Логотип exploitDog
bind:CVE-2008-1145
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2008-1145

Количество 6

Количество 6

ubuntu логотип

CVE-2008-1145

больше 17 лет назад

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
EPSS: Высокий
redhat логотип

CVE-2008-1145

больше 17 лет назад

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
EPSS: Высокий
nvd логотип

CVE-2008-1145

больше 17 лет назад

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
EPSS: Высокий
debian логотип

CVE-2008-1145

больше 17 лет назад

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5- ...

CVSS2: 5
EPSS: Высокий
github логотип

GHSA-f279-rf2r-m6m5

около 3 лет назад

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

EPSS: Высокий
oracle-oval логотип

ELSA-2008-0897

больше 16 лет назад

ELSA-2008-0897: ruby security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2008-1145

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
77%
Высокий
больше 17 лет назад
redhat логотип
CVE-2008-1145

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
77%
Высокий
больше 17 лет назад
nvd логотип
CVE-2008-1145

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

CVSS2: 5
77%
Высокий
больше 17 лет назад
debian логотип
CVE-2008-1145

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5- ...

CVSS2: 5
77%
Высокий
больше 17 лет назад
github логотип
GHSA-f279-rf2r-m6m5

Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option.

77%
Высокий
около 3 лет назад
oracle-oval логотип
ELSA-2008-0897

ELSA-2008-0897: ruby security update (MODERATE)

больше 16 лет назад

Уязвимостей на страницу