CVE-2013-0156

HIGH

Details

Source: MITRE

Published: 2013-01-13

Updated: 2019-08-08

Type: CWE-20

Risk Information

CVSS v2.0

Base Score: 7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 10

Severity: HIGH

Tenable Plugins

View all (14 total)

IDNameProductFamilySeverity
119429RHEL 6 : Ruby on Rails (RHSA-2013:0153)NessusRed Hat Local Security Checks
high
82157Debian DLA-172-1 : libextlib-ruby security updateNessusDebian Local Security Checks
high
79981GLSA-201412-28 : Ruby on Rails: Multiple vulnerabilitiesNessusGentoo Local Security Checks
critical
74881openSUSE Security Update : ruby (openSUSE-SU-2013:0278-1)NessusSuSE Local Security Checks
high
801018Mac OS X 10.8 < 10.8.3 Multiple Vulnerabilities (Security Update 2013-001)Log Correlation EngineOperating System Detection
high
6717Mac OS X 10.8 < 10.8.3 Multiple Vulnerabilities (Security Update 2013-001)Nessus Network MonitorWeb Clients
high
65578Mac OS X Multiple Vulnerabilities (Security Update 2013-001)NessusMacOS X Local Security Checks
high
64476Mac OS X : OS X Server < 2.2.1 Multiple VulnerabilitiesNessusMacOS X Local Security Checks
high
64076RHEL 6 : Ruby on Rails in Subscription Asset Manager (RHSA-2013:0154)NessusRed Hat Local Security Checks
high
63657Fedora 16 : rubygem-actionpack-3.0.10-10.fc16 / rubygem-activemodel-3.0.10-2.fc16 / etc (2013-0686)NessusFedora Local Security Checks
high
63654Fedora 17 : rubygem-actionpack-3.0.11-8.fc17 / rubygem-activemodel-3.0.11-2.fc17 / etc (2013-0635)NessusFedora Local Security Checks
high
63635Fedora 18 : rubygem-actionpack-3.2.8-2.fc18 / rubygem-activerecord-3.2.8-3.fc18 / etc (2013-0568)NessusFedora Local Security Checks
high
63457Debian DSA-2604-1 : rails - insufficient input validationNessusDebian Local Security Checks
high
63435FreeBSD : rubygem-rails -- multiple vulnerabilities (ca5d3272-59e3-11e2-853b-00262d5ed8ee)NessusFreeBSD Local Security Checks
high