Описание
desafio is a simple web server. desafio is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url, but is limited to accessing only .html files.
Ссылки
- ExploitThird Party AdvisoryTool Signature
- Third Party AdvisoryTool Signature
- ExploitThird Party AdvisoryTool Signature
- Third Party AdvisoryTool Signature
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:desafio_project:desafio:1.0.0:*:*:*:*:node.js:*:*
cpe:2.3:a:desafio_project:desafio:1.1.0:*:*:*:*:node.js:*:*
EPSS
Процентиль: 67%
0.00533
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-22
CWE-22
Связанные уязвимости
EPSS
Процентиль: 67%
0.00533
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-22
CWE-22