Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-4111

Опубликовано: 14 авг. 2006
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

Ruby on Rails before 1.1.5 allows remote attackers to execute Ruby code with "severe" or "serious" impact via a File Upload request with an HTTP header that modifies the LOAD_PATH variable, a different vulnerability than CVE-2006-4112.

РелизСтатусПримечание
dapper

released

1.1.2-1ubuntu0.1
devel

not-affected

edgy

not-affected

feisty

not-affected

gutsy

not-affected

upstream

released

1.1.5

Показывать по

Ссылки на источники

EPSS

Процентиль: 82%
0.01893
Низкий

7.5 High

CVSS2

Связанные уязвимости

nvd
около 19 лет назад

Ruby on Rails before 1.1.5 allows remote attackers to execute Ruby code with "severe" or "serious" impact via a File Upload request with an HTTP header that modifies the LOAD_PATH variable, a different vulnerability than CVE-2006-4112.

debian
около 19 лет назад

Ruby on Rails before 1.1.5 allows remote attackers to execute Ruby cod ...

github
почти 8 лет назад

Ruby on Rails vulnerable to code injection

EPSS

Процентиль: 82%
0.01893
Низкий

7.5 High

CVSS2