Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'cwe-35'

View all threats tagged with 'cwe-35'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cwe-35

Threats Tagged 'cwe-35'

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-52707: CWE-35 Path Traversal: '.../...//' in Mikado-Themes KastellCVE-2026-52707
0

CVE-2026-52707 is a high-severity vulnerability in Mikado-Themes Kastell versions up to and including 2.0. It allows unauthenticated attackers to perform local file inclusion via a path traversal flaw. This can lead to full confidentiality, integrity, and availability compromise of the affected system. No official patch or remediation guidance is currently available from the vendor.

Join the discussion
CVE-2026-52703: CWE-35 Path Traversal: '.../...//' in Ninja Team FastDupCVE-2026-52703
0

Unauthenticated Path Traversal in FastDup <= 2.7.2 versions.

Join the discussion
CVE-2026-49112: CWE-35 Path Traversal: '.../...//' in Tammersoft Shared FilesCVE-2026-49112
0

CVE-2026-49112 is a high-severity unauthenticated path traversal vulnerability affecting Tammersoft Shared Files versions up to and including 1.7.64. This vulnerability allows an attacker to access files outside the intended directory by exploiting path traversal sequences such as '.../...//'. The vulnerability does not require authentication and impacts confidentiality without affecting integrity or availability.

Join the discussion
CVE-2026-42661: CWE-35 Path Traversal: '.../...//' in aguilatechnologies WP Customer AreaCVE-2026-42661
0

A path traversal vulnerability (CWE-35) exists in WP Customer Area versions up to and including 8.3.4. This vulnerability allows a user with limited privileges to exploit custom role functionality to perform path traversal attacks. The vulnerability has a high severity with a CVSS score of 8.8, indicating it can lead to high impact on confidentiality, integrity, and availability.

Join the discussion
CVE-2026-40128: CWE-35: Path Traversal in SAP_SE SAP NetWeaver Application Server Java (Web Container)CVE-2026-40128
0

CVE-2026-40128 is a critical path traversal vulnerability in SAP NetWeaver Application Server Java (Web Container). It allows an unauthenticated attacker to craft a malicious HTTP logon request that manipulates file inclusion parameters. This manipulation enables the attacker to traverse directories and process arbitrary files on the local system. Successful exploitation could lead to viewing or modifying sensitive information or causing denial of service by making parts of the system unavailable.

Join the discussion
CVE-2026-24315: CWE-35: Path Traversal in SAP_SE SAP Fiori (launchpad)CVE-2026-24315
0

CVE-2026-24315 is a path traversal vulnerability in SAP Fiori Launchpad that allows attackers to craft malicious URLs triggering arbitrary service calls. Exploitation requires advanced system knowledge and user interaction. The vulnerability impacts confidentiality and integrity at a low level, with no effect on availability. The CVSS score is 4.2, indicating medium severity. No official patch or remediation guidance is currently available from the vendor.

Join the discussion

Showing 1 to 6 of 6 results

Filters:Tag: cwe-35
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses