Eval injection vulnerability in index.js in the syntax-error package before 1.1.1 for Node.js 0.10.x, as used in IBM Rational Application Developer and other products, allows remote attackers to execute arbitrary code via a crafted file.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2014-12-11T11:00:00

Updated: 2017-09-07T15:57:01

Reserved: 2014-09-26T00:00:00


Link: CVE-2014-7192

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2014-12-11T11:59:11.633

Modified: 2017-09-08T01:29:15.653


Link: CVE-2014-7192

JSON object: View

cve-icon Redhat Information

No data.

CWE