TROYANOSYVIRUS
Retour aux CVEs

CVE-2013-4136

N/A

Description

ext/common/ServerInstanceDir.h in Phusion Passenger gem before 4.0.6 for Ruby allows local users to gain privileges or possibly change the ownership of arbitrary directories via a symlink attack on a directory with a predictable name in /tmp/.

Details CVE

Score CVSS v3.1N/A
Publie9/30/2013
Derniere modification4/11/2025
Sourcenvd
Observations honeypot0

Produits affectes

phusion:passengerruby-lang:ruby

Faiblesses (CWE)

CWE-59

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.