CVE-2017-16020
04.06.2018, 19:29
Summit is a node web framework. When using the PouchDB driver in the module, Summit 0.1.0 and later allows an attacker to execute arbitrary commands via the collection name.
Vendor | Product | Version |
---|---|---|
summit_project | summit | 0.1.0 ≤ 𝑥 ≤ 0.1.21 |
𝑥
= Vulnerable software versions