CVE-2015-5688
04.09.2015, 15:59
Directory traversal vulnerability in lib/app/index.js in Geddy before 13.0.8 for Node.js allows remote attackers to read arbitrary files via a ..%2f (dot dot encoded slash) in the PATH_INFO to the default URI.
Vendor | Product | Version |
---|---|---|
geddyjs | geddy | 13.0.7 |
𝑥
= Vulnerable software versions
References