Логотип exploitDog
bind:CVE-2011-0449
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2011-0449

Количество 4

Количество 4

ubuntu логотип

CVE-2011-0449

почти 15 лет назад

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.4, when a case-insensitive filesystem is used, does not properly implement filters associated with the list of available templates, which allows remote attackers to bypass intended access restrictions via an action name that uses an unintended case for alphabetic characters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2011-0449

почти 15 лет назад

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.4, when a case-insensitive filesystem is used, does not properly implement filters associated with the list of available templates, which allows remote attackers to bypass intended access restrictions via an action name that uses an unintended case for alphabetic characters.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2011-0449

почти 15 лет назад

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x ...

CVSS2: 7.5
EPSS: Низкий
github логотип

GHSA-4ww3-3rxj-8v6q

около 8 лет назад

actionpack allows remote attackers to bypass intended access restrictions

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2011-0449

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.4, when a case-insensitive filesystem is used, does not properly implement filters associated with the list of available templates, which allows remote attackers to bypass intended access restrictions via an action name that uses an unintended case for alphabetic characters.

CVSS2: 7.5
1%
Низкий
почти 15 лет назад
nvd логотип
CVE-2011-0449

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.4, when a case-insensitive filesystem is used, does not properly implement filters associated with the list of available templates, which allows remote attackers to bypass intended access restrictions via an action name that uses an unintended case for alphabetic characters.

CVSS2: 7.5
1%
Низкий
почти 15 лет назад
debian логотип
CVE-2011-0449

actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x ...

CVSS2: 7.5
1%
Низкий
почти 15 лет назад
github логотип
GHSA-4ww3-3rxj-8v6q

actionpack allows remote attackers to bypass intended access restrictions

1%
Низкий
около 8 лет назад

Уязвимостей на страницу