Skip to main content

CWE archive

CWE-22 CVEs

Programmatic archive

9,480 CVEs tagged with CWE-221,258 Critical, 3,927 High, 3,900 Medium, 389 Low, 6 Unrated.

CVE-2008-0068

Published Apr 16, 2008

Directory traversal vulnerability in OpenView5.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to read arbitrary files via directory…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1798

Published Apr 15, 2008

Directory traversal vulnerability in forum/kietu/libs/calendrier.php in Dragoon 0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1799

Published Apr 15, 2008

Directory traversal vulnerability in thumbnails.php in sabros.us 1.75 allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1751

Published Apr 11, 2008

Multiple directory traversal vulnerabilities in index.php in Ksemail allow remote attackers to read arbitrary local files via a .. (dot dot) in the (1) language and (2) lang param…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1755

Published Apr 11, 2008

Directory traversal vulnerability in the showSource function in showSource.php in World of Phaos 4.0.1 allows remote attackers to read arbitrary files via directory traversal sequ…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1730

Published Apr 11, 2008

Directory traversal vulnerability in download.html in ARWScripts Gallery Script Lite (aka gallery-script-lite or Free Photo Gallery Site Script), as of 20080411, allows remote att…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1702

Published Apr 8, 2008

Absolute path traversal vulnerability in dload.php in the my_gallery 2.3 plugin for e107 allows remote attackers to obtain sensitive information via a full pathname in the file pa…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1696

Published Apr 8, 2008

Directory traversal vulnerability in makepost.php in DaZPHPNews 0.1-1, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include and ex…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-0310

Published Apr 7, 2008

Directory traversal vulnerability in pkgadd in SCO UnixWare 7.1.4 before p534589 allows local users to create or append to arbitrary files via ".." sequences in an unspecified env…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1620

Published Apr 2, 2008

Directory traversal vulnerability in 2X TFTP service (TFTPd.exe) 3.2.0.0 and earlier in 2X ThinClientServer 5.0_sp1-r3497 and earlier allows remote attackers to read or overwrite…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1624

Published Apr 2, 2008

Directory traversal vulnerability in v2demo/page.php in Jshop Server 1.x through 2.x allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1635

Published Apr 2, 2008

Directory traversal vulnerability in view_private.php in Keep It Simple Guest Book (KISGB) 5.0.0 and earlier allows remote attackers to include and execute arbitrary local files v…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1642

Published Apr 2, 2008

Directory traversal vulnerability in index.php in Sava's GuestBook 2.0 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in th…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1643

Published Apr 2, 2008

Directory traversal vulnerability in the PXE TFTP Service (PXEMTFTP.exe) in LANDesk Management Suite (LDMS) 8.7 SP5 and earlier and 8.8 allows remote attackers to read arbitrary f…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1645

Published Apr 2, 2008

Directory traversal vulnerability in body.php in phpSpamManager (phpSM) 0.53 beta allows remote attackers to read arbitrary local files via a .. (dot dot) in the filename paramete…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1651

Published Apr 2, 2008

Directory traversal vulnerability in admin/login.php in EasyNews 4.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1652

Published Apr 2, 2008

Directory traversal vulnerability in the _serve_request_multiple function in lib/Perlbal/ClientHTTPBase.pm in Perlbal before 1.70, when concat get is enabled, allows remote attack…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1653

Published Apr 2, 2008

Directory traversal vulnerability in index.php in Sava's Link Manager 2.0 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1606

Published Apr 1, 2008

Multiple directory traversal vulnerabilities in Elastic Path (EP) 4.1 and 4.1.1 allow remote attackers to (1) download arbitrary files via a .. (dot dot) in the file parameter to…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1564

Published Mar 31, 2008

Directory traversal vulnerability in Dan Costin File Transfer before 1.2f allows remote attackers to read arbitrary files via a "..\" (dot dot backslash) in the filename.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1565

Published Mar 31, 2008

Directory traversal vulnerability in forum/irc/irc.php in the PJIRC 0.5 module for phpBB allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1553

Published Mar 31, 2008

Directory traversal vulnerability in mod.php in TopperMod 1.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the to parameter.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1555

Published Mar 31, 2008

Directory traversal vulnerability in system/_b/contentFiles/gbincluder.php in BolinOS 4.6.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot)…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1534

Published Mar 28, 2008

Multiple directory traversal vulnerabilities in PowerPHPBoard 1.00b allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) settings[foot…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 9,101-9,125 of 9,480 CVEsPage 365 of 380