CWE-22
MITRE ↗Improper Limitation of a Pathname to a Restricted Directory (Path Traversal)
perl-archive-zip is vulnerable to a directory traversal in Archive::Zip. It was found that the Archive::Zip module did n
A Path Traversal issue was discovered in Advantech WebAccess/SCADA versions prior to V8.2_20170817. An attacker has read
The repository settings resource in Atlassian Bitbucket Server before version 5.6.0 allows remote attackers to read the
An issue was discovered in rack-protection/lib/rack/protection/path_traversal.rb in Sinatra 2.x before 2.0.1 on Windows.
Directory traversal vulnerability in Apexis APM-J601-WS cameras with firmware before 17.35.2.49 allows remote attackers
Directory Traversal / Arbitrary File Read in User.getLanguage method in eQ-3 AG Homematic CCU2 2.29.2 and earlier allows
zzcms 8.2 allows remote attackers to discover the full path via a direct request to 3/qq_connect2.0/API/class/ErrorCase.
In com.wowza.wms.timedtext.http.HTTPProviderCaptionFile in Wowza Streaming Engine before 4.7.1, traversal of the directo
Directory traversal vulnerability in Jubatus 1.0.2 and earlier allows remote attackers to read arbitrary files via unspe
Ajenti version version 2 contains a Improper Error Handling vulnerability in Login JSON request that can result in The r
WireMock before 2.16.0 contains a vulnerability that allows a remote unauthenticated attacker to access local files beyo
In Spark before 2.7.2, a remote attacker can read unintended static files via various representations of absolute or rel
Leao Consultoria e Desenvolvimento de Sistemas (LCDS) LTDA ME LAquis SCADA software versions prior to version 4.1.0.3237
In CMS Made Simple 2.2.7, a Directory Traversal issue makes it possible to determine the existence of files and director
Apache Ambari, versions 1.4.0 to 2.6.1, is susceptible to a directory traversal attack allowing an unauthenticated user
An issue was discovered in Appnitro MachForm before 4.2.3. The module in charge of serving stored files gets the path fr
Bitty is a development web server tool that functions similar to `python -m SimpleHTTPServer`. Version 0.2.10 has a dire
easyquick is a simple web server. easyquick is vulnerable to a directory traversal issue, giving an attacker access to t
dasafio is a web server. dasafio is vulnerable to a directory traversal issue, giving an attacker access to the filesyst
elding is a simple web server. elding is vulnerable to a directory traversal issue, allowing an attacker to access the f
Directory traversal in Jester web framework 0.2.0 allows remote attackers to fetch files in arbitrary locations via "..%
ZNC before 1.7.1-rc1 is prone to a path traversal flaw via ../ in a web skin name to access files outside of the intende
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/util.c mishandles ".." directory trave
Matera Banco 1.0.0 is vulnerable to path traversal (allowing access to system files outside the default application fold
IBM UrbanCode Deploy 6.1 through 6.9.6.0 could allow a remote attacker to traverse directories on the system. An unauthe
Cybrotech CyBroHttpServer 1.0.3 allows Directory Traversal via a ../ in the URI.
HScripts PHP File Browser Script v1.0 allows Directory Traversal via the index.php path parameter.
Endress+Hauser WirelessHART Fieldgate SWG70 3.x devices allow Directory Traversal via the fcgi-bin/wgsetcgi filename par
Apache Camel's Mail 2.20.0 through 2.20.3, 2.21.0 through 2.21.1 and 2.22.0 is vulnerable to path traversal.
PHP Scripts Mall Open Source Real-estate Script 3.6.2 allows remote attackers to list the wp-content/themes/template_dp_
chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against a
Directory Traversal vulnerability in salt-api in SaltStack Salt before 2017.7.8 and 2018.3.x before 2018.3.3 allows remo
MiniCMS 1.10 allows full path disclosure via /mc-admin/post.php?state=delete&delete= with an invalid filename.
A path traversal in takeapeek module versions <=0.2.2 allows an attacker to list directory and files.
A Path Traversal in simplehttpserver versions <=0.2.1 allows to list any file in another folder of web root.
An issue was discovered in DouCo DouPHP 1.5 20181221. It allows full path disclosure in "Smarty error: unable to read re
In index.php in WonderCMS before 2.4.1, remote attackers can delete arbitrary files via directory traversal.
OpenCart through 3.0.2.0 allows directory traversal in the editDownload function in admin\model\catalog\download.php via
restafary is a REpresentful State Transfer API for Creating, Reading, Using, Deleting files on a server from the web. Re
A vulnerability has been identified in SCALANCE M875 (All versions). An authenticated remote attacker with access to the
Gxlcms 2.0 before bug fix 20180915 has Directory Traversal exploitable by an administrator.
admin/index.php in Monstra CMS 3.0.4 allows arbitrary file deletion via id=filesmanager&path=uploads/.......//./......./
An issue was discovered in XiaoCms 20141229. admin\controller\database.php allows arbitrary directory deletion via admin
GreenCMS v2.3.0603 allows remote authenticated administrators to delete arbitrary files by modifying a base64-encoded pa
Lei Feng TV CMS (aka LFCMS) 3.8.6 allows Directory Traversal via crafted use of ..* in Template/edit/path URIs, as demon
imcat 4.4 allows directory traversal via the root/run/adm.php efile parameter.
Medtronic 2090 CareLink Programmer’s software deployment network contains a directory traversal vulnerability that could
IBM Case Manager 5.2.0.0, 5.2.0.4, 5.2.1.0, 5.2.1.7, 5.3.0.0, and 5.3.3.0 is vulnerable to a "zip slip" vulnerability wh
Vulnerability in the Oracle JDeveloper component of Oracle Fusion Middleware (subcomponent: Deployment). Supported versi
Spring-integration-zip versions prior to 1.0.1 exposes an arbitrary file write vulnerability, which can be achieved usin
Frequently Asked Questions
What is CWE-22?
CWE-22 (Improper Limitation of a Pathname to a Restricted Directory (Path Traversal)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-22?
There are 11,337 CVE records associated with CWE-22 in our database. Of these, 1121 are critical severity, 3545 are high severity, and 2893 are medium severity.
How can I protect against CWE-22 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-22 using AI-powered security agents.
Detect CWE-22 Vulnerabilities
CyberStrike's AI agents automatically detect improper limitation of a pathname to a restricted directory (path traversal) vulnerabilities across your infrastructure.
Get Started