Description
uv-tj-demo is a static file server. uv-tj-demo is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://nodesecurity.io/advisories/428
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/uv-tj-demo
Related Vulnerabilities
CVE-2023-30530 Vulnerability in maven package org.jenkins-ci.plugins:consul-kv-builder
CVE-2017-6056 Vulnerability in maven package org.apache.tomcat:tomcat-coyote
CVE-2021-32827 Vulnerability in maven package org.mock-server:mockserver-core
CVE-2016-10577 Vulnerability in npm package ibm_db
CVE-2017-5662 Vulnerability in maven package org.eclipse.birt.runtime.3_7_1:org.apache.batik.dom