CVE-2011-2929
published 2011-08-29CVE-2011-2929: The template selection functionality in actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.10 and 3.1.x before 3.1.0.rc6 does…
PriorityP428medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
1.81%
76.2th percentile
The template selection functionality in actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.10 and 3.1.x before 3.1.0.rc6 does not properly handle glob characters, which allows remote attackers to render arbitrary views via a crafted URL, related to a "filter skipping vulnerability."
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| actionpack_project | actionpack | >= 3.0.0 < 3.0.10 | 3.0.10 |
| debian | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | ruby_on_rails | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
vendor_debian5.0LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
actionpack Improper Input Validation vulnerability
ghsa·2017-10-24
CVE-2011-2929 [MEDIUM] CWE-20 actionpack Improper Input Validation vulnerability
actionpack Improper Input Validation vulnerability
The template selection functionality in `actionpack/lib/action_view/template/resolver.rb` in Ruby on Rails 3.0.x before 3.0.10 and 3.1.x before 3.1.0.rc6 does not properly handle glob characters, which allows remote attackers to render arbitrary views via a crafted URL, related to a "filter skipping vulnerability."
OSV
actionpack Improper Input Validation vulnerability
osv·2017-10-24
CVE-2011-2929 [MEDIUM] actionpack Improper Input Validation vulnerability
actionpack Improper Input Validation vulnerability
The template selection functionality in `actionpack/lib/action_view/template/resolver.rb` in Ruby on Rails 3.0.x before 3.0.10 and 3.1.x before 3.1.0.rc6 does not properly handle glob characters, which allows remote attackers to render arbitrary views via a crafted URL, related to a "filter skipping vulnerability."
Debian
CVE-2011-2929: rails - The template selection functionality in actionpack/lib/action_view/template/reso...
vendor_debian·2011·CVSS 5.0
CVE-2011-2929 [MEDIUM] CVE-2011-2929: rails - The template selection functionality in actionpack/lib/action_view/template/reso...
The template selection functionality in actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.10 and 3.1.x before 3.1.0.rc6 does not properly handle glob characters, which allows remote attackers to render arbitrary views via a crafted URL, related to a "filter skipping vulnerability."
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
http://groups.google.com/group/rubyonrails-security/msg/cbbbba6e4f7eaf61?dmode=source&output=gplainhttp://lists.fedoraproject.org/pipermail/package-announce/2011-September/065109.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-September/065212.htmlhttp://weblog.rubyonrails.org/2011/8/16/ann-rails-3-1-0-rc6http://www.openwall.com/lists/oss-security/2011/08/17/1http://www.openwall.com/lists/oss-security/2011/08/19/11http://www.openwall.com/lists/oss-security/2011/08/20/1http://www.openwall.com/lists/oss-security/2011/08/22/13http://www.openwall.com/lists/oss-security/2011/08/22/14http://www.openwall.com/lists/oss-security/2011/08/22/5https://bugzilla.redhat.com/show_bug.cgi?id=731432https://github.com/rails/rails/commit/5f94b93279f6d0682fafb237c301302c107a9552http://groups.google.com/group/rubyonrails-security/msg/cbbbba6e4f7eaf61?dmode=source&output=gplainhttp://lists.fedoraproject.org/pipermail/package-announce/2011-September/065109.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-September/065212.htmlhttp://weblog.rubyonrails.org/2011/8/16/ann-rails-3-1-0-rc6http://www.openwall.com/lists/oss-security/2011/08/17/1http://www.openwall.com/lists/oss-security/2011/08/19/11http://www.openwall.com/lists/oss-security/2011/08/20/1http://www.openwall.com/lists/oss-security/2011/08/22/13http://www.openwall.com/lists/oss-security/2011/08/22/14http://www.openwall.com/lists/oss-security/2011/08/22/5https://bugzilla.redhat.com/show_bug.cgi?id=731432https://github.com/rails/rails/commit/5f94b93279f6d0682fafb237c301302c107a9552
2011-08-29
Published