CAPEC-597: Absolute Path Traversal

ID CAPEC-597
Status Draft

An adversary with access to file system resources, either directly or via application logic, will use various file absolute paths and navigation mechanisms such as ".." to extend their range of access to inappropriate areas of the file system. The goal of the adversary is to access directories and files that are intended to be restricted from their access.

https://capec.mitre.org/data/definitions/597.html

Weaknesses

# ID Name Type
CWE-36 Absolute Path Traversal weakness
Loading...