mirror of
https://github.com/netbirdio/advisory-database.git
synced 2026-05-22 18:04:22 -07:00
Publish GHSA-78j3-7wpm-qhvp
This commit is contained in:
@@ -1,12 +1,12 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-78j3-7wpm-qhvp",
|
||||
"modified": "2020-06-16T21:22:10Z",
|
||||
"modified": "2023-06-09T20:09:31Z",
|
||||
"published": "2017-10-24T18:33:37Z",
|
||||
"aliases": [
|
||||
"CVE-2013-1947"
|
||||
],
|
||||
"summary": "Critical severity vulnerability that affects kelredd-pruview",
|
||||
"summary": "Shell Metacharacter Injection in kelredd-pruview",
|
||||
"details": "kelredd-pruview gem 0.3.8 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a filename argument to (1) document.rb, (2) video.rb, or (3) video_image.rb.",
|
||||
"severity": [
|
||||
|
||||
@@ -41,6 +41,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://github.com/advisories/GHSA-78j3-7wpm-qhvp"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/kelredd-pruview/CVE-2013-1947.yml"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2013/04/10/3"
|
||||
|
||||
Reference in New Issue
Block a user