Skip to main content

CWE archive

CWE-22 CVEs

Programmatic archive

9,506 CVEs tagged with CWE-221,265 Critical, 3,935 High, 3,905 Medium, 390 Low, 11 Unrated.

CVE-2008-3384

Published Jul 30, 2008

Multiple directory traversal vulnerabilities in help/help.php in Interact Learning Community Environment Interact 2.4.1 allow remote attackers to include and execute arbitrary loc…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3385

Published Jul 30, 2008

Directory traversal vulnerability in include/head_chat.inc.php in php Help Agent 1.0 and 1.1 Full allows remote attackers to include and execute arbitrary local files via a .. (do…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3371

Published Jul 30, 2008

Directory traversal vulnerability in install/help.php in TalkBack 2.3.5, and other versions before 2.3.6.2, allows remote attackers to include and execute arbitrary local files vi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3363

Published Jul 30, 2008

Directory traversal vulnerability in user_portal.php in the Dokeos E-Learning System 1.8.5 on Windows allows remote attackers to include and execute arbitrary local files via a ..…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3333

Published Jul 27, 2008

Directory traversal vulnerability in core/lang_api.php in Mantis before 1.1.2 allows remote attackers to include and execute arbitrary files via the language parameter to the user…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3312

Published Jul 25, 2008

Directory traversal vulnerability in lemon_includes/FCKeditor/editor/filemanager/browser/browser.php in Lemon CMS 1.10 allows remote attackers to include and execute arbitrary loc…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3296

Published Jul 25, 2008

Directory traversal vulnerability in modules/system/admin.php in XOOPS 2.0.18 1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the fct…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3293

Published Jul 24, 2008

Directory traversal vulnerability in download.php in EZWebAlbum allows remote attackers to read arbitrary files via the dlfilename parameter.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3205

Published Jul 17, 2008

Directory traversal vulnerability in index.php in Easy-Script Wysi Wiki Wyg 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the c parameter.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3190

Published Jul 16, 2008

Directory traversal vulnerability in list.php in 1Scripts CodeDB 1.1.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang paramete…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3192

Published Jul 16, 2008

Directory traversal vulnerability in index.php in jSite 1.0 OE allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module parameter.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3194

Published Jul 16, 2008

Multiple directory traversal vulnerabilities in data/inc/themes/predefined_variables.php in pluck 4.5.1 allow remote attackers to include and execute arbitrary local files via a .…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3179

Published Jul 15, 2008

Directory traversal vulnerability in website.php in Web 2 Business (W2B) phpDatingClub (aka Dating Club) 3.7 allows remote attackers to include and execute arbitrary local files v…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3163

Published Jul 14, 2008

Directory traversal vulnerability in dodosmail.php in DodosMail 2.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the dodosmail_header…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3164

Published Jul 14, 2008

Directory traversal vulnerability in blog.php in fuzzylime (cms) 3.01, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via…

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3165

Published Jul 14, 2008

Directory traversal vulnerability in rss.php in fuzzylime (cms) 3.01a and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary loca…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3149

Published Jul 11, 2008

The SNMP daemon in the F5 FirePass 1200 6.0.2 hotfix 3 allows remote attackers to cause a denial of service (daemon crash) by walking the hrSWInstalled OID branch in HOST-RESOURCE…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3150

Published Jul 11, 2008

Directory traversal vulnerability in index.php in Neutrino Atomic Edition 0.8.4 allows remote attackers to read and modify files, as demonstrated by manipulating data/sess.php in…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3128

Published Jul 10, 2008

Directory traversal vulnerability in search.php in Pivot 1.40.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the t parameter.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3087

Published Jul 9, 2008

Directory traversal vulnerability in Kasseler CMS 1.3.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to index.php, possibly related to…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3071

Published Jul 8, 2008

Directory traversal vulnerability in inc/class_language.php in MyBB before 1.2.13 has unknown impact and attack vectors related to the $language variable.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3031

Published Jul 7, 2008

Directory traversal vulnerability in index.php in Simple PHP Agenda 2.2.4 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in th…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3036

Published Jul 7, 2008

Directory traversal vulnerability in index.php in CMS little 0.0.1 allows remote attackers to include and execute arbitrary local files, and probably remote files, via a .. (dot d…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2993

Published Jul 3, 2008

Multiple directory traversal vulnerabilities in index.php in FOG Forum 0.8.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) fog_…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 9,026-9,050 of 9,506 CVEsPage 362 of 381