Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
directory pro vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2008-1117
Directory traversal vulnerability in the Notes (aka Flash Notes or instant messages) feature in tb2ftp.dll in Timbuktu Pro 8.6.5 for Windows, and possibly 8.7 for Mac OS X, allows remote malicious users to upload files to arbitrary locations via a destination filename with a \ (b...
Netopia Timbuktu Pro 8.6.5
3 EDB exploits
9.3
CVSSv2
CVE-2021-22797
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal) vulnerability exists that could cause malicious script to be deployed in an unauthorized location and may result in code execution on the engineering workstation when a malicious project ...
Schneider-electric Ecostruxure Control Expert
Schneider-electric Ecostruxure Process Expert
Schneider-electric Remoteconnect -
9.3
CVSSv2
CVE-2018-0649
Untrusted search path vulnerability in the installers of multiple Canon IT Solutions Inc. software programs (ESET Smart Security Premium, ESET Internet Security, ESET Smart Security, ESET NOD32 Antivirus, DESlock+ Pro, and CompuSec (all programs except packaged ones)) allows an m...
Eset Internet Security -
Eset Smart Security -
Eset Nod32 Antivirus -
Eset Deslock\\+ Pro -
Eset Smart Security Premium -
Eset Compusec -
9.3
CVSSv2
CVE-2017-3189
The dotCMS administration panel, versions 3.7.1 and previous versions, "Push Publishing" feature in Enterprise Pro is vulnerable to arbitrary file upload. When "Bundle" tar.gz archives uploaded to the Push Publishing feature are decompressed, there are no chec...
Dotcms Dotcms
9.3
CVSSv2
CVE-2017-2214
Untrusted search path vulnerability in AppCheck and AppCheck Pro prior to version 2.0.1.15 allows an malicious user to execute arbitrary code via a specially crafted executable file in an unspecified directory.
Jiransoft Appcheck
Jiransoft Appcheck Pro
9.3
CVSSv2
CVE-2011-4783
The IDAPython plugin prior to 1.5.2.3 in IDA Pro allows user-assisted remote malicious users to execute arbitrary code via a crafted IDB file, related to improper handling of certain swig_runtime_data files in the current working directory.
Google Idapython
Google Idapython 1.5.1
Google Idapython 1.4.2
Google Idapython 1.4.1
Google Idapython 1.4.0
Google Idapython 1.2.0
Google Idapython 1.5.0
Google Idapython 1.4.3
9.3
CVSSv2
CVE-2010-4153
Directory traversal vulnerability in CrossFTP Pro 1.65a, and probably earlier, allows remote FTP servers to write arbitrary files via a "..\" (dot dot backslash) in a filename.
Crossftp Crossftp Pro 1.51
Crossftp Crossftp Pro 1.50
Crossftp Crossftp Pro 1.36
Crossftp Crossftp Pro 1.35
Crossftp Crossftp Pro 1.27
Crossftp Crossftp Pro 1.26
Crossftp Crossftp Pro 1.19
Crossftp Crossftp Pro 1.18
Crossftp Crossftp Pro
Crossftp Crossftp Pro 1.40
Crossftp Crossftp Pro 1.39
Crossftp Crossftp Pro 1.32
Crossftp Crossftp Pro 1.31
Crossftp Crossftp Pro 1.23
Crossftp Crossftp Pro 1.22
Crossftp Crossftp Pro 1.15
Crossftp Crossftp Pro 1.14
Crossftp Crossftp Pro 1.53
Crossftp Crossftp Pro 1.52
Crossftp Crossftp Pro 1.38
Crossftp Crossftp Pro 1.37
Crossftp Crossftp Pro 1.30
9.3
CVSSv2
CVE-2008-6734
Directory traversal vulnerability in Public/index.php in Keller Web Admin CMS 0.94 Pro allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the action parameter.
Keller Web Admin Kwa 0.94
2 EDB exploits
9.3
CVSSv2
CVE-2008-5175
Directory traversal vulnerability in the FTP client in AceFTP Freeware 3.80.3 and AceFTP Pro 3.80.3 allows remote FTP servers to create or overwrite arbitrary files via a .. (dot dot) in a response to a LIST command, a related issue to CVE-2002-1345.
Visicommedia Aceftp 3.80.3
1 EDB exploit
9.3
CVSSv2
CVE-2008-2779
Directory traversal vulnerability in GlobalSCAPE CuteFTP Home 8.2.0 Build 02.26.2008.4 and CuteFTP Pro 8.2.0 Build 04.01.2008.1 allows remote FTP servers to create or overwrite arbitrary files via ..\ (dot dot backslash) sequences in responses to LIST commands, a related issue to...
Globalscape Cuteftp 8.2.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »