CWE-552

Files or Directories Accessible to External Parties

Parent: CWE-668 - Exposure of Resource to Wrong Sphere

The product makes files or directories accessible to unauthorized actors, even though they should not be.

453 vulnerabilities with CWE-552
CVE-2023-52112 MEDIUM
Wallpaper Service Module - Info Disclosure
CVSS 5.3
CVE-2023-6266 HIGH
WordPress Backup Migration <1.3.6 - Info Disclosure
CVSS 7.5
CVE-2023-6114 HIGH
Duplicator <1.5.7.1-4.5.14.2 - Info Disclosure
CVSS 7.5
CVE-2023-48661 MEDIUM
Dell vApp Manager <9.2.4 - Info Disclosure
CVSS 4.9
CVE-2023-5907 MEDIUM
WordPress File Manager <6.3 - Privilege Escalation
CVSS 6.5
CVE-2023-50164 CRITICAL
Apache Struts < 2.5.33 - Remote Code Execution
CVSS 9.8
CVE-2023-6375 MEDIUM
Tyler Technologies Court Case Management Plus - Info Disclosure
CVSS 5.3
CVE-2023-39545 HIGH
CLUSTERPRO X <5.1 - Command Injection
CVSS 8.8
CVE-2023-47612 MEDIUM
Telit Cinterion - Info Disclosure
CVSS 6.8
CVE-2023-42534 MEDIUM
ChooserActivity <SMR Nov-2023 Release 1 - Info Disclosure
CVSS 6.3
CVE-2023-4930 MEDIUM
Front End PM WP <11.4.3 - Info Disclosure
CVSS 6.5
CVE-2023-31017 HIGH
NVIDIA GPU Display Driver for Windows - Code Injection
CVSS 7.8
CVE-2023-5099 HIGH
WordPress <=2.7 - Local File Inclusion
CVSS 8.8
CVE-2023-5199 CRITICAL
PHP to Page <0.3 - RCE
CVSS 9.9
CVE-2023-26580 HIGH
IDAttend's IDWeb <3.1.013 - Info Disclosure
CVSS 7.5
CVE-2023-33517 HIGH
carRental 1.0 - Info Disclosure
CVSS 7.5
CVE-2023-4933 MEDIUM
WP Job Openings <3.4.3 - Info Disclosure
CVSS 5.3
CVE-2023-3155 HIGH
WordPress Gallery Plugin <3.39 - Info Disclosure
CVSS 7.2
CVE-2023-5101 MEDIUM
SICK APU - Files Accessible
CVSS 5.3
CVE-2023-23366 HIGH
Qnap Music Station < 5.3.22 - Path Traversal
CVSS 7.7
CVE-2023-23365 HIGH
Qnap Music Station < 5.3.22 - Path Traversal
CVSS 7.7
CVE-2023-45160 HIGH
1e 1E Client - Resource File Subversion
CVSS 8.8
CVE-2023-20235 MEDIUM
Cisco IOx - Privilege Escalation
CVSS 6.5
CVE-2023-5297 LOW
Xinhu RockOA 2.3.2 - Info Disclosure
CVSS 3.7
CVE-2023-43856 HIGH
Dreamer CMS v4.1.3 - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 453