CWE-37—Path Traversal: '/absolute/pathname/here'
PUBLISHEDweakness record
released 2006-07-19 · last modified 2025-12-11
Metadata
名称
Path Traversal: '/absolute/pathname/here'
描述
The product accepts input in the form of a slash absolute path ('/absolute/pathname/here') without appropriate validation, which can allow an attacker to traverse the file system to unintended locations or access arbitrary files.