Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-0448

Опубликовано: 21 фев. 2011
Источник: debian

Описание

Ruby on Rails 3.0.x before 3.0.4 does not ensure that arguments to the limit function specify integer values, which makes it easier for remote attackers to conduct SQL injection attacks via a non-numeric argument.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
railsnot-affectedpackage

Связанные уязвимости

ubuntu
почти 15 лет назад

Ruby on Rails 3.0.x before 3.0.4 does not ensure that arguments to the limit function specify integer values, which makes it easier for remote attackers to conduct SQL injection attacks via a non-numeric argument.

nvd
почти 15 лет назад

Ruby on Rails 3.0.x before 3.0.4 does not ensure that arguments to the limit function specify integer values, which makes it easier for remote attackers to conduct SQL injection attacks via a non-numeric argument.

github
больше 8 лет назад

activerecord vulnerable to SQL Injection