CVE-2004-0755

The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:yukihiro_matsumoto:ruby:1.6:*:*:*:*:*:*:*
cpe:2.3:a:yukihiro_matsumoto:ruby:1.8:*:*:*:*:*:*:*

Information

Published : 2004-10-19 21:00

Updated : 2017-10-10 18:29


NVD link : CVE-2004-0755

Mitre link : CVE-2004-0755


JSON object : View

Advertisement

dedicated server usa

Products Affected

yukihiro_matsumoto

  • ruby