|
|
|
|
CWE-38 Individual Dictionary Definition (Draft 9)
Weakness ID
| Status: Draft 38 (Weakness Variant) | | Description | Summary A software system that accepts input in the form of a backslash absolute path
('\absolute\pathname\here') without appropriate validation can allow an attacker to traverse the
file system to unintended locations or access arbitrary files. | | Potential Mitigations | see the vulnerability category "Path Traversal" | | Observed Examples | | | Relationships | | | Source Taxonomies | PLOVER - \absolute\pathname\here ('backslash absolute path') | | Applicable Platforms | All |
|