TROYANOSYVIRUS
Voltar para CVEs

CVE-2013-4136

N/A

Descricao

ext/common/ServerInstanceDir.h in Phusion Passenger gem before 4.0.6 for Ruby allows local users to gain privileges or possibly change the ownership of arbitrary directories via a symlink attack on a directory with a predictable name in /tmp/.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado9/30/2013
Ultima modificacao4/11/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

phusion:passengerruby-lang:ruby

Fraquezas (CWE)

CWE-59

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.