Vulnerabilities (CVE)

Filtered by CWE-35
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-27901 2024-04-09 N/A 7.2 HIGH
SAP Asset Accounting could allow a high privileged attacker to exploit insufficient validation of path information provided by the users and pass it through to the file API's. Thus, causing a considerable impact on confidentiality, integrity and availability of the application.
CVE-2024-2863 2024-03-25 N/A 5.3 MEDIUM
This vulnerability allows remote attackers to traverse paths via file upload on the affected LG LED Assistant.
CVE-2023-41793 2024-03-20 N/A 6.7 MEDIUM
: Path Traversal vulnerability in Pandora FMS on all allows Path Traversal. This vulnerability allowed changing directories and creating files and downloading them outside the allowed directories. This issue affects Pandora FMS: from 700 through <776.
CVE-2024-1886 2024-02-29 N/A 3.0 LOW
This vulnerability allows remote attackers to traverse the directory on the affected webOS of LG Signage.
CVE-2022-3693 1 Fileorbis 1 Fileorbis 2023-12-10 N/A 7.5 HIGH
Path Traversal vulnerability in Deytek Informatics FileOrbis File Management System allows Path Traversal.This issue affects FileOrbis File Management System: from unspecified before 10.6.3.
CVE-2022-2265 1 Identity And Directory Management System Project 1 Identity And Directory Management System 2023-12-10 N/A 7.5 HIGH
The Identity and Directory Management System developed by Çekino Bilgi Teknolojileri before version 2.1.25 has an unauthenticated Path traversal vulnerability. This has been fixed in the version 2.1.25