Description
lab6drewfusbyu is an http server. lab6drewfusbyu is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/lab6drewfusbyu
https://nodesecurity.io/advisories/474
Related Vulnerabilities
CVE-2022-3171 Vulnerability in maven package com.google.protobuf:protobuf-kotlin
CVE-2023-47323 Vulnerability in maven package org.silverpeas.core:silverpeas-core-web
CVE-2017-11342 Vulnerability in maven package org.webjars.npm:node-sass
CVE-2021-3189 Vulnerability in npm package slashify
CVE-2021-20289 Vulnerability in maven package org.jboss.resteasy:resteasy-core