CVE-2020-8159
published 2020-05-12CVE-2020-8159: There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an attacker to write arbitrary files to a web server, potentially resulting in…
PriorityP359critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
5.25%
91.7th percentile
There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an attacker to write arbitrary files to a web server, potentially resulting in remote code execution if the attacker can write unescaped ERB to a view.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | ruby-actionpack-page-caching | < ruby-actionpack-page-caching 1.2.2-1 (bookworm) | ruby-actionpack-page-caching 1.2.2-1 (bookworm) |
| https | github.com_rails_actionpack-page_caching | — | — |
| https | github.com_rails_actionpack-page_caching | >= 0 < 1.2.1 | 1.2.1 |
| rubyonrails | actionpack_page-caching | < 1.2.1 | 1.2.1 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
Arbitrary file write in actionpack-page_caching gem
ghsa·2020-05-13
CVE-2020-8159 [CRITICAL] CWE-22 Arbitrary file write in actionpack-page_caching gem
Arbitrary file write in actionpack-page_caching gem
There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an attacker to write arbitrary files to a web server, potentially resulting in remote code execution if the attacker can write unescaped ERB to a view.
OSV
Arbitrary file write in actionpack-page_caching gem
osv·2020-05-13
CVE-2020-8159 [CRITICAL] Arbitrary file write in actionpack-page_caching gem
Arbitrary file write in actionpack-page_caching gem
There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an attacker to write arbitrary files to a web server, potentially resulting in remote code execution if the attacker can write unescaped ERB to a view.
OSV
CVE-2020-8159: There is a vulnerability in actionpack_page-caching gem < v1
osv·2020-05-12·CVSS 9.8
CVE-2020-8159 [CRITICAL] CVE-2020-8159: There is a vulnerability in actionpack_page-caching gem < v1
There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an attacker to write arbitrary files to a web server, potentially resulting in remote code execution if the attacker can write unescaped ERB to a view.
Debian
CVE-2020-8159: ruby-actionpack-page-caching - There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an ...
vendor_debian·2020·CVSS 9.8
CVE-2020-8159 [CRITICAL] CVE-2020-8159: ruby-actionpack-page-caching - There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an ...
There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an attacker to write arbitrary files to a web server, potentially resulting in remote code execution if the attacker can write unescaped ERB to a view.
Scope: local
bookworm: resolved (fixed in 1.2.2-1)
bullseye: resolved (fixed in 1.2.2-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-8159 rubygem-actionpack: actionpack: allows an attacker to write arbitrary files to a web server, which could result in remote code execution [fedora-all]
bugzilla·2020-05-14·CVSS 9.8
CVE-2020-8159 [CRITICAL] CVE-2020-8159 rubygem-actionpack: actionpack: allows an attacker to write arbitrary files to a web server, which could result in remote code execution [fedora-all]
CVE-2020-8159 rubygem-actionpack: actionpack: allows an attacker to write arbitrary files to a web server, which could result in remote code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelo
Bugzilla
CVE-2020-8159 rubygem-actionpack-page_caching: allows an attacker to write arbitrary files to a web server, which could result in remote code execution
bugzilla·2020-05-14·CVSS 9.8
CVE-2020-8159 [CRITICAL] CVE-2020-8159 rubygem-actionpack-page_caching: allows an attacker to write arbitrary files to a web server, which could result in remote code execution
CVE-2020-8159 rubygem-actionpack-page_caching: allows an attacker to write arbitrary files to a web server, which could result in remote code execution
A vulnerability was found in the actionpack_page-caching gem that allows an attacker
to write arbitrary files to a web server, potentially resulting in remote code execution
if the attacker can write unescaped ERB to a view.
Upstream Advisory:
https://groups.google.com/forum/#!topic/rubyonrails-security/CFRVkEytdP8
Discussion:
Created rubygem-actionpack tracking bugs for this issue:
Affects: fedora-all [bug 1835656]
2020-05-12
Published