Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2008-5189

Опубликовано: 14 окт. 2008
Источник: redhat
EPSS Низкий

Описание

CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL to the redirect_to function.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=472510rubygems-actionpack: redirect HTTP header injection vulnerability

EPSS

Процентиль: 38%
0.00169
Низкий

Связанные уязвимости

ubuntu
около 17 лет назад

CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL to the redirect_to function.

nvd
около 17 лет назад

CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL to the redirect_to function.

debian
около 17 лет назад

CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remo ...

github
больше 8 лет назад

rails is vulnerable to CRLF injection

EPSS

Процентиль: 38%
0.00169
Низкий