Node.js 8.5.0 >=< 8.6.0 Directory Traversal CVE-2017-14849 Scanner

Details
Stay Up To Date
Asset Type

domain,ip,url

Need Membership

Yes

Asset Verify

Yes

API Support

Yes

Estimate Time (Second)

15

Node.js 8.5.0 >=< 8.6.0 Directory Traversal CVE-2017-14849 Scanner Detail

There is a directory traversal vulnerability in the Node.js, which allow remote attackers to read arbitrary files.

Node.js 8.5.0 before 8.6.0 allows remote attackers to access unintended files, because a change to ".." handling was incompatible with the pathname validation used by unspecified community modules.

Some Advice for Common Problems

  • Keep your Nodejs Up-to-Date.
  • In addition to code update processes, organizations should also deploy WAFs to help identify active attacks.

Need a Full Assesment?

Get help from professional hackers. Learn about our penetration test service now!

Request Pentest Service