Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2016-2097

больше 10 лет назад

Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.2 and 4.x before 4.1.14.2 allows remote attackers to read arbitrary files by leveraging an application's unrestricted use of the render method and providing a .. (dot dot) in a pathname. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-0752.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2016-2097

больше 10 лет назад

Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.2 and 4.x before 4.1.14.2 allows remote attackers to read arbitrary files by leveraging an application's unrestricted use of the render method and providing a .. (dot dot) in a pathname. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-0752.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2016-2097

больше 10 лет назад

Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.2 and 4.x before 4.1.14.2 allows remote attackers to read arbitrary files by leveraging an application's unrestricted use of the render method and providing a .. (dot dot) in a pathname. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-0752.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2016-2097

больше 10 лет назад

Directory traversal vulnerability in Action View in Ruby on Rails befo ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-vx9j-46rh-fqr8

почти 9 лет назад

actionview contains Path Traversal vulnerability

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:0967-1

больше 10 лет назад

Security update for rubygem-actionpack-3_2

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2016-2097

Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.2 and 4.x before 4.1.14.2 allows remote attackers to read arbitrary files by leveraging an application's unrestricted use of the render method and providing a .. (dot dot) in a pathname. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-0752.

CVSS3: 5.3
4%
Низкий
больше 10 лет назад
redhat логотип
CVE-2016-2097

Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.2 and 4.x before 4.1.14.2 allows remote attackers to read arbitrary files by leveraging an application's unrestricted use of the render method and providing a .. (dot dot) in a pathname. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-0752.

CVSS2: 6.8
4%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-2097

Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.2 and 4.x before 4.1.14.2 allows remote attackers to read arbitrary files by leveraging an application's unrestricted use of the render method and providing a .. (dot dot) in a pathname. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-0752.

CVSS3: 5.3
4%
Низкий
больше 10 лет назад
debian логотип
CVE-2016-2097

Directory traversal vulnerability in Action View in Ruby on Rails befo ...

CVSS3: 5.3
4%
Низкий
больше 10 лет назад
github логотип
GHSA-vx9j-46rh-fqr8

actionview contains Path Traversal vulnerability

CVSS3: 5.3
4%
Низкий
почти 9 лет назад
suse-cvrf логотип
SUSE-SU-2016:0967-1

Security update for rubygem-actionpack-3_2

больше 10 лет назад

Уязвимостей на страницу