Description
dmmcquay.lab6 is a REST server. dmmcquay.lab6 is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/dmmcquay.lab6
https://nodesecurity.io/advisories/426
Related Vulnerabilities
CVE-2020-7696 Vulnerability in npm package react-native-fast-image
CVE-2023-49210 Vulnerability in npm package openssl
CVE-2020-8147 Vulnerability in npm package utils-extend
CVE-2019-18212 Vulnerability in maven package org.lsp4xml:org.eclipse.lsp4xml.extensions.web
CVE-2020-28052 Vulnerability in maven package bouncycastle:bcprov-jdk14