Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Sean Griffin

#36701de 53,640
7.5CVSS total
Vulnerabilidades · 1
PT-2014-5350
7.5
2014-07-07
Ruby · Ruby On Rails · CVE-2014-3482
**Name of the Vulnerable Software and Affected Versions** Ruby on Rails versions prior to 3.2.19 **Description** The issue is related to a SQL injection vulnerability in the PostgreSQL adapter for Active Record. This vulnerability allows remote attackers to execute arbitrary SQL commands by leveraging improper bitstring quoting. **Recommendations** For versions prior to 3.2.19, update to version 3.2.19 or later to resolve the issue.