Vyatta –
Linux & Open Source
Alternative to Cisco –
Advanced Routing,
Firewall, VPN, QoS..
Free Download ->
|
|
| |
|
| |
ruby: directory traversal
| Package(s): | ruby |
CVE #(s): | CVE-2008-1145
|
| Created: | March 25, 2008 |
Updated: | August 29, 2008 |
| Description: |
Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access arbitrary files via (1) "..%5c" (encoded backslash) sequences or (2) filenames that match patterns in the :NondisclosureName option. |
| Alerts: |
|
( Log in to post comments)
|
|
|