İçeriğe atla
Noroxi

zeit kayıtları

zeit üreticisine ait 9 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%100
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

9 kayıt
  • CVE-2017-16877
    34İzleyin

    ZEIT Next.js before 2.4.1 has directory traversal under the /_next and /static request namespace, allowing attackers to obtain sensitive inf

    YüksekCVSS 7,5Kavram kanıtıEPSS %14

    zeit · next.js17 Kas 2017

  • CVE-2018-6184
    33İzleyin

    ZEIT Next.js 4 before 4.2.3 has Directory Traversal under the /_next request namespace.

    YüksekCVSS 7,5Kavram kanıtıEPSS %9

    zeit · next.js24 Oca 2018

  • CVE-2019-5417
    31İzleyin

    A path traversal vulnerability in serve npm package version 7.0.1 allows the attackers to read content of arbitrary files on the remote serv

    YüksekCVSS 7,5İstismar yokEPSS %2

    zeit · serve21 Mar 2019

  • CVE-2020-5284
    30İzleyin

    Directory Traversal in Next.js versions below 9.3.2

    OrtaCVSS 4,3Kavram kanıtıEPSS %44

    zeit · next.js30 Mar 2020

  • CVE-2019-5415
    30İzleyin

    A bug in handling the ignore files and directories feature in serve 6.5.3 allows an attacker to read a file or list the directory that the v

    YüksekCVSS 7,5İstismar yokEPSS %2

    zeit · serve21 Mar 2019

  • CVE-2018-3712
    27İzleyin

    serve node module before 6.4.9 suffers from a Path Traversal vulnerability due to not handling %2e (.) and %2f (/) and allowing them in path

    OrtaCVSS 6,5İstismar yokEPSS %2

    zeit · serve6 Haz 2018

  • CVE-2018-18282
    24İzleyin

    Next.js 7.0.0 and 7.0.1 has XSS via the 404 or 500 /_error page.

    OrtaCVSS 6,1İstismar yokEPSS %1

    zeit · next.js12 Eki 2018

  • CVE-2018-3718
    21İzleyin

    serve node module suffers from Improper Handling of URL Encoding by permitting access to ignored files if a filename is URL encoded.

    OrtaCVSS 5,3İstismar yokEPSS %1

    zeit · serve6 Haz 2018

  • CVE-2018-3809
    21İzleyin

    Information exposure through directory listings in serve 6.5.3 allows directory listing and file access even when they have been set to be i

    OrtaCVSS 5,3İstismar yokEPSS %1

    zeit · serve1 Haz 2018