Total
4 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2019-11626 | 1 Doorgets | 1 Doorgets Cms | 2024-11-21 | 5.0 MEDIUM | 5.3 MEDIUM |
routers/ajaxRouter.php in doorGets 7.0 has a web site physical path leakage vulnerability, as demonstrated by an ajax/index.php?uri=1234%5c request. | |||||
CVE-2016-1505 | 2 Microsoft, Radicale | 2 Windows, Radicale | 2024-11-21 | 7.5 HIGH | 10.0 CRITICAL |
The filesystem storage backend in Radicale before 1.1 on Windows allows remote attackers to read or write to arbitrary files via a crafted path, as demonstrated by /c:/file/ignore. | |||||
CVE-2014-2232 | 1 Infoware | 1 Mapsuite | 2024-11-21 | 5.0 MEDIUM | N/A |
Absolute path traversal vulnerability in the MapAPI in Infoware MapSuite before 1.0.36 and 1.1.x before 1.1.49 allows remote attackers to read arbitrary files via unspecified vectors. | |||||
CVE-2024-7738 | 1 Yzane | 1 Markdown Pdf | 2024-09-13 | 1.7 LOW | 7.8 HIGH |
A vulnerability, which was classified as problematic, has been found in yzane vscode-markdown-pdf 1.5.0. Affected by this issue is some unknown functionality of the component Markdown File Handler. The manipulation leads to pathname traversal. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. |