7.5
CVSSv2

CVE-2013-1756

Published: 09/06/2014 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Dragonfly gem 0.7 prior to 0.8.6 and 0.9.x prior to 0.9.13 for Ruby, when used with Ruby on Rails, allows remote malicious users to execute arbitrary code via a crafted request.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mark_evans dragonfly_gem 0.7.0

mark_evans dragonfly_gem 0.7.1

mark_evans dragonfly_gem 0.7.2

mark_evans dragonfly_gem 0.7.3

mark_evans dragonfly_gem 0.7.4

mark_evans dragonfly_gem 0.7.5

mark_evans dragonfly_gem 0.7.6

mark_evans dragonfly_gem 0.7.7

mark_evans dragonfly_gem 0.8.0

mark_evans dragonfly_gem 0.8.1

mark_evans dragonfly_gem 0.8.2

mark_evans dragonfly_gem 0.8.4

mark_evans dragonfly_gem 0.8.5

mark_evans dragonfly_gem 0.9.0

mark_evans dragonfly_gem 0.9.1

mark_evans dragonfly_gem 0.9.2

mark_evans dragonfly_gem 0.9.3

mark_evans dragonfly_gem 0.9.4

mark_evans dragonfly_gem 0.9.5

mark_evans dragonfly_gem 0.9.6

mark_evans dragonfly_gem 0.9.7

mark_evans dragonfly_gem 0.9.8

mark_evans dragonfly_gem 0.9.9

mark_evans dragonfly_gem 0.9.10

mark_evans dragonfly_gem 0.9.11

mark_evans dragonfly_gem 0.9.12