rails_admin rails gem XSS vulnerability(CVE-2017-12098)

Basic Fields

SSV ID:
SSV-97078
Find Time:
2017-09-20
Submit Time:
2018-01-11
Level:
Category:
跨站脚本
Component:
Ruby on Rails
Author:
Zachary Sanchez
Submitter:
Knownsec
CVE-ID:
CVE-2017-12098
CNNVD-ID:
Add
CNVD-ID:
Add
ZoomEye Dork:
Add

Source

Detail

Contributor Got  0KB
Loading icon
have 0  exchange

PoC (非 pocsuite 插件)

Contributor Knownsec totally have   0KB

have 0 Exchange

Reference Linking

Solutions

Temp Solutions

Unavailable Temp Solutions

Official Solution

Unavailable Official solution

Defense Solutions

Unavailable Defense Solutions

Popularity 1409
Need to bind phone before comment. Bind Now

Unavailable Comments

※Any content provided by this site, only to learn the code and services, not for illegal purposes