Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-36651

Опубликовано: 18 янв. 2023
Источник: nvd
CVSS3: 5.5
CVSS3: 7.5
CVSS2: 5.2
EPSS Низкий

Описание

A vulnerability has been found in youngerheart nodeserver and classified as critical. Affected by this vulnerability is an unknown functionality of the file nodeserver.js. The manipulation leads to path traversal. The identifier of the patch is c4c0f0138ab5afbac58e03915d446680421bde28. It is recommended to apply a patch to fix this issue. The identifier VDB-218461 was assigned to this vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nodeserver_project:nodeserver:*:*:*:*:*:*:*:*
Версия до 2020-08-21 (исключая)

EPSS

Процентиль: 30%
0.00108
Низкий

5.5 Medium

CVSS3

7.5 High

CVSS3

5.2 Medium

CVSS2

Дефекты

CWE-22
CWE-22

Связанные уязвимости

CVSS3: 7.5
github
около 3 лет назад

Path Traversal in web-node-server

EPSS

Процентиль: 30%
0.00108
Низкий

5.5 Medium

CVSS3

7.5 High

CVSS3

5.2 Medium

CVSS2

Дефекты

CWE-22
CWE-22