Skip to main content

CWE archive

CWE-22 CVEs

Programmatic archive

9,488 CVEs tagged with CWE-221,258 Critical, 3,928 High, 3,902 Medium, 389 Low, 11 Unrated.

CVE-2008-2482

Published May 28, 2008

Directory traversal vulnerability in install_mod.php in insanevisions OneCMS 2.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the loa…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2483

Published May 28, 2008

Directory traversal vulnerability in index.php in Xomol CMS 1.20071213 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the op parameter.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2495

Published May 28, 2008

Directory traversal vulnerability in index.php in Zina 1.0 RC3 allows remote attackers to have an unknown impact via a .. (dot dot) in the p parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2459

Published May 27, 2008

Directory traversal vulnerability in page.php in EntertainmentScript 1.4.0 allows remote attackers to include and execute arbitrary local files via directory traversal sequences i…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2399

Published May 22, 2008

Directory traversal vulnerability in the FireFTP add-on before 0.98.20080518 for Firefox allows remote FTP servers to create or overwrite arbitrary files via ..\ (dot dot backslas…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-2415

Published May 22, 2008

Directory traversal vulnerability in template/purpletech/base_include.php in DigitalHive (aka hive) 2.0 RC2 allows remote attackers to include and execute arbitrary local files vi…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2350

Published May 20, 2008

Directory traversal vulnerability in highlight.php in bcoos 1.0.9 through 1.0.13 allows remote attackers to read arbitrary files via (1) .. (dot dot) or (2) C: folder sequences in…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2352

Published May 20, 2008

Directory traversal vulnerability in index.php in Smeego 1.0, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2353

Published May 20, 2008

Directory traversal vulnerability in admin.php in GNU/Gallery 1.1.1.0 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the sh…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2355

Published May 20, 2008

Directory traversal vulnerability in index.php in WR-Meeting 1.0, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a ..…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2342

Published May 19, 2008

Directory traversal vulnerability in attachments.php in News Manager 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2215

Published May 14, 2008

Multiple directory traversal vulnerabilities in Project-Based Calendaring System (PBCS) 0.7.1-1 allow remote attackers to read arbitrary files via a .. (dot dot) in the filename p…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2217

Published May 14, 2008

Directory traversal vulnerability in cm/graphie.php in Content Management System 0.6.1 for Phprojekt allows remote attackers to include and execute arbitrary local files via a ..…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2227

Published May 14, 2008

Multiple directory traversal vulnerabilities in PHP-Fusion Forum Rank System 6 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the settin…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2185

Published May 13, 2008

Directory traversal vulnerability in index.php in SMartBlog (aka SMBlog) 1.3 allows remote attackers to include arbitrary local files via directory traversal sequences in the page…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2116

Published May 8, 2008

Multiple directory traversal vulnerabilities in editor.php in ScriptsEZ.net Power Editor 2.0 allow remote attackers to read arbitrary local files via a .. (dot dot) in the (1) te…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2091

Published May 6, 2008

Directory traversal vulnerability in ipn.php in KubeLabs Kubelance 1.6.4 allows remote attackers to include and execute arbitrary local files via the i parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2081

Published May 5, 2008

Directory traversal vulnerability in index.php in Siteman 2.0.x2 allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-2073

Published May 5, 2008

Directory traversal vulnerability in include/global.inc.php in Virtual Design Studio vlbook 1.21 allows remote attackers to include and execute arbitrary local files via a .. (dot…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2076

Published May 5, 2008

Directory traversal vulnerability in admin.php in ActualScripts ActualAnalyzer Lite 2.78 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2045

Published May 1, 2008

Absolute path traversal vulnerability in SugarCRM Sugar Community Edition 4.5.1 and 5.0.0 allows remote attackers to read arbitrary files via a full path in the URL parameter to m…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2015

Published Apr 30, 2008

Multiple absolute path traversal vulnerabilities in certain ActiveX controls in WatchFire AppScan 7.0 allow remote attackers to create or overwrite arbitrary files via a full path…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-2017

Published Apr 30, 2008

Directory traversal vulnerability in Chilek Content Management System (aka ChiCoMaS) 2.0.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot)…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1962

Published Apr 25, 2008

Multiple directory traversal vulnerabilities in Aterr 0.9.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) class parameter to in…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 9,076-9,100 of 9,488 CVEsPage 364 of 380