Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-59m9-8c72-5426

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.

The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.

EPSS

Процентиль: 19%
0.00059
Низкий

Связанные уязвимости

ubuntu
больше 20 лет назад

The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.

redhat
почти 21 год назад

The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.

nvd
больше 20 лет назад

The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.

debian
больше 20 лет назад

The FileStore capability in CGI::Session for Ruby before 1.8.1, and po ...

EPSS

Процентиль: 19%
0.00059
Низкий