CWE-552

Files or Directories Accessible to External Parties

Parent: CWE-668 - Exposure of Resource to Wrong Sphere

The product makes files or directories accessible to unauthorized actors, even though they should not be.

483 vulnerabilities with CWE-552
CVE-2016-10829 MEDIUM
cPanel <55.9999.141 - Info Disclosure
CVSS 6.5
CVE-2016-3715 MEDIUM KEV
ImageMagick <6.9.3-10, <7.0.1-1 - Remote Code Execution
CVSS 5.5
CVE-2015-4715 MEDIUM
ownCloud Server <6.0.8, <7.0.6, <8.0.4 - Info Disclosure
CVSS 4.9
CVE-2015-5211 CRITICAL
Spring Framework <4.2.1, 3.2.14 - RFD
CVSS 9.6
CVE-2015-1350 MEDIUM
Linux Kernel 3.0-3.19.7 - Local Denial of Service via VFS setattr Capability Stripping
CVSS 5.5
CVE-2009-10005 HIGH
ContentKeeper Web Appliance <125.10 - Path Traversal
CVE-2009-3597
Digitaldesign CMS 0.1 - Info Disclosure
CVE-2005-1835
nextweb (i)site - Unauthenticated Sensitive Information Exposure via Direct Database Request
Details
Vulnerabilities 483