Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 4

Количество 4

ubuntu логотип

CVE-2011-0449

больше 15 лет назад

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.4, when a case-insensitive filesystem is used, does not properly implement filters associated with the list of available templates, which allows remote attackers to bypass intended access restrictions via an action name that uses an unintended case for alphabetic characters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2011-0449

больше 15 лет назад

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.4, when a case-insensitive filesystem is used, does not properly implement filters associated with the list of available templates, which allows remote attackers to bypass intended access restrictions via an action name that uses an unintended case for alphabetic characters.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2011-0449

больше 15 лет назад

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x ...

CVSS2: 7.5
EPSS: Низкий
github логотип

GHSA-4ww3-3rxj-8v6q

почти 9 лет назад

actionpack allows remote attackers to bypass intended access restrictions

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2011-0449

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.4, when a case-insensitive filesystem is used, does not properly implement filters associated with the list of available templates, which allows remote attackers to bypass intended access restrictions via an action name that uses an unintended case for alphabetic characters.

CVSS2: 7.5
2%
Низкий
больше 15 лет назад
nvd логотип
CVE-2011-0449

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.4, when a case-insensitive filesystem is used, does not properly implement filters associated with the list of available templates, which allows remote attackers to bypass intended access restrictions via an action name that uses an unintended case for alphabetic characters.

CVSS2: 7.5
2%
Низкий
больше 15 лет назад
debian логотип
CVE-2011-0449

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x ...

CVSS2: 7.5
2%
Низкий
больше 15 лет назад
github логотип
GHSA-4ww3-3rxj-8v6q

actionpack allows remote attackers to bypass intended access restrictions

2%
Низкий
почти 9 лет назад

Уязвимостей на страницу