CVE-2017-16190 describes a directory traversal vulnerability in the dcdcdcdcdc static file server. An unauthenticated attacker can exploit this flaw by manipulating URLs with "../" sequences, gaining unauthorized access to the underlying filesystem. This vulnerability carries a CVSS v3.0 score of 7.5 (HIGH), indicating a network-based attack with low complexity and high confidentiality impact. While no public exploits (Metasploit, Nuclei, ExploitDB) are currently documented, and there is minimal community discussion or media coverage, the potential for data exposure remains significant.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.0.0CPE matchmatch criteria | cpe:2.3:a:dcdcdcdcdc_project:dcdcdcdcdc:1.0.0:*:*:*:*:node.js:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.