CVE-2013-2095

rubygem-openshift-origin-controller: API can be used to create applications via cartridge_cache.rb URI.prase() to perform command injection
References
Link Resource
https://access.redhat.com/security/cve/cve-2013-2095 Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-2095 Exploit Issue Tracking Third Party Advisory
https://access.redhat.com/security/cve/cve-2013-2095 Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-2095 Exploit Issue Tracking Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:openshift-origin-controller_project:openshift-origin-controller:-:*:*:*:*:ruby:*:*

History

21 Nov 2024, 01:51

Type Values Removed Values Added
References () https://access.redhat.com/security/cve/cve-2013-2095 - Third Party Advisory () https://access.redhat.com/security/cve/cve-2013-2095 - Third Party Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-2095 - Exploit, Issue Tracking, Third Party Advisory () https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-2095 - Exploit, Issue Tracking, Third Party Advisory

Information

Published : 2019-12-10 14:15

Updated : 2024-11-21 01:51


NVD link : CVE-2013-2095

Mitre link : CVE-2013-2095

CVE.ORG link : CVE-2013-2095


JSON object : View

Products Affected

openshift-origin-controller_project

  • openshift-origin-controller
CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')