← volver
CVE-2017-14849

CVE-2017-14849

30Vexday Risk Score

Corrige pronto. Ella tiene exploit funcional público.

ssvc Attendepss 54%
probabilidad de explotación
54%top 1% de las CVE
explotación observada
noninguna fuente lo reporta
Node.js 8.5.0 before 8.6.0 allows remote attackers to access unintended files, because a change to ".." handling was incompatible with the pathname validation used by unspecified community modules.
Productos afectados
n/a · n/a