CVE-2018-16493
7.5HIGHA path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the server by appending slashes in the URL.
Publicado: 2/1/2019Actualizado: 11/21/2024
Descripción
A path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the server by appending slashes in the URL.
Análisis IAImpulsado por IA
Productos Afectados
static-resource-server_projectstatic-resource-server
1.7.2
Referencias
- https://hackerone.com/reports/432600ExploitThird Party Advisory
- https://hackerone.com/reports/432600ExploitThird Party Advisory