Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

fstec логотип

BDU:2024-06602

почти 4 года назад

Уязвимость файла actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb интерпретатора Ruby, позволяющая нарушителю проводить межсайтовый скриптинг

CVSS3: 5.4
EPSS: Низкий
redos логотип

ROS-20240827-18

почти 2 года назад

Уязвимость rubygem-actionpack

CVSS3: 5.4
EPSS: Низкий
redos логотип

ROS-20240827-03

почти 2 года назад

Уязвимость ruby

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2022-3704

почти 4 года назад

A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 3.5
EPSS: Низкий
redhat логотип

CVE-2022-3704

почти 4 года назад

A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2022-3704

почти 4 года назад

A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2022-3704

почти 4 года назад

A vulnerability classified as problematic has been found in Ruby on Ra ...

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-9chr-4fjh-5rgw

почти 4 года назад

Cross-site Scripting in actionpack

CVSS3: 3.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-06602

Уязвимость файла actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb интерпретатора Ruby, позволяющая нарушителю проводить межсайтовый скриптинг

CVSS3: 5.4
1%
Низкий
почти 4 года назад
redos логотип
ROS-20240827-18

Уязвимость rubygem-actionpack

CVSS3: 5.4
1%
Низкий
почти 2 года назад
redos логотип
ROS-20240827-03

Уязвимость ruby

CVSS3: 5.4
1%
Низкий
почти 2 года назад
ubuntu логотип
CVE-2022-3704

A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 3.5
1%
Низкий
почти 4 года назад
redhat логотип
CVE-2022-3704

A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 5.4
1%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-3704

A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 3.5
1%
Низкий
почти 4 года назад
debian логотип
CVE-2022-3704

A vulnerability classified as problematic has been found in Ruby on Ra ...

CVSS3: 3.5
1%
Низкий
почти 4 года назад
github логотип
GHSA-9chr-4fjh-5rgw

Cross-site Scripting in actionpack

CVSS3: 3.5
1%
Низкий
почти 4 года назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.