Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

redhat логотип

CVE-2017-7540

около 9 лет назад

rubygem-safemode, as used in Foreman, versions 1.3.2 and earlier are vulnerable to bypassing safe mode limitations via special Ruby syntax. This can lead to deletion of objects for which the user does not have delete permissions or possibly to privilege escalation.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-7540

около 9 лет назад

rubygem-safemode, as used in Foreman, versions 1.3.2 and earlier are vulnerable to bypassing safe mode limitations via special Ruby syntax. This can lead to deletion of objects for which the user does not have delete permissions or possibly to privilege escalation.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-5vx5-9q73-wgp4

почти 9 лет назад

Safemode Gem Has Incomplete List of Disallowed Inputs

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2017-7540

rubygem-safemode, as used in Foreman, versions 1.3.2 and earlier are vulnerable to bypassing safe mode limitations via special Ruby syntax. This can lead to deletion of objects for which the user does not have delete permissions or possibly to privilege escalation.

CVSS3: 7.5
2%
Низкий
около 9 лет назад
nvd логотип
CVE-2017-7540

rubygem-safemode, as used in Foreman, versions 1.3.2 and earlier are vulnerable to bypassing safe mode limitations via special Ruby syntax. This can lead to deletion of objects for which the user does not have delete permissions or possibly to privilege escalation.

CVSS3: 9.8
2%
Низкий
около 9 лет назад
github логотип
GHSA-5vx5-9q73-wgp4

Safemode Gem Has Incomplete List of Disallowed Inputs

CVSS3: 9.8
2%
Низкий
почти 9 лет назад

Уязвимостей на страницу