Логотип exploitDog
bind:CVE-2008-1145
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2008-1145

Количество 6

Количество 6

ubuntu логотип

CVE-2008-1145

больше 17 лет назад

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
EPSS: Средний
redhat логотип

CVE-2008-1145

больше 17 лет назад

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2008-1145

больше 17 лет назад

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
EPSS: Средний
debian логотип

CVE-2008-1145

больше 17 лет назад

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5- ...

CVSS2: 5
EPSS: Средний
github логотип

GHSA-f279-rf2r-m6m5

больше 3 лет назад

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

EPSS: Средний
oracle-oval логотип

ELSA-2008-0897

около 17 лет назад

ELSA-2008-0897: ruby security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2008-1145

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
62%
Средний
больше 17 лет назад
redhat логотип
CVE-2008-1145

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
62%
Средний
больше 17 лет назад
nvd логотип
CVE-2008-1145

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
62%
Средний
больше 17 лет назад
debian логотип
CVE-2008-1145

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5- ...

CVSS2: 5
62%
Средний
больше 17 лет назад
github логотип
GHSA-f279-rf2r-m6m5

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

62%
Средний
больше 3 лет назад
oracle-oval логотип
ELSA-2008-0897

ELSA-2008-0897: ruby security update (MODERATE)

около 17 лет назад

Уязвимостей на страницу