lib/string_utf_support.rb in the Arabic Prawn 0.0.1 gem for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) downloaded_file or (2) url variable.
References
Configurations
Information
Published : 2014-05-02 07:55
Updated : 2014-05-05 06:47
NVD link : CVE-2014-2322
Mitre link : CVE-2014-2322
JSON object : View
CWE
Products Affected
dynamixsolutions
- arabic_prawn


