CVE-2014-5001
10.01.2018, 18:29
lib/ksymfony1.rb in the kcapifony gem 2.1.6 for Ruby places database user passwords on the (1) mysqldump, (2) pg_dump, (3) mysql, and (4) psql command lines, which allows local users to obtain sensitive information by listing the processes.Enginsight
Vendor | Product | Version |
---|---|---|
kcapifony_project | kcapifony | 2.1.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References