Логотип exploitDog
bind:CVE-2024-32978
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-32978

Количество 4

Количество 4

ubuntu логотип

CVE-2024-32978

больше 1 года назад

Kaminari is a paginator for web app frameworks and object relational mappings. A security vulnerability involving insecure file permissions has been identified in the Kaminari pagination library for Ruby on Rails, concerning insecure file permissions. This vulnerability is of moderate severity due to the potential for unauthorized write access to particular Ruby files managed by the library. Such access could lead to the alteration of application behavior or data integrity issues. Users of affected versions are advised to update to Kaminari version 0.16.2 or later, where file permissions have been adjusted to enhance security. If upgrading is not feasible immediately, review and adjust the file permissions for particular Ruby files in Kaminari to ensure they are only accessible by authorized user.

CVSS3: 6.6
EPSS: Низкий
nvd логотип

CVE-2024-32978

больше 1 года назад

Kaminari is a paginator for web app frameworks and object relational mappings. A security vulnerability involving insecure file permissions has been identified in the Kaminari pagination library for Ruby on Rails, concerning insecure file permissions. This vulnerability is of moderate severity due to the potential for unauthorized write access to particular Ruby files managed by the library. Such access could lead to the alteration of application behavior or data integrity issues. Users of affected versions are advised to update to Kaminari version 0.16.2 or later, where file permissions have been adjusted to enhance security. If upgrading is not feasible immediately, review and adjust the file permissions for particular Ruby files in Kaminari to ensure they are only accessible by authorized user.

CVSS3: 6.6
EPSS: Низкий
debian логотип

CVE-2024-32978

больше 1 года назад

Kaminari is a paginator for web app frameworks and object relational m ...

CVSS3: 6.6
EPSS: Низкий
github логотип

GHSA-7r3j-qmr4-jfpj

больше 1 года назад

Kaminari Insecure File Permissions Vulnerability

CVSS3: 6.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-32978

Kaminari is a paginator for web app frameworks and object relational mappings. A security vulnerability involving insecure file permissions has been identified in the Kaminari pagination library for Ruby on Rails, concerning insecure file permissions. This vulnerability is of moderate severity due to the potential for unauthorized write access to particular Ruby files managed by the library. Such access could lead to the alteration of application behavior or data integrity issues. Users of affected versions are advised to update to Kaminari version 0.16.2 or later, where file permissions have been adjusted to enhance security. If upgrading is not feasible immediately, review and adjust the file permissions for particular Ruby files in Kaminari to ensure they are only accessible by authorized user.

CVSS3: 6.6
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-32978

Kaminari is a paginator for web app frameworks and object relational mappings. A security vulnerability involving insecure file permissions has been identified in the Kaminari pagination library for Ruby on Rails, concerning insecure file permissions. This vulnerability is of moderate severity due to the potential for unauthorized write access to particular Ruby files managed by the library. Such access could lead to the alteration of application behavior or data integrity issues. Users of affected versions are advised to update to Kaminari version 0.16.2 or later, where file permissions have been adjusted to enhance security. If upgrading is not feasible immediately, review and adjust the file permissions for particular Ruby files in Kaminari to ensure they are only accessible by authorized user.

CVSS3: 6.6
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-32978

Kaminari is a paginator for web app frameworks and object relational m ...

CVSS3: 6.6
0%
Низкий
больше 1 года назад
github логотип
GHSA-7r3j-qmr4-jfpj

Kaminari Insecure File Permissions Vulnerability

CVSS3: 6.6
0%
Низкий
больше 1 года назад

Уязвимостей на страницу