Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2004-0755

Опубликовано: 20 окт. 2004
Источник: nvd
CVSS2: 2.1
EPSS Низкий

Описание

The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:yukihiro_matsumoto:ruby:1.6:*:*:*:*:*:*:*
cpe:2.3:a:yukihiro_matsumoto:ruby:1.8:*:*:*:*:*:*:*

EPSS

Процентиль: 19%
0.00059
Низкий

2.1 Low

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
больше 20 лет назад

The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.

redhat
почти 21 год назад

The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.

debian
больше 20 лет назад

The FileStore capability in CGI::Session for Ruby before 1.8.1, and po ...

github
около 3 лет назад

The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.

EPSS

Процентиль: 19%
0.00059
Низкий

2.1 Low

CVSS2

Дефекты

NVD-CWE-Other