Логотип exploitDog
bind:"BDU:2024-06602" OR bind:"CVE-2022-3704"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2024-06602" OR bind:"CVE-2022-3704"

Количество 8

Количество 8

fstec логотип

BDU:2024-06602

больше 2 лет назад

Уязвимость файла actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb интерпретатора Ruby, позволяющая нарушителю проводить межсайтовый скриптинг

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2022-3704

больше 2 лет назад

** DISPUTED ** A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 3.5
EPSS: Низкий
redhat логотип

CVE-2022-3704

больше 2 лет назад

A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2022-3704

больше 2 лет назад

A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2022-3704

больше 2 лет назад

A vulnerability classified as problematic has been found in Ruby on Ra ...

CVSS3: 3.5
EPSS: Низкий
redos логотип

ROS-20240827-18

10 месяцев назад

Уязвимость rubygem-actionpack

CVSS3: 5.4
EPSS: Низкий
redos логотип

ROS-20240827-03

10 месяцев назад

Уязвимость ruby

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-9chr-4fjh-5rgw

больше 2 лет назад

Cross-site Scripting in actionpack

CVSS3: 3.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-06602

Уязвимость файла actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb интерпретатора Ruby, позволяющая нарушителю проводить межсайтовый скриптинг

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2022-3704

** DISPUTED ** A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 3.5
0%
Низкий
больше 2 лет назад
redhat логотип
CVE-2022-3704

A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2022-3704

A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file actionpack/lib/action_dispatch/middleware/templates/routes/_table.html.erb. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is be177e4566747b73ff63fd5f529fab564e475ed4. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-212319. NOTE: Maintainer declares that there isn’t a valid attack vector. The issue was wrongly reported as a security vulnerability by a non-member of the Rails team.

CVSS3: 3.5
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2022-3704

A vulnerability classified as problematic has been found in Ruby on Ra ...

CVSS3: 3.5
0%
Низкий
больше 2 лет назад
redos логотип
ROS-20240827-18

Уязвимость rubygem-actionpack

CVSS3: 5.4
0%
Низкий
10 месяцев назад
redos логотип
ROS-20240827-03

Уязвимость ruby

CVSS3: 5.4
0%
Низкий
10 месяцев назад
github логотип
GHSA-9chr-4fjh-5rgw

Cross-site Scripting in actionpack

CVSS3: 3.5
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу