Description
dgard8.lab6 is a static file server. dgard8.lab6 is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/dgard8.lab6
https://nodesecurity.io/advisories/444
Related Vulnerabilities
CVE-2021-23341 Vulnerability in maven package org.webjars:prismjs
CVE-2018-16487 Vulnerability in maven package org.webjars.bower:lodash
CVE-2022-39381 Vulnerability in npm package muhammara
CVE-2023-33202 Vulnerability in maven package org.bouncycastle:bc-fips-debug
CVE-2022-36010 Vulnerability in npm package react-editable-json-tree