Lucene search

K
cvelistRedhatCVELIST:CVE-2014-3483
HistoryJul 07, 2014 - 10:00 a.m.

CVE-2014-3483

2014-07-0710:00:00
redhat
www.cve.org

8.1 High

AI Score

Confidence

Low

0.009 Low

EPSS

Percentile

82.6%

SQL injection vulnerability in activerecord/lib/active_record/connection_adapters/postgresql/quoting.rb in the PostgreSQL adapter for Active Record in Ruby on Rails 4.x before 4.0.7 and 4.1.x before 4.1.3 allows remote attackers to execute arbitrary SQL commands by leveraging improper range quoting.