CVE-2012-3463
published 2012-08-10CVE-2012-3463: Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/form_tag_helper.rb in Ruby on Rails 3.x before 3.0.17, 3.1.x before 3.1.8, and…
PriorityP417medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
1.31%
67.3th percentile
Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/form_tag_helper.rb in Ruby on Rails 3.x before 3.0.17, 3.1.x before 3.1.8, and 3.2.x before 3.2.8 allows remote attackers to inject arbitrary web script or HTML via the prompt field to the select_tag helper.
Affected
37 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| actionpack_project | actionpack | >= 3.0 < 3.0.17 | 3.0.17 |
| actionpack_project | actionpack | >= 3.1.0 < 3.1.8 | 3.1.8 |
| actionpack_project | actionpack | >= 3.2.0 < 3.2.8 | 3.2.8 |
| debian | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
vendor_debian4.3LOW
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
rubygem-actionpack: potential XSS vulnerability in select_tag prompt
vendor_redhat·2012-08-09·CVSS 4.3
CVE-2012-3463 [MEDIUM] CWE-79 rubygem-actionpack: potential XSS vulnerability in select_tag prompt
rubygem-actionpack: potential XSS vulnerability in select_tag prompt
Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/form_tag_helper.rb in Ruby on Rails 3.x before 3.0.17, 3.1.x before 3.1.8, and 3.2.x before 3.2.8 allows remote attackers to inject arbitrary web script or HTML via the prompt field to the select_tag helper.
Debian
CVE-2012-3463: rails - Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/f...
vendor_debian·2012·CVSS 4.3
CVE-2012-3463 [MEDIUM] CVE-2012-3463: rails - Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/f...
Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/form_tag_helper.rb in Ruby on Rails 3.x before 3.0.17, 3.1.x before 3.1.8, and 3.2.x before 3.2.8 allows remote attackers to inject arbitrary web script or HTML via the prompt field to the select_tag helper.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
GHSA
actionpack Cross-site Scripting vulnerability
ghsa·2017-10-24
CVE-2012-3463 [MEDIUM] CWE-79 actionpack Cross-site Scripting vulnerability
actionpack Cross-site Scripting vulnerability
Cross-site scripting (XSS) vulnerability in `actionpack/lib/action_view/helpers/form_tag_helper.rb` in Ruby on Rails 3.x before 3.0.17, 3.1.x before 3.1.8, and 3.2.x before 3.2.8 allows remote attackers to inject arbitrary web script or HTML via the `prompt` field to the `select_tag` helper.
OSV
actionpack Cross-site Scripting vulnerability
osv·2017-10-24
CVE-2012-3463 [MEDIUM] actionpack Cross-site Scripting vulnerability
actionpack Cross-site Scripting vulnerability
Cross-site scripting (XSS) vulnerability in `actionpack/lib/action_view/helpers/form_tag_helper.rb` in Ruby on Rails 3.x before 3.0.17, 3.1.x before 3.1.8, and 3.2.x before 3.2.8 allows remote attackers to inject arbitrary web script or HTML via the `prompt` field to the `select_tag` helper.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-3463 CVE-2012-3464 CVE-2012-3465 rubygem-actionpack various flaws [fedora-all]
bugzilla·2012-08-10·CVSS 4.3
CVE-2012-3463 [MEDIUM] CVE-2012-3463 CVE-2012-3464 CVE-2012-3465 rubygem-actionpack various flaws [fedora-all]
CVE-2012-3463 CVE-2012-3464 CVE-2012-3465 rubygem-actionpack various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?ty
Bugzilla
CVE-2012-3463 CVE-2012-3464 CVE-2012-3465 CVE-2013-0156 rubygem-actionpack various flaws [epel-5]
bugzilla·2012-08-10·CVSS 4.3
CVE-2012-3463 [MEDIUM] CVE-2012-3463 CVE-2012-3464 CVE-2012-3465 CVE-2013-0156 rubygem-actionpack various flaws [epel-5]
CVE-2012-3463 CVE-2012-3464 CVE-2012-3465 CVE-2013-0156 rubygem-actionpack various flaws [epel-5]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updat
Bugzilla
CVE-2012-3463 rubygem-actionpack: potential XSS vulnerability in select_tag prompt
bugzilla·2012-08-10·CVSS 4.3
CVE-2012-3463 [MEDIUM] CVE-2012-3463 rubygem-actionpack: potential XSS vulnerability in select_tag prompt
CVE-2012-3463 rubygem-actionpack: potential XSS vulnerability in select_tag prompt
The ruby on Rails project reports:
There is a vulnerability in Ruby on Rails in the select_tag helper
method when a "prompt" is supplied. This vulnerability has been
assigned the CVE identifier CVE-2012-3463.
Versions Affected: 3.x.
Not affected: 2.3.x
Fixed Versions: 3.2.8, 3.1.8, 3.0.17
Impact
- ------
When a "prompt" value is supplied to the `select_tag` helper, the
"prompt" value is not escaped. If untrusted data is not escaped, and
is supplied as the prompt value, there is a potential for XSS attacks.
Vulnerable code will look something like this:
select_tag("name", options, :prompt => UNTRUSTED_INPUT)
All users running an affected release should either upgrade or use one
of the work arounds imme
http://rhn.redhat.com/errata/RHSA-2013-0154.htmlhttp://weblog.rubyonrails.org/2012/8/9/ann-rails-3-2-8-has-been-released/https://groups.google.com/group/rubyonrails-security/msg/961e18e514527078?dmode=source&output=gplainhttp://rhn.redhat.com/errata/RHSA-2013-0154.htmlhttp://weblog.rubyonrails.org/2012/8/9/ann-rails-3-2-8-has-been-released/https://groups.google.com/group/rubyonrails-security/msg/961e18e514527078?dmode=source&output=gplain
2012-08-10
Published