Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Directory Traversal
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Directory Traversal
This page lists
171 vulnerabilities
in this category.
Critical: 5
High: 161
Medium: 5
Vulnerability Name
CVE
CWE
Severity
WordPress Plugin Import and export users and customers Directory Traversal (1.14.2)
CVE-2019-15326
CWE-22
High
WordPress Plugin Insert or Embed Articulate Content into WordPress Directory Traversal (4.2999)
CVE-2019-15648
CWE-22
High
WordPress Plugin Simple Job Board Directory Traversal (2.9.3)
CVE-2020-35749
CWE-22
High
WordPress Plugin WPS Child Theme Generator Directory Traversal (1.1)
CVE-2019-15822
CWE-22
High
WordPress Plugin WP Fastest Cache Directory Traversal (0.8.9.5)
CVE-2019-13635
CWE-22
High
WordPress Plugin Zedna Contact form Directory Traversal (1.1)
-
CWE-22
High
WordPress Plugin WordPress File Upload Directory Traversal (4.12.2)
CVE-2020-10564
CWE-22
High
WordPress Plugin Delightful Downloads Directory Traversal (1.6.6)
CVE-2017-1000170
CWE-22
High
WordPress Plugin Add From Server Directory Traversal (3.3.3)
-
CWE-22
High
WordPress Plugin WP-Lister Lite for Amazon Directory Traversal (0.9.6.35)
CVE-2017-1000170
CWE-22
High
WordPress Plugin WP-Lister Lite for eBay Directory Traversal (2.0.20)
CVE-2017-1000170
CWE-22
High
WordPress 4.8.x Directory Traversal (4.8 - 4.8.24)
-
CWE-22
High
WordPress 4.3.x Directory Traversal (4.3 - 4.3.33)
-
CWE-22
High
WordPress 4.6.x Directory Traversal (4.6 - 4.6.28)
-
CWE-22
High
Arbitrary File Read in Next.js
-
CWE-22
High
ACME mini_httpd arbitrary file read
CVE-2018-18778
CWE-23
High
Node.js path validation vulnerability
CVE-2017-14849
CWE-22
High
uWSGI Path Traversal vulnerability
CVE-2018-7490
CWE-22
High
Fortigate SSL VPN Arbitrary File reading (CVE-2018-13379)
CVE-2018-13379
CWE-22
High
Oracle Business Intelligence Adfresource Path traversal CVE-2019-2588
CVE-2019-2588
CWE-200
High
Pulse Secure SSL VPN Arbitrary File reading (CVE-2019-11510)
CVE-2019-11510
CWE-22
High
SAP Portal directory traversal vulnerability
-
CWE-22
High
Typo3 Restler 1.7.0 Local File Disclosure
-
CWE-22
High
Tomcat path traversal via reverse proxy mapping
-
CWE-22
High
Cisco Adaptive Security Appliance (ASA) Path Traversal CVE-2020-3452
CVE-2020-3452
CWE-20
High
Total.js Directory Traversal (CVE-2019-8903)
CVE-2019-8903
CWE-22
High
Citrix XenMobile Server Path Traversal
CVE-2020-8209
CWE-22
High
Directory Traversal with spring-cloud-config-server
CVE-2020-5410
CWE-22
High
WordPress Duplicator plugin Unauthenticated Arbitrary File Download
-
CWE-22
High
Dragonfly Arbitrary File Read/Write (CVE-2021-33564)
CVE-2021-33564
CWE-20
High
Apache Flink jobmanager/logs Path Traversal
CVE-2020-17519
CWE-22
High
Laravel log viewer local file download (LFD)
CVE-2018-8947
CWE-22
High
Rails Asset Pipeline Directory Traversal Vulnerability
CVE-2018-3760
CWE-22
High
ExpressJs Local File Read via the layout parameter
-
CWE-22
High
Oracle JavaServer Faces multiple vulnerabilities
CVE-2013-3827
CWE-22
High
Server directory traversal
-
CWE-22
High
IIS extended unicode directory traversal vulnerability
CVE-2000-0884
CWE-22
High
AjaxControlToolkit directory traversal
CVE-2015-4670
CWE-434
High
Barracuda networks products multiple directory traversal vulnerabilities
-
CWE-22
High
Adobe ColdFusion directory traversal
CVE-2013-3336
CWE-22
High
Multiple vulnerabilities in Ioncube loader-wizard.php
-
CWE-552
High
JIRA Security Advisory 2014-02-26
-
CWE-22
High
Path Traversal in Oracle GlassFish server open source edition
-
CWE-22
High
Path traversal via misconfigured NGINX alias
-
CWE-22
High
Ruby on Rails directory traversal vulnerability
CVE-2014-0130
CWE-22
High
Apache Tomcat JK connector security bypass
CVE-2007-1860
CWE-200
High
WEBrick v.1.3 directory traversal
CVE-2008-1145
CWE-22
High
Ext JS arbitrary file read
-
CWE-22
High
lighttpd v1.4.34 SQL injection and path traversal
CVE-2014-2324
CWE-89
High
VMware directory traversal and privilege escalation vulnerabilities
CVE-2009-3733
CWE-22
High
Cisco Adaptive Security Appliance (ASA) Path Traversal (CVE-2018-0296)
CVE-2018-0296
CWE-22
High
WordPress 4.5.x Directory Traversal (4.5 - 4.5.31)
-
CWE-22
High
Apache HTTP Server Insecure Path Normalization (CVE-2021-41773, CVE-2021-42013)
CVE-2021-41773
CWE-22
High
Grafana Plugin Dir Traversal (CVE-2021-43798)
CVE-2021-43798
CWE-200
High
Joomla! Core 3.x.x Directory Traversal (3.0.0 - 3.9.24)
CVE-2021-23132
CWE-22
High
Drupal Core 9.2.x Directory Traversal (9.2.0 - 9.2.1)
CVE-2021-32610
CWE-22
High
Joomla! Core 1.5.x Directory Traversal (1.5.0 - 1.5.8)
CVE-2009-0113
CWE-22
High
Joomla! Core 3.4.x Directory Traversal (3.4.0 - 3.4.5)
CVE-2015-8564
CWE-22
High
Joomla! Core 3.x.x Directory Traversal (3.2.0 - 3.4.5)
CVE-2015-8565
CWE-22
High
Joomla! Core 3.9.x Directory Traversal (3.9.3 - 3.9.5)
CVE-2019-11831
CWE-22
High
Joomla! Core Directory Traversal (1.5.0 - 3.9.4)
CVE-2019-10945
CWE-22
High
Joomla! Core Directory Traversal (2.5.0 - 3.9.20)
CVE-2020-24597
CWE-22
High
Joomla! Core Directory Traversal (2.5.0 - 3.9.22)
CVE-2020-35612
CWE-22
High
Grandnode Path Traversal (CVE-2019-12276)
CVE-2019-12276
CWE-22
High
WordPress 2.3.3 Directory Traversal Vulnerability (0.6.2 - 2.3.3)
CVE-2008-4769
CWE-22
High
WordPress 4.5.3 Directory Traversal Vulnerability (4.5.3)
CVE-2016-10148
CWE-22
High
WordPress Directory Traversal (3.7 - 5.0.3)
CVE-2019-8943
CWE-22
High
WordPress 4.1.x Directory Traversal (4.1 - 4.1.40)
-
CWE-22
High
WordPress 4.2.x Directory Traversal (4.2 - 4.2.37)
-
CWE-22
High
Directory traversal
-
CWE-22
High
WordPress 4.4.x Directory Traversal (4.4 - 4.4.32)
-
CWE-22
High
Drupal Core 9.1.x Directory Traversal (9.1.0 - 9.1.10)
CVE-2021-32610
CWE-22
High
Drupal Core 9.0.x Directory Traversal (9.0.0 - 9.0.14)
CVE-2021-32610
CWE-22
High
Drupal Core 8.x.x Directory Traversal (8.0.0 - 8.8.12)
CVE-2021-32610
CWE-22
High
Drupal Core 8.9.x Directory Traversal (8.9.0 - 8.9.16)
CVE-2021-32610
CWE-22
High
«
1
2
3
»