Vulnerabilities (CVE)

Filtered by CWE-22
Total 10188 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-2229 1 Sapio Design Ltd 1 Webreflex 2026-06-16 5.0 MEDIUM N/A
Directory traversal vulnerability in Sapio Design Ltd. WebReflex 1.53 allows remote attackers to read arbitrary files via a .. in an HTTP request.
CVE-2002-2154 1 Monkey-project 1 Monkey 2026-06-16 5.0 MEDIUM N/A
Directory traversal vulnerability in Monkey HTTP Daemon 0.1.4 allows remote attackers to read arbitrary files via .. (dot dot) sequences.
CVE-2001-1586 1 Analogx 1 Simpleserver Www 2026-06-16 10.0 HIGH N/A
Directory traversal vulnerability in SimpleServer:WWW 1.13 and earlier allows remote attackers to execute arbitrary programs via encoded ../ ("%2E%2E%2F%") sequences in a request to the cgi-bin/ directory, a different vulnerability than CVE-2000-0664.
CVE-2001-1432 1 Cherokee 1 Cherokee Httpd 2026-06-16 7.8 HIGH N/A
Directory traversal vulnerability in Cherokee Web Server allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.
CVE-2001-1205 1 Matrixs Cgi Vault 1 Last Lines 2026-06-16 5.0 MEDIUM N/A
Directory traversal vulnerability in lastlines.cgi for Last Lines 2.0 allows remote attackers to read arbitrary files via '..' sequences in the $error_log variable.
CVE-2001-0925 2 Apache, Debian 2 Http Server, Debian Linux 2026-06-16 5.0 MEDIUM N/A
The default installation of Apache before 1.3.19 allows remote attackers to list directories instead of the multiview index.html file via an HTTP request for a path that contains many / (slash) characters, which causes the path to be mishandled by (1) mod_negotiation, (2) mod_dir, or (3) mod_autoindex.
CVE-2001-0780 1 Cosmicperl 1 Directory Pro 2026-06-16 5.0 MEDIUM N/A
Directory traversal vulnerability in cosmicpro.cgi in Cosmicperl Directory Pro 2.0 allows remote attackers to gain sensitive information via a .. (dot dot) in the SHOW parameter.
CVE-2001-0054 1 Solarwinds 1 Serv-u File Server 2026-06-16 5.0 MEDIUM N/A
Directory traversal vulnerability in FTP Serv-U before 2.5i allows remote attackers to escape the FTP root and read arbitrary files by appending a string such as "/..%20." to a CD command, a variant of a .. (dot dot) attack.