Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2006-4111

Опубликовано: 14 авг. 2006
Источник: debian
EPSS Низкий

Описание

Ruby on Rails before 1.1.5 allows remote attackers to execute Ruby code with "severe" or "serious" impact via a File Upload request with an HTTP header that modifies the LOAD_PATH variable, a different vulnerability than CVE-2006-4112.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
railsfixed1.1.5-1package

EPSS

Процентиль: 83%
0.01893
Низкий

Связанные уязвимости

ubuntu
около 19 лет назад

Ruby on Rails before 1.1.5 allows remote attackers to execute Ruby code with "severe" or "serious" impact via a File Upload request with an HTTP header that modifies the LOAD_PATH variable, a different vulnerability than CVE-2006-4112.

nvd
около 19 лет назад

Ruby on Rails before 1.1.5 allows remote attackers to execute Ruby code with "severe" or "serious" impact via a File Upload request with an HTTP header that modifies the LOAD_PATH variable, a different vulnerability than CVE-2006-4112.

github
почти 8 лет назад

Ruby on Rails vulnerable to code injection

EPSS

Процентиль: 83%
0.01893
Низкий