CVE-2018-16493
7.5HIGHA path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the server by appending slashes in the URL.
Veröffentlicht: 2/1/2019Aktualisiert: 11/21/2024
Beschreibung
A path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the server by appending slashes in the URL.
KI-AnalyseKI-gestützt
Betroffene Produkte
static-resource-server_projectstatic-resource-server
1.7.2
Referenzen
- https://hackerone.com/reports/432600ExploitThird Party Advisory
- https://hackerone.com/reports/432600ExploitThird Party Advisory