Skip to main content

CWE archive

CWE-32 CVEs

Programmatic archive

2 CVEs tagged with CWE-320 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2024-41784

Published Nov 15, 2024

IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, and 6.1.0.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially c…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-6049

Published Oct 24, 2024

The web server of Lawo AG vsm LTC Time Sync (vTimeSync) is affected by a "..." (triple dot) path traversal vulnerability. By sending a specially crafted HTTP request, an unauthent…

CVSS 7.5 · High
Showing 1-2 of 2 CVEsPage 1 of 1