Falhas do tipo CWE-552

327 resultados
CVE-2024-6878CRITICALDirectory Browsing in Eliz Software's PanelEPSS 0.4%CVE-2024-38429HIGHMatrix - CWE-552: Files or Directories Accessible to External PartiesEPSS 0.4%CVE-2025-68719HIGHKAYSUS KS-WR3600 routers with firmware 1.0.5.9.1 mishandle configuration management. Once any user is logged in and maintains an active sessEPSS 0.4%CVE-2026-31216CRITICALThe nexent v1.7.5.2 backend service contains an unauthorized arbitrary storage file deletion vulnerability in its file management API. The DEPSS 0.4%CVE-2024-39581HIGHDell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulnerability. An unautheEPSS 0.4%CVE-2018-25145HIGHMicrohard Systems IPn4G 1.1.0 Configuration Disclosure via Authenticated DownloadEPSS 0.4%CVE-2025-13200MEDIUMSourceCodester Farm Management System exposure of information through directory listingEPSS 0.4%CVE-2024-12917HIGHImproper Access Control in Agito Computer's Health4AllEPSS 0.4%CVE-2025-69990CRITICALphpgurukul News Portal Project V4.1 has an Arbitrary File Deletion Vulnerability in remove_file.php. The parameter file can cause any file tEPSS 0.4%CVE-2024-47106MEDIUMIBM Jazz for Service Management information disclosureEPSS 0.4%CVE-2025-37168HIGHUnauthenticated Arbitrary File Deletion Vulnerability in AOS-8 Operating SystemEPSS 0.4%CVE-2025-22369HIGHMennekes smart/premium charges systems, Arbitrary file download using ReadFile endpointEPSS 0.4%CVE-2026-6418MEDIUMPaperCut NG/MF: Path Traversal in Shared Account SynchronizationEPSS 0.4%CVE-2026-40425MEDIUMMacGregor Voyage Data Recorder (VDR) G4e Files or Directories Accessible to External PartiesEPSS 0.4%CVE-2024-10126MEDIUMLocal file inclusion vulnerability in M-Files ServerEPSS 0.4%CVE-2026-25231HIGHFileRise affected by an Unauthenticated File Read Due to Insufficient Access ControlEPSS 0.4%CVE-2022-34464MEDIUMA vulnerability has been identified in SICAM GridEdge (Classic) (All versions < V2.7.3). The affected application uses an improperly protectEPSS 0.4%CVE-2017-2622MEDIUMAn accessibility flaw was found in the OpenStack Workflow (mistral) service where a service log directory was improperly made world readableEPSS 0.4%CVE-2025-40908CRITICALYAML-LibYAML prior to 0.903.0 for Perl uses 2-args open, allowing existing files to be modifiedEPSS 0.4%CVE-2022-41710MEDIUMMarkdownify version 1.4.1 allows an external attacker to remotely obtain arbitrary local files on any client that attempts to view a malicioEPSS 0.4%