6.8
CVSSv2

CVE-2014-0036

Published: 17/04/2014 Updated: 18/04/2014
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The rbovirt gem prior to 0.0.24 for Ruby uses the rest-client gem with SSL verification disabled, which allows remote malicious users to conduct man-in-the-middle attacks via unspecified vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

amos benari rbovirt 0.0.16

amos benari rbovirt 0.0.15

amos benari rbovirt 0.0.14

amos benari rbovirt 0.0.13

amos benari rbovirt

amos benari rbovirt 0.0.22

amos benari rbovirt 0.0.21

amos benari rbovirt 0.0.8

amos benari rbovirt 0.0.7

amos benari rbovirt 0.0.6

amos benari rbovirt 0.0.5

amos benari rbovirt 0.0.19

amos benari rbovirt 0.0.17

amos benari rbovirt 0.0.12

amos benari rbovirt 0.0.10

amos benari rbovirt 0.0.3

amos benari rbovirt 0.0.1

amos benari rbovirt 0.0.20

amos benari rbovirt 0.0.18

amos benari rbovirt 0.0.11

amos benari rbovirt 0.0.9

amos benari rbovirt 0.0.4

amos benari rbovirt 0.0.2

Vendor Advisories

The rbovirt gem before 0024 for Ruby uses the rest-client gem with SSL verification disabled, which allows remote attackers to conduct man-in-the-middle attacks via unspecified vectors ...