Language:
Severity: Medium
ID: 84255
File Name: freebsd_pkg_eb8a89788dd549ce87f449667b2166dd.nasl
Version: 2.7
Type: local
Family: FreeBSD Local Security Checks
Published: 6/18/2015
Updated: 1/6/2021
Supported Sensors: Nessus
Risk Factor: Medium
Score: 4.9
Risk Factor: Medium
Base Score: 5
Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N
CPE: p-cpe:/a:freebsd:freebsd:rubygem-activesupport, p-cpe:/a:freebsd:freebsd:rubygem-activesupport4, p-cpe:/a:freebsd:freebsd:rubygem-jquery-rails, cpe:/o:freebsd:freebsd, p-cpe:/a:freebsd:freebsd:rubygem-jquery-rails4, p-cpe:/a:freebsd:freebsd:rubygem-rack, p-cpe:/a:freebsd:freebsd:rubygem-rack15, p-cpe:/a:freebsd:freebsd:rubygem-rack16, p-cpe:/a:freebsd:freebsd:rubygem-rails, p-cpe:/a:freebsd:freebsd:rubygem-rails4, p-cpe:/a:freebsd:freebsd:rubygem-web-console
Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 6/17/2015
Vulnerability Publication Date: 6/16/2015
Metasploit (Ruby on Rails Web Console (v2) Whitelist Bypass Code Execution)
CVE: CVE-2015-1840, CVE-2015-3224, CVE-2015-3225, CVE-2015-3226, CVE-2015-3227