7.72024-04-26
An issue was discovered in Veritas Backup Exec before 22.2 HotFix 917391. The Backup Exec Deduplication Multi-threaded Streaming Agent can be leveraged to perform arbitrary file deletion on protected files.
- CVE-2024-33860MEDIUMCVSS 6.5EG 6.52024-05-07
An issue was discovered in Logpoint before 7.4.0. It allows Local File Inclusion (LFI) when an arbitrary File Path is used within the File System Collector. The content of the file specified can be viewed in the incoming logs.
- CVE-2024-36473MEDIUMCVSS 5.3EG 5.32024-06-10
Trend Micro VPN Proxy One Pro, version 5.8.1012 and below is vulnerable to an arbitrary file overwrite or create attack but is limited to local Denial of Service (DoS) and under specific conditions can lead to elevation of privileges.
- CVE-2024-37149HIGHCVSS 7.2EG 7.22024-07-10
GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. An authenticated technician user can upload a malicious PHP script and hijack the plugin loa…
- CVE-2024-37295HIGHCVSS 7.2EG 7.22024-06-11
Aimeos is an Open Source e-commerce framework for online shops. Starting in version 2024.01.1 and prior to version 2024.04.5, a user with administrative privileges can upload files that look like images but contain PHP code which can then …
- CVE-2024-38029HIGHCVSS 7.5EG 7.52024-10-08
Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
- CVE-2024-38040HIGHCVSS 7.5EG 7.52024-10-04
There is a local file inclusion vulnerability in Esri Portal for ArcGIS 11.2 and below that may allow a remote, unauthenticated attacker to craft a URL that could potentially disclose sensitive configuration information by reading internal…
- CVE-2024-38049MEDIUMCVSS 6.6EG 6.62024-07-09
Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability
- CVE-2024-38165MEDIUMCVSS 6.5EG 6.52024-08-13
Windows Compressed Folder Tampering Vulnerability
- CVE-2024-38173MEDIUMCVSS 6.7EG 6.72024-08-13
Microsoft Outlook Remote Code Execution Vulnerability
- CVE-2024-38657MEDIUMCVSS 4.9EG 9.12025-02-21
External control of a file name in Ivanti Connect Secure before version 22.7R2.4 and Ivanti Policy Secure before version 22.7R1.3 allows a remote authenticated attacker with admin privileges to write arbitrary files.
- CVE-2024-39303MEDIUMCVSS 4.4EG 4.42024-07-01
Weblate is a web based localization tool. Prior to version 5.6.2, Weblate didn't correctly validate filenames when restoring project backup. It may be possible to gain unauthorized access to files on the server using a crafted ZIP file. Th…
- CVE-2024-39904HIGHCVSS 8.8EG 8.82024-07-11
VNote is a note-taking platform. Prior to 3.18.1, a code execution vulnerability existed in VNote, which allowed an attacker to execute arbitrary programs on the victim's system. A crafted URI can be used in a note to perform this attack u…
- CVE-2024-41183HIGHCVSS 7.8EG 7.82024-10-22
Trend Micro VPN, version 5.8.1012 and below is vulnerable to an arbitrary file overwrite under specific conditions that can lead to elevation of privileges.
- CVE-2024-4230HIGHCVSS 7.8EG 7.82024-12-19
External Control of File Name or Path vulnerability in Edgecross Basic Software for Windows versions 1.00 and later and Edgecross Basic Software for Developers versions 1.00 and later allows a malicious local attacker to execute an arbitra…
- CVE-2024-43451MEDIUMCVSS 6.5EG 9.0⚠ KEV2024-11-12
NTLM Hash Disclosure Spoofing Vulnerability
- CVE-2024-43581HIGHCVSS 7.1EG 7.12024-10-08
Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
- CVE-2024-43615HIGHCVSS 7.1EG 7.12024-10-08
Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
- CVE-2024-43658HIGHCVSS 7.2EG 0.02025-01-09
Patch traversal, External Control of File Name or Path vulnerability in Iocharger Home allows deletion of arbitrary files This issue affects Iocharger firmware for AC model before firmware version 25010801. Likelihood: High, but requires…
- CVE-2024-46909CRITICALCVSS 9.8EG 9.82024-12-02
In WhatsUp Gold versions released before 2024.0.1, a remote unauthenticated attacker could leverage this vulnerability to execute code in the context of the service account.
- CVE-2024-47265MEDIUMCVSS 6.5EG 6.52025-02-13
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in encrypted share umount functionality in Synology Active Backup for Business before 2.7.1-13234, 2.7.1-23234 and 2.7.1-3234 allows remote authen…
- CVE-2024-4818MEDIUMCVSS 5.3EG 5.32024-05-14
A vulnerability was found in Campcodes Online Laundry Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file /index.php. The manipulation of the argument page leads to file inclusion. Th…
- CVE-2024-51553MEDIUMCVSS 6.5EG 6.52025-05-22
Predictable filename vulnerabilities in ASPECT may expose sensitive information to a potential attacker if administrator credentials become compromisedThis issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Ser…
- CVE-2024-51961HIGHCVSS 7.5EG 7.52025-03-03
There is a local file inclusion vulnerability in ArcGIS Server 11.3 and below that may allow a remote, unauthenticated attacker to craft a URL that could potentially disclose sensitive configuration information by reading internal files fr…
- CVE-2024-5334HIGHCVSS 7.5EG 7.52024-06-27
A local file read vulnerability exists in the stitionai/devika repository, affecting the latest version. The vulnerability is due to improper handling of the 'snapshot_path' parameter in the '/api/get-browser-snapshot' endpoint. An attacke…
- CVE-2024-55371CRITICALCVSS 9.8EG 9.82025-04-16
Wallos <= 2.38.2 has a file upload vulnerability in the restore backup function, which allows authenticated users to restore backups by uploading a ZIP file. The contents of the ZIP file are extracted on the server. This functionality enab…
- CVE-2024-55372CRITICALCVSS 9.8EG 9.82025-04-16
Wallos <=2.38.2 has a file upload vulnerability in the restore database function, which allows unauthenticated users to restore database by uploading a ZIP file. The contents of the ZIP file are extracted on the server. This functionality …
- CVE-2024-57394HIGHCVSS 8.8EG 8.82025-04-21
The quarantine - restore function in Qi-ANXIN Tianqing Endpoint Security Management System v10.0 allows user to restore a malicious file to an arbitrary file path. Attackers can write malicious DLL to system path and perform privilege esca…
- CVE-2024-5823CRITICALCVSS 9.1EG 6.52024-10-29
A file overwrite vulnerability exists in gaizhenbiao/chuanhuchatgpt versions <= 20240410. This vulnerability allows an attacker to gain unauthorized access to overwrite critical configuration files within the system. Exploiting this vulner…
- CVE-2024-5986CRITICALCVSS 9.1EG 9.12026-02-02
A vulnerability in h2oai/h2o-3 version 3.46.0.1 allows remote attackers to write arbitrary data to any file on the server. This is achieved by exploiting the `/3/Parse` endpoint to inject attacker-controlled data as the header of an empty …
- CVE-2024-6255HIGHCVSS 8.2EG 8.22024-07-31
A vulnerability in the JSON file handling of gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to delete any JSON file on the server, including critical configuration files such as `config.json` and `ds_config_chatbot.json`. This…
- CVE-2024-6467HIGHCVSS 8.8EG 8.82024-07-17
The BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin plugin for WordPress is vulnerable to Arbitrary File Read to Arbitrary File Creation in all versions up to, and including, 1.1.5 via the 'bookingpress_sa…
- CVE-2024-6714HIGHCVSS 8.8EG 8.82024-07-23
An issue was discovered in provd before version 0.1.5 with a setuid binary, which allows a local attacker to escalate their privilege.
- CVE-2024-6829CRITICALCVSS 9.1EG 9.12025-03-20
A vulnerability in aimhubio/aim version 3.19.3 allows an attacker to exploit the `tarfile.extractall()` function to extract the contents of a maliciously crafted tarfile to arbitrary locations on the host server. The attacker can control `…
- CVE-2024-6937LOWCVSS 2.7EG 2.72024-07-21
A vulnerability, which was classified as problematic, was found in formtools.org Form Tools 3.1.1. Affected is the function curl_exec of the file /admin/forms/option_lists/edit.php of the component Import Option List. The manipulation of t…
- CVE-2024-7496MEDIUMCVSS 6.3EG 6.32024-08-06
A vulnerability has been found in itsourcecode Airline Reservation System 1.0 and classified as critical. This vulnerability affects unknown code of the file /index.php. The manipulation of the argument page leads to file inclusion. The at…
- CVE-2024-7497MEDIUMCVSS 6.3EG 6.32024-08-06
A vulnerability was found in itsourcecode Airline Reservation System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/index.php. The manipulation of the argument page leads to file inclusion. Th…
- CVE-2024-7626HIGHCVSS 8.1EG 8.12024-09-11
The WP Delicious – Recipe Plugin for Food Bloggers (formerly Delicious Recipes) plugin for WordPress is vulnerable to arbitrary file movement and reading due to insufficient file path validation in the save_edit_profile_details() functio…
- CVE-2024-7744MEDIUMCVSS 6.5EG 6.52024-08-28
In WS_FTP Server versions before 8.8.8 (2022.0.8), an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in the Web Transfer Module allows File Discovery, Probe System Files, User-Controlled Filena…
- CVE-2024-7911MEDIUMCVSS 6.3EG 6.32024-08-18
A vulnerability was found in SourceCodester Simple Online Bidding System 1.0. It has been classified as critical. This affects an unknown part of the file /simple-online-bidding-system/bidding/index.php. The manipulation of the argument pa…
- CVE-2024-8517CRITICALCVSS 9.8EG 9.82024-09-06
SPIP before 4.3.2, 4.2.16, and 4.1.18 is vulnerable to a command injection issue. A remote and unauthenticated attacker can execute arbitrary operating system commands by sending a crafted multipart file upload HTTP request.
- CVE-2024-8524HIGHCVSS 7.5EG 7.52025-03-20
A directory traversal vulnerability exists in modelscope/agentscope version 0.0.4. An attacker can exploit this vulnerability to read any local JSON file by sending a crafted POST request to the /read-examples endpoint.
- CVE-2024-8616HIGHCVSS 8.2EG 8.22025-03-20
In h2oai/h2o-3 version 3.46.0, the `/99/Models/{name}/json` endpoint allows for arbitrary file overwrite on the target server. The vulnerability arises from the `exportModelDetails` function in `ModelsHandler.java`, where the user-controll…
- CVE-2024-9142CRITICALCVSS 9.8EG 9.82024-09-25
External Control of File Name or Path, : Incorrect Permission Assignment for Critical Resource vulnerability in Olgu Computer Systems e-Belediye allows Manipulating Web Input to File System Calls. This issue affects e-Belediye: before 2.0…
- CVE-2024-9275MEDIUMCVSS 6.3EG 6.32024-09-27
A vulnerability was found in jeanmarc77 123solar up to 1.8.4.5. It has been rated as critical. This issue affects some unknown processing of the file /admin/admin_invt2.php. The manipulation of the argument PROTOCOLx leads to file inclusio…
- CVE-2024-9575HIGHCVSS 8.5EG 8.12024-10-09
Local File Inclusion vulnerability in pretix Widget WordPress plugin pretix-widget on Windows allows PHP Local File Inclusion. This issue affects pretix Widget WordPress plugin: from 1.0.0 through 1.0.5.
Map vulnerabilities like CWE-73 to your infrastructure
EchelonGraph correlates every CVE — across CWE-73 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →