CVE-2013-7111
29.04.2014, 14:38
The put_call function in the API client (api/api_client.rb) in the BaseSpace Ruby SDK (aka bio-basespace-sdk) gem 0.1.7 for Ruby uses the API_KEY on the command line, which allows remote attackers to obtain sensitive information by listing the processes.Enginsight
Vendor | Product | Version |
---|---|---|
basespace_ruby_sdk_project | basespace_ruby_sdk | 0.1.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References