Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-0541

Опубликовано: 27 мая 2010
Источник: redhat
CVSS2: 2.6

Описание

Cross-site scripting (XSS) vulnerability in the WEBrick HTTP server in Ruby in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, allows remote attackers to inject arbitrary web script or HTML via a crafted URI that triggers a UTF-7 error page.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6rubyNot affected
Red Hat Enterprise Linux 4rubyFixedRHSA-2011:090828.06.2011
Red Hat Enterprise Linux 5rubyFixedRHSA-2011:090928.06.2011

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=587731Ruby WEBrick javascript injection flaw

2.6 Low

CVSS2

Связанные уязвимости

ubuntu
около 15 лет назад

Cross-site scripting (XSS) vulnerability in the WEBrick HTTP server in Ruby in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, allows remote attackers to inject arbitrary web script or HTML via a crafted URI that triggers a UTF-7 error page.

nvd
около 15 лет назад

Cross-site scripting (XSS) vulnerability in the WEBrick HTTP server in Ruby in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, allows remote attackers to inject arbitrary web script or HTML via a crafted URI that triggers a UTF-7 error page.

debian
около 15 лет назад

Cross-site scripting (XSS) vulnerability in the WEBrick HTTP server in ...

github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in the WEBrick HTTP server in Ruby in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, allows remote attackers to inject arbitrary web script or HTML via a crafted URI that triggers a UTF-7 error page.

oracle-oval
почти 14 лет назад

ELSA-2011-0909: ruby security update (MODERATE)

2.6 Low

CVSS2