Количество 6
Количество 6
CVE-2020-8162
A client side enforcement of server side security vulnerability exists in rails < 5.2.4.2 and rails < 6.0.3.1 ActiveStorage's S3 adapter that allows the Content-Length of a direct file upload to be modified by an end user bypassing upload limits.
CVE-2020-8162
A client side enforcement of server side security vulnerability exists in rails < 5.2.4.2 and rails < 6.0.3.1 ActiveStorage's S3 adapter that allows the Content-Length of a direct file upload to be modified by an end user bypassing upload limits.
CVE-2020-8162
A client side enforcement of server side security vulnerability exists in rails < 5.2.4.2 and rails < 6.0.3.1 ActiveStorage's S3 adapter that allows the Content-Length of a direct file upload to be modified by an end user bypassing upload limits.
CVE-2020-8162
A client side enforcement of server side security vulnerability exists ...
GHSA-m42x-37p3-fv5w
Circumvention of file size limits in ActiveStorage
BDU:2022-06175
Уязвимость программной платформы Ruby on Rails, связанная с реализацией функций безопасности на стороне клиента, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-8162 A client side enforcement of server side security vulnerability exists in rails < 5.2.4.2 and rails < 6.0.3.1 ActiveStorage's S3 adapter that allows the Content-Length of a direct file upload to be modified by an end user bypassing upload limits. | CVSS3: 7.5 | 2% Низкий | больше 5 лет назад | |
CVE-2020-8162 A client side enforcement of server side security vulnerability exists in rails < 5.2.4.2 and rails < 6.0.3.1 ActiveStorage's S3 adapter that allows the Content-Length of a direct file upload to be modified by an end user bypassing upload limits. | CVSS3: 7.5 | 2% Низкий | больше 5 лет назад | |
CVE-2020-8162 A client side enforcement of server side security vulnerability exists in rails < 5.2.4.2 and rails < 6.0.3.1 ActiveStorage's S3 adapter that allows the Content-Length of a direct file upload to be modified by an end user bypassing upload limits. | CVSS3: 7.5 | 2% Низкий | больше 5 лет назад | |
CVE-2020-8162 A client side enforcement of server side security vulnerability exists ... | CVSS3: 7.5 | 2% Низкий | больше 5 лет назад | |
GHSA-m42x-37p3-fv5w Circumvention of file size limits in ActiveStorage | CVSS3: 7.5 | 2% Низкий | больше 5 лет назад | |
BDU:2022-06175 Уязвимость программной платформы Ruby on Rails, связанная с реализацией функций безопасности на стороне клиента, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.8 | 2% Низкий | больше 5 лет назад |
Уязвимостей на страницу