# | POC 描述 | 源链接 | 神龙链接 |
---|---|---|---|
1 | Node.js before 8.6.0 allows remote attackers to access unintended files because a change to ".." handling is incompatible with the pathname validation used by unspecified community modules. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2017/CVE-2017-14849.yaml | POC详情 |
2 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E4%B8%AD%E9%97%B4%E4%BB%B6%E6%BC%8F%E6%B4%9E/Node.js%20%E7%9B%AE%E5%BD%95%E7%A9%BF%E8%B6%8A%E6%BC%8F%E6%B4%9E%20CVE-2017-14849.md | POC详情 |
3 | https://github.com/vulhub/vulhub/blob/master/node/CVE-2017-14849/README.md | POC详情 |