Unspecified vulnerability in the "dependency resolution mechanism" in Ruby on Rails 1.1.0 through 1.1.5 allows remote attackers to execute arbitrary Ruby code via a URL that is not properly handled in the routing code, which leads to a denial of service (application hang) or "data loss," a different vulnerability than CVE-2006-4111.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2006-08-14 21:04
Updated : 2025-04-03 01:03
NVD link : CVE-2006-4112
Mitre link : CVE-2006-4112
CVE.ORG link : CVE-2006-4112
JSON object : View
Products Affected
rubyonrails
- rails
CWE