Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-6582

Опубликовано: 23 янв. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.4
CVSS3: 9.1

Описание

The Doorkeeper gem before 4.2.0 for Ruby might allow remote attackers to conduct replay attacks or revoke arbitrary tokens by leveraging failure to implement the OAuth 2.0 Token Revocation specification.

РелизСтатусПримечание
artful

not-affected

bionic

not-affected

cosmic

not-affected

devel

not-affected

disco

not-affected

eoan

not-affected

esm-apps-legacy/xenial

released

2.2.1-1ubuntu0.1~esm2
esm-apps/bionic

not-affected

esm-apps/focal

not-affected

esm-apps/jammy

not-affected

Показывать по

EPSS

Процентиль: 91%
0.04723
Низкий

6.4 Medium

CVSS2

9.1 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.1
nvd
больше 9 лет назад

The Doorkeeper gem before 4.2.0 for Ruby might allow remote attackers to conduct replay attacks or revoke arbitrary tokens by leveraging failure to implement the OAuth 2.0 Token Revocation specification.

CVSS3: 9.1
debian
больше 9 лет назад

The Doorkeeper gem before 4.2.0 for Ruby might allow remote attackers ...

CVSS3: 9.1
github
почти 9 лет назад

Doorkeeper is vulnerable to replay attacks

EPSS

Процентиль: 91%
0.04723
Низкий

6.4 Medium

CVSS2

9.1 Critical

CVSS3

Уязвимость CVE-2016-6582