File tree Expand file tree Collapse file tree 1 file changed +38
-0
lines changed
Expand file tree Collapse file tree 1 file changed +38
-0
lines changed Original file line number Diff line number Diff line change 1+ ---
2+ gem : rwiki
3+ cve : 2006-2582
4+ ghsa : wwmf-6p58-6vj2
5+ url : https://web.archive.org/web/20090501134922/http://www2a.biglobe.ne.jp/~seki/ruby/rwiki.html
6+ title : High severity vulnerability that affects rwiki
7+ date : 2006-05-14
8+ description : |
9+ The editing form in RWiki 2.1.0pre1 through 2.1.0 allows remote
10+ attackers to execute arbitrary Ruby code via unknown attack vectors.
11+ cvss_v2 : 7.5
12+ unaffected_versions :
13+ - " < 2.1.0pre1"
14+ patched_versions :
15+ - " >= 2.1.1"
16+ related :
17+ cve :
18+ - 2006-2581
19+ ghsa :
20+ - gvhx-gj42-m28v
21+ url :
22+ - https://nvd.nist.gov/vuln/detail/CVE-2006-2582
23+ - https://exchange.xforce.ibmcloud.com/vulnerabilities/26664
24+ - https://github.com/advisories/GHSA-wwmf-6p58-6vj2
25+ - https://github.com/advisories/GHSA-gvhx-gj42-m28v
26+ - https://rubygems.org/gems/rwiki
27+ - https://web.archive.org/web/20090501134922/http://www2a.biglobe.ne.jp/~seki/ruby/rwiki.html
28+ - https://web.archive.org/web/20090504061152/http://pub.cozmixng.org/~the-rwiki/rw-cgi.rb?cmd=view;name=top
29+ - https://web.archive.org/web/20081201080215/http://secunia.com/advisories/20264
30+ - https://web.archive.org/web/20090524010623/http://www.vupen.com/english/advisories/2006/1949
31+ notes : |
32+ - Best references are in Japanese.
33+ - Source code link on rubygems.org goes to
34+ lucassus/rwiki (last version 0.2.5, not 2.1.1).
35+ - Found two other repos:
36+ - https://github.com/rwiki/rwiki
37+ - https://github.com/ytakhs/rwiki
38+ - CWE: [NVD-CWE-Other] MODERATE
You can’t perform that action at this time.
0 commit comments