Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Sean Griffin

#37554of 53,639
7.5Total CVSS
Vulnerabilities · 1
PT-2014-5350
7.5
2014-07-07
Ruby · Ruby On Rails · CVE-2014-3482
**Name of the Vulnerable Software and Affected Versions** Ruby on Rails versions prior to 3.2.19 **Description** The issue is related to a SQL injection vulnerability in the PostgreSQL adapter for Active Record. This vulnerability allows remote attackers to execute arbitrary SQL commands by leveraging improper bitstring quoting. **Recommendations** For versions prior to 3.2.19, update to version 3.2.19 or later to resolve the issue.