CVE-2021-3779
Ruby-MySQL Gem Client File Read
A malicious MySQL server can request local file content from a client using ruby-mysql prior to version 2.10.0 without explicit authorization from the user. This issue was resolved in version 2.10.0 and later.
Productos afectados
Tomita Masahiro · ruby-mysql¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →