Lucene search

K
cvelistRedhatCVELIST:CVE-2014-0080
HistoryFeb 20, 2014 - 11:00 a.m.

CVE-2014-0080

2014-02-2011:00:00
redhat
www.cve.org
4

AI Score

7.7

Confidence

Low

EPSS

0.004

Percentile

72.4%

SQL injection vulnerability in activerecord/lib/active_record/connection_adapters/postgresql/cast.rb in Active Record in Ruby on Rails 4.0.x before 4.0.3, and 4.1.0.beta1, when PostgreSQL is used, allows remote attackers to execute “add data” SQL commands via vectors involving \ (backslash) characters that are not properly handled in operations on array columns.

AI Score

7.7

Confidence

Low

EPSS

0.004

Percentile

72.4%