Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-3482

Опубликовано: 07 июл. 2014
Источник: debian
EPSS Низкий

Описание

SQL injection vulnerability in activerecord/lib/active_record/connection_adapters/postgresql_adapter.rb in the PostgreSQL adapter for Active Record in Ruby on Rails 2.x and 3.x before 3.2.19 allows remote attackers to execute arbitrary SQL commands by leveraging improper bitstring quoting.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ruby-activerecord-2.3removedpackage
ruby-activerecord-2.3end-of-lifewheezypackage
ruby-activerecord-3.2removedpackage
railsfixed2:4.1.4-1package
railsnot-affectedwheezypackage
railsend-of-lifesqueezepackage
rails-3.2fixed3.2.19-1package
rails-4.0removedpackage

EPSS

Процентиль: 81%
0.01531
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

SQL injection vulnerability in activerecord/lib/active_record/connection_adapters/postgresql_adapter.rb in the PostgreSQL adapter for Active Record in Ruby on Rails 2.x and 3.x before 3.2.19 allows remote attackers to execute arbitrary SQL commands by leveraging improper bitstring quoting.

redhat
больше 11 лет назад

SQL injection vulnerability in activerecord/lib/active_record/connection_adapters/postgresql_adapter.rb in the PostgreSQL adapter for Active Record in Ruby on Rails 2.x and 3.x before 3.2.19 allows remote attackers to execute arbitrary SQL commands by leveraging improper bitstring quoting.

nvd
больше 11 лет назад

SQL injection vulnerability in activerecord/lib/active_record/connection_adapters/postgresql_adapter.rb in the PostgreSQL adapter for Active Record in Ruby on Rails 2.x and 3.x before 3.2.19 allows remote attackers to execute arbitrary SQL commands by leveraging improper bitstring quoting.

github
больше 8 лет назад

SQL Injection in Active Record

EPSS

Процентиль: 81%
0.01531
Низкий