PT-2021-15518 · Unknown · Startserver

An Thien Nguyen

·

Published

2021-08-24

·

Updated

2021-09-02

·

CVE-2021-23430

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions startserver versions all
Description The issue is related to Directory Traversal due to missing sanitization. This allows for potential access to sensitive files and directories.
Recommendations For all versions, consider implementing proper sanitization of user input to prevent Directory Traversal attacks. As a temporary workaround, restrict access to sensitive files and directories until a proper fix is applied. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-23430
GHSA-HQV3-QQ72-78CV
SNYK-JS-STARTSERVER-1296388

Affected Products

Startserver