GHSA-jpjp-vxv6-59hm
HIGHCVE-2017-16187Affected versions of open-device resolve relative file paths, resulting in a directory traversal vulnerability. A malicious actor can use this vulnerability to access files outside of the intended directory root, which may result in the disclosure of private files on the vulnerable system.
- Affected
- <= 4.0.1
- Fixed in
- not stated
- Weakness
- CWE-22
- Published
- 2018-07-23
- Source
- github