High severity7.5NVD Advisory· Published Sep 30, 2018· Updated Jun 17, 2026
CVE-2018-17785
CVE-2018-17785
Description
In blynk-server in Blynk before 0.39.7, Directory Traversal exists via a ../ in a URI that has /static or /static/js at the beginning, as demonstrated by reading the /etc/passwd file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
com.github.blynkkk:blynk-serverMaven | < 0.39.7 | 0.39.7 |
Affected products
1Patches
Vulnerability mechanics
References
4- github.com/blynkkk/blynk-server/issues/1256nvdExploitIssue TrackingThird Party AdvisoryWEB
- github.com/advisories/GHSA-4r64-wf76-c53pghsaADVISORY
- github.com/blynkkk/blynk-server/releases/tag/v0.39.7nvdVendor AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2018-17785ghsaADVISORY
News mentions
0No linked articles in our index yet.