CVE-2018-7212
18.02.2018, 06:29
An issue was discovered in rack-protection/lib/rack/protection/path_traversal.rb in Sinatra 2.x before 2.0.1 on Windows. Path traversal is possible via backslash characters.
Vendor | Product | Version |
---|---|---|
sinatrarb | sinatra | 2.0.0 |
sinatrarb | sinatra | 2.0.0:beta2 |
sinatrarb | sinatra | 2.0.0:rc1 |
sinatrarb | sinatra | 2.0.0:rc2 |
sinatrarb | sinatra | 2.0.0:rc3 |
sinatrarb | sinatra | 2.0.0:rc4 |
sinatrarb | sinatra | 2.0.0:rc5 |
sinatrarb | sinatra | 2.0.0:rc6 |
sinatrarb | sinatra | 2.0.1:rc1 |
𝑥
= Vulnerable software versions