Описание
In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with TmpDir.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| esm-infra-legacy/trusty | DNE | |
| esm-infra/focal | not-affected | debian: Windows-specific |
| focal | not-affected | debian: Windows-specific |
| hirsute | ignored | end of life |
| impish | ignored | end of life |
| trusty | ignored | end of standard support |
| trusty/esm | DNE | |
| upstream | not-affected | debian: Windows-specific |
| xenial | ignored | end of standard support |
Показывать по
10
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
CVSS3: 7.5
nvd
больше 4 лет назад
In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with TmpDir.
CVSS3: 7.5
debian
больше 4 лет назад
In Ruby through 3.0 on Windows, a remote attacker can submit a crafted ...
CVSS3: 7.5
github
почти 5 лет назад
Tempfile on Windows path traversal vulnerability
5 Medium
CVSS2
7.5 High
CVSS3