CVE-2018-3714

MEDIUM6.5EPSS 72.6%

Path Traversal in node-srv

發布日:2018/7/26修改日:2023/11/8

描述

Versions of `node-srv` before 2.1.1 are vulnerable to path traversal allowing a remote attacker to read files from the server that uses `node-srv`. ## Recommendation Update to version 2.1.1 or later.

受影響套件(1)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM6.5CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

參考連結(4)