https-proxy-agent是一个HTTP或HTTPS代理的实现。 https-proxy-agent 2.1.1之前版本中存在安全漏洞,该漏洞源于程序没有进行正确的过滤。攻击者可通过向‘auth’参数提交输入(例如:JSON)利用该漏洞造成拒绝服务或造成内存泄露。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| HackerOne | https-proxy-agent node module | Versions before 2.1.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-16191 | cypserver 路径遍历漏洞 | |
| CVE-2017-16179 | dasafio 路径遍历漏洞 | |
| CVE-2017-16180 | serverabc 路径遍历漏洞 | |
| CVE-2017-16181 | wintiwebdev 路径遍历漏洞 | |
| CVE-2017-16182 | serverxxx 路径遍历漏洞 | |
| CVE-2017-16184 | scott-blanch-weather-app 路径遍历漏洞 | |
| CVE-2017-16185 | uekw1511server 路径遍历漏洞 | |
| CVE-2017-16186 | 360class.jansenhm 路径遍历漏洞 | |
| CVE-2017-16187 | open-device 路径遍历漏洞 | |
| CVE-2017-16188 | reecerver 路径遍历漏洞 | |
| CVE-2017-16189 | sly07 路径遍历漏洞 | |
| CVE-2017-16190 | dcdcdcdcdc 路径遍历漏洞 | |
| CVE-2017-16197 | qinserve 路径遍历漏洞 | |
| CVE-2017-16203 | coffe-script模块安全漏洞 | |
| CVE-2017-16202 | cofeescript模块安全漏洞 | |
| CVE-2017-16201 | zjjserver 路径遍历漏洞 | |
| CVE-2017-16200 | uv-tj-demo 路径遍历漏洞 | |
| CVE-2017-16199 | susu-sum 路径遍历漏洞 | |
| CVE-2017-16194 | picard 路径遍历漏洞 | |
| CVE-2017-16192 | getcityapi.yoehoehne 路径遍历漏洞 |
Showing top 20 of 188 CVEs. View all on vendor page → →
No comments yet