General Information

Path Traversal

Variants:
Direct Persistent Session 

Also Known As:
Directory Traversal, Relative Path Traversal

Vector Type:
Attack

Relevance:
Generic

Layer:
Application-Level

Platforms:
Any

Target Type:
Application

Affected Mechanisms:
Input Validation

Invented In:
21/01/1999

Added In:
08/12/2014

Quick Introduction to the Topic:


Vector Operation Method:
Malicious inputs can affect file system access and enable attackers to gain access to restricted content


Direct Variant:

Path Traversal

Variant Title:
Path Traversal

Typical Severity:
Major

Learn More:




Persistent Variant:

Stored Path Traversal

Also Known As:
Persistent Path Traversal

Typical Severity:
Major

Resources:

White Papers:

Learn More:


Session Variant:

Path Traversal via Session Puzzling

Also Known As:
Session Path Traversal

Typical Severity:
Major

Resources:

White Papers:

Learn More: