rbenv (all current versions) is vulnerable to Directory Traversal in the specification of Ruby version resulting in arbitrary code execution
References
Link | Resource |
---|---|
https://github.com/justinsteven/advisories/blob/master/2017_rbenv_ruby_version_directory_traversal.md | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2017-07-17 13:18
Updated : 2024-02-28 16:04
NVD link : CVE-2017-1000047
Mitre link : CVE-2017-1000047
CVE.ORG link : CVE-2017-1000047
JSON object : View
Products Affected
rbenv_project
- rbenv
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')