Weaknesses of type CWE-552

334 results

Arquivos ou diretórios acessíveis a terceiros

Ocorre quando arquivos ou diretórios sensíveis ficam expostos com permissões inadequadas, permitindo que usuários não autorizados (locais ou remotos) leiam, modifiquem ou executem conteúdo confidencial. É um erro de configuração de controle de acesso que compromete a confidencialidade e integridade dos dados.

Example

Um servidor web que salva chaves privadas de API ou credenciais de banco de dados em um diretório público (/var/www/html), ou um arquivo de configuração com modo 644 contendo senhas que qualquer usuário do sistema consegue ler. Um atacante consegue recuperar essas informações sensíveis sem autenticação.

How to mitigate

Aplique o princípio do menor privilégio: defina permissões de arquivo (chmod) e ACLs restritivas (apenas quem precisa acessa), armazene dados sensíveis fora da raiz pública do servidor web, use variáveis de ambiente ou cofres de secrets para credenciais, e audite regularmente permissões e propriedade de arquivos críticos.

CVE-2020-17519CRITICALApache Flink directory traversal attack: reading remote files through the REST APIEPSS 97.9%KEVCVE-2025-11371HIGHGladinet CentreStack and TrioFox Local File Inclusion FlawEPSS 92.1%KEVCVE-2023-50164Apache Struts: File upload component had a directory traversal vulnerabilityEPSS 80.8%CVE-2016-3715MEDIUMThe EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to delete arbitrary files via a crafted imEPSS 75.4%KEVCVE-2020-15175HIGHUnauthenticated File Deletion in GLPIEPSS 71.4%CVE-2021-39316HIGHZoomSounds <= 6.45 Unauthenticated Directory Traversal and Sensitive Information DislosureEPSS 65.8%CVE-2023-2766MEDIUMWeaver OA jx2_config.ini file accessEPSS 54.2%CVE-2024-39931CRITICALGogs through 0.13.0 allows deletion of internal files.EPSS 52.7%CVE-2024-53676CRITICALA directory traversal vulnerability in Hewlett Packard Enterprise Insight Remote Support may allow remote code execution.EPSS 51.3%CVE-2017-16651HIGHRoundcube Webmail before 1.1.10, 1.2.x before 1.2.7, and 1.3.x before 1.3.3 allows unauthorized access to arbitrary files on the host's fileEPSS 36.9%KEVCVE-2025-61734HIGHApache Kylin: improper restriction of file readEPSS 18.4%CVE-2024-6209CRITICALunauthorized file accessEPSS 17.2%CVE-2024-2056CRITICALArtica Proxy Loopback Services Remotely Accessible UnauthenticatedEPSS 16.7%CVE-2026-25137CRITICALNixOs Odoo database and filestore publicly accessible with default odoo configurationEPSS 9.5%CVE-2022-0656uDraw < 3.3.3 - Unauthenticated Arbitrary File AccessEPSS 7.9%CVE-2025-32819HIGHA vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges to bypass the path traversal checks and delete EPSS 6.8%CVE-2024-6911HIGHUnauthenticated Local File InclusionEPSS 4.9%CVE-2022-41343HIGHregisterFont in FontMetrics.php in Dompdf before 2.0.1 allows remote file inclusion because a URI validation failure does not halt font regiEPSS 4.4%CVE-2023-34834A Directory Browsing vulnerability in MCL-Net version 4.3.5.8788 webserver running on default port 5080, allows attackers to gain sensitive EPSS 4.0%CVE-2023-36664Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefixEPSS 3.2%