Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:5899
HistoryMar 08, 2018 - 7:52 a.m.

Directory Traversal

2018-03-0807:52:11
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
3

0.002 Low

EPSS

Percentile

55.6%

node-srv is vulnerable to directory traversal attacks. The vulnerability exists due to the lack of sanitization when handling file paths, allowing the ../ payload to be interpreted and reading files out of the server’s scope.

CPENameOperatorVersion
node-srvle2.1.0
node-srvle2.1.0

0.002 Low

EPSS

Percentile

55.6%