• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-22

CVE-2022-28444

February 23, 2023 by godfreyd94

UCMS v1.6 was discovered to contain an arbitrary file read vulnerability.

CVE-2022-28451

February 23, 2023 by godfreyd94

nopCommerce 4.50.1 is vulnerable to Directory Traversal via the backup file in the Maintenance feature.

CVE-2022-28478

February 23, 2023 by godfreyd94

SeedDMS 6.0.17 and 5.1.24 are vulnerable to Directory Traversal. The “Remove file” functionality inside the “Log files management” menu does not sanitize user input allowing attackers with admin privileges to delete arbitrary files on the remote system.

CVE-2022-28380

February 23, 2023 by godfreyd94

The rc-httpd component through 2022-03-31 for 9front (Plan 9 fork) allows ..%2f directory traversal if serve-static is used.

CVE-2022-28146

February 23, 2023 by godfreyd94

Jenkins Continuous Integration with Toad Edge Plugin 2.3 and earlier allows attackers with Item/Configure permission to read arbitrary files on the Jenkins controller by specifying an input folder on the Jenkins controller as a parameter to its build steps.

CVE-2022-28148

February 23, 2023 by godfreyd94

The file browser in Jenkins Continuous Integration with Toad Edge Plugin 2.3 and earlier may interpret some paths to files as absolute on Windows, resulting in a path traversal vulnerability allowing attackers with Item/Read permission to obtain the contents of arbitrary files on Windows controllers.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 475
  • Go to page 476
  • Go to page 477
  • Go to page 478
  • Go to page 479
  • Interim pages omitted …
  • Go to page 514
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE