CVE-2014-4998
10.01.2018, 18:29
test/tc_database.rb in the lean-ruport gem 0.3.8 for Ruby places the mysql user password on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.Enginsight
Vendor | Product | Version |
---|---|---|
lean-ruport_project | lean-ruport | 0.3.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References