Lucene search

K
cvelistMitreCVELIST:CVE-2009-3086
HistorySep 08, 2009 - 6:00 p.m.

CVE-2009-3086

2009-09-0818:00:00
mitre
www.cve.org
2

9.2 High

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

77.7%

A certain algorithm in Ruby on Rails 2.1.0 through 2.2.2, and 2.3.x before 2.3.4, leaks information about the complexity of message-digest signature verification in the cookie store, which might allow remote attackers to forge a digest via multiple attempts.

9.2 High

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

77.7%