CVE Database
/

CVE-2018-16493

Back to search

CVE-2018-16493

Published: Feb 1, 2019

Modified: Aug 5, 2024

PUBLISHED

Description

A path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the server by appending slashes in the URL.

VendorProductVersions

HackerOne

static-resource-server

affected
1.7.2

Weaknesses (CWE)

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now