Перейти к содержимому
Noroxi

Записи zeit

9 опубликованных записей вендора zeit.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
100 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

9 записей
  • CVE-2017-16877
    34Наблюдать

    ZEIT Next.js before 2.4.1 has directory traversal under the /_next and /static request namespace, allowing attackers to obtain sensitive inf

    ВысокаяCVSS 7,5Proof of conceptEPSS 14 %

    zeit · next.js17 нояб. 2017 г.

  • CVE-2018-6184
    33Наблюдать

    ZEIT Next.js 4 before 4.2.3 has Directory Traversal under the /_next request namespace.

    ВысокаяCVSS 7,5Proof of conceptEPSS 9 %

    zeit · next.js24 янв. 2018 г.

  • CVE-2019-5417
    31Наблюдать

    A path traversal vulnerability in serve npm package version 7.0.1 allows the attackers to read content of arbitrary files on the remote serv

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    zeit · serve21 мар. 2019 г.

  • CVE-2020-5284
    30Наблюдать

    Directory Traversal in Next.js versions below 9.3.2

    СредняяCVSS 4,3Proof of conceptEPSS 44 %

    zeit · next.js30 мар. 2020 г.

  • CVE-2019-5415
    30Наблюдать

    A bug in handling the ignore files and directories feature in serve 6.5.3 allows an attacker to read a file or list the directory that the v

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    zeit · serve21 мар. 2019 г.

  • CVE-2018-3712
    27Наблюдать

    serve node module before 6.4.9 suffers from a Path Traversal vulnerability due to not handling %2e (.) and %2f (/) and allowing them in path

    СредняяCVSS 6,5Эксплойта нетEPSS 2 %

    zeit · serve6 июн. 2018 г.

  • CVE-2018-18282
    24Наблюдать

    Next.js 7.0.0 and 7.0.1 has XSS via the 404 or 500 /_error page.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    zeit · next.js12 окт. 2018 г.

  • CVE-2018-3718
    21Наблюдать

    serve node module suffers from Improper Handling of URL Encoding by permitting access to ignored files if a filename is URL encoded.

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    zeit · serve6 июн. 2018 г.

  • CVE-2018-3809
    21Наблюдать

    Information exposure through directory listings in serve 6.5.3 allows directory listing and file access even when they have been set to be i

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    zeit · serve1 июн. 2018 г.