Description
The html-pages node module contains a path traversal vulnerabilities that allows an attacker to read any file from the server with cURL.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-0454 | The html-pages node module contains a path traversal vulnerabilities that allows an attacker to read any file from the server with cURL. |
Github GHSA |
GHSA-fm87-46vv-jqrr | Path Traversal in html-pages |
References
History
No history.
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-09-16T22:55:33.316Z
Reserved: 2017-12-28T00:00:00.000Z
Link: CVE-2018-3744
No data.
Status : Modified
Published: 2018-05-29T20:29:02.720
Modified: 2024-11-21T04:05:59.600
Link: CVE-2018-3744
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA