CVE-2013-1756 Information
Feb 14, 2021
cve
Description
The Dragonfly gem 0.7 before 0.8.6 and 0.9.x before 0.9.13 for Ruby when used with Ruby on Rails allows remote attackers to execute arbitrary code via a crafted request.
Reference
http://secunia.com/advisories/52380 http://www.securityfocus.com/bid/58225 https://exchange.xforce.ibmcloud.com/vulnerabilities/82476 https://github.com/markevans/dragonfly/commit/a8775aacf9e5c81cf11bec34b7afa7f27ddfe277 https://groups.google.com/forum/?fromgroups=!topic/dragonfly-users/3c3WIU3VQTo
Share on: