Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-5189

Опубликовано: 21 нояб. 2008
Источник: debian
EPSS Низкий

Описание

CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL to the redirect_to function.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
railsfixed2.1.0-6package

EPSS

Процентиль: 39%
0.00169
Низкий

Связанные уязвимости

ubuntu
около 17 лет назад

CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL to the redirect_to function.

redhat
около 17 лет назад

CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL to the redirect_to function.

nvd
около 17 лет назад

CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL to the redirect_to function.

github
около 8 лет назад

rails is vulnerable to CRLF injection

EPSS

Процентиль: 39%
0.00169
Низкий