Vulnerabilities > Joyent > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-10-31 CVE-2017-10940 Unrestricted Upload of File with Dangerous Type vulnerability in Joyent Triton Datacenter
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Joyent Smart Data Center prior to [email protected] (e469cf49-4de3-4658-8419-ab42837916ad).
network
low complexity
joyent CWE-434
critical
9.0
2014-12-11 CVE-2014-7192 Code Injection vulnerability in Joyent Node.Js 0.6.1/0.6.3
Eval injection vulnerability in index.js in the syntax-error package before 1.1.1 for Node.js 0.10.x, as used in IBM Rational Application Developer and other products, allows remote attackers to execute arbitrary code via a crafted file.
network
low complexity
joyent CWE-94
critical
10.0