CVE-2018-16493
7.5HIGHA path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the server by appending slashes in the URL.
Publicado: 2/1/2019Atualizado: 11/21/2024
Descrição
A path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the server by appending slashes in the URL.
Análise IADesenvolvido por IA
Produtos Afetados
static-resource-server_projectstatic-resource-server
1.7.2
Referências
- https://hackerone.com/reports/432600ExploitThird Party Advisory
- https://hackerone.com/reports/432600ExploitThird Party Advisory