Description
dgard8.lab6 is a static file server. dgard8.lab6 is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/dgard8.lab6
https://nodesecurity.io/advisories/444
Related Vulnerabilities
CVE-2017-16157 Vulnerability in npm package censorify.tanisjr
CVE-2020-28449 Vulnerability in npm package decal
CVE-2021-23820 Vulnerability in npm package json-pointer
CVE-2023-40812 Vulnerability in maven package org.opencrx:opencrx-core-models
CVE-2022-43430 Vulnerability in maven package com.compuware.jenkins:compuware-topaz-for-total-test