File tree Expand file tree Collapse file tree 1 file changed +7
-11
lines changed Expand file tree Collapse file tree 1 file changed +7
-11
lines changed Original file line number Diff line number Diff line change @@ -5,18 +5,12 @@ title: 'CVE-2014-10075 (karo): karo Gem for Ruby db.rb Metacharacter Handling Re
5
5
comments : false
6
6
categories :
7
7
- karo
8
- - rubygems
9
- - rubygems
10
- - rubygems
11
8
advisory :
12
9
gem : karo
13
- library : rubygems
14
- framework : rubygems
15
- platform : rubygems
16
10
cve : 2014-10075
17
11
osvdb : 108573
18
12
ghsa : qfwq-chf4-jvwg
19
- url : https://nvd.nist.gov/vuln/detail/CVE-2014-10075
13
+ url : https://github.com/advisories/GHSA-qfwq-chf4-jvwg
20
14
title : karo Gem for Ruby db.rb Metacharacter Handling Remote Command Execution
21
15
date : 2014-06-30
22
16
description : |
@@ -31,14 +25,16 @@ advisory:
31
25
in a Command ('Command Injection')
32
26
33
27
* Severity: CRITICAL - CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
28
+ cvss_v2 : 7.5
34
29
cvss_v3 : 9.8
30
+ notes : Never patched
35
31
related :
36
32
url :
37
33
- https://nvd.nist.gov/vuln/detail/CVE-2014-10075
38
- - http://www.vapid.dhs.org/advisories/karo-2.3.8.html
39
- - http://www.vapidlabs.com/advisory.php?v=63
40
- - http://osvdb.org/show/osvdb/108573
41
- - https://github.com/advisories/GHSA-qf67-vmxx-gp4jGHSA-qfwq-chf4-jvwg.json
42
34
- https://github.com/rahult/karo
43
35
- https://github.com/rahult/karo/blob/master/CHANGELOG.md
36
+ - https://web.archive.org/web/20250421021935/http://www.vapid.dhs.org/advisories/karo-2.3.8.html
37
+ - http://www.vapidlabs.com/advisory.php?v=63
38
+ - https://www.openwall.com/lists/oss-security/2014/07/07/22
39
+ - https://github.com/advisories/GHSA-qfwq-chf4-jvwg
44
40
---
You can’t perform that action at this time.
0 commit comments