This script is Copyright (C) 2009-2014 Tenable Network Security, Inc.
The remote FreeBSD host is missing a security-related update.
Jonathan Weiss reports, that it is possible to perform a SQL
injection in Rails applications via not correctly sanitized :limit and
:offset parameters. It is possible to change arbitrary values in
affected tables or gain access to the sensitive data.
See also :
Update the affected package.
Risk factor :
High / CVSS Base Score : 7.5