CVE-2018-16493
7.5HIGHA path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the server by appending slashes in the URL.
Published: 2/1/2019Updated: 11/21/2024
Description
A path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the server by appending slashes in the URL.
AI AnalysisPowered by AI
Affected Products
static-resource-server_projectstatic-resource-server
1.7.2
References
- https://hackerone.com/reports/432600ExploitThird Party Advisory
- https://hackerone.com/reports/432600ExploitThird Party Advisory