Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
Google
OSV:DLA-2275-1
History
Jul 10, 2020 - 12:00 a.m.
Vulners
/
Osv
/
ruby-rack - security update
ruby-rack - security update
2020-07-10
00:00:00
Google
osv.dev
13
6.2 Medium
AI Score
Confidence
High
0.002 Low
EPSS
Percentile
64.5%
JSON
Bulletin has no description
Software
CPE
Name
Operator
Version
ruby-rack
eq
1.6.4-4+deb9u1
ruby-rack
eq
1.6.4-4
Related
openvas 14
suse 3
ubuntu 3
nessus 27
debian 3
osv 12
veracode 2
cvelist 3
hackerone 2
cve 3
ubuntucve 3
redhatcve 3
prion 3
github 3
mageia 2
ibm 2
nvd 3
debiancve 3
rubygems 2
alpinelinux 1
f5 1
friendsofphp 2
amazon 1
redhat 1
openvas
openvas
14
Debian: Security Advisory (DLA-2275-1)
2020-07-17 00:00:00
Ubuntu: Security Advisory (USN-4561-2)
2021-04-07 00:00:00
openSUSE: Security Advisory for rubygem-rack (SUSE-SU-2022:3347-1)
2022-09-24 00:00:00
suse
suse
Security update for rubygem-rack (moderate)
2022-09-23 00:00:00
Security update for rmt-server (important)
2020-11-23 00:00:00
Security update for rmt-server (important)
2020-11-21 00:00:00
ubuntu
ubuntu
Rack vulnerabilities
2020-09-30 00:00:00
Rack vulnerabilities
2021-04-06 00:00:00
Rack vulnerabilities
2022-12-13 00:00:00
nessus
nessus
27
Ubuntu 18.04 LTS : Rack vulnerabilities (USN-4561-1)
2020-09-30 00:00:00
Debian DLA-2275-1 : ruby-rack security update
2020-07-14 00:00:00
SUSE SLES15 Security Update : rubygem-rack (SUSE-SU-2022:3347-1)
2022-09-24 00:00:00
debian
debian
[SECURITY] [DLA 2275-1] ruby-rack security update
2020-07-10 19:56:49
[SECURITY] [DLA 2216-1] ruby-rack security update
2020-05-22 18:32:39
[SECURITY] [DLA 3298-1] ruby-rack security update
2023-01-30 21:54:32
osv
osv
12
ruby-rack vulnerabilities
2021-04-06 11:13:44
ruby-rack vulnerabilities
2020-09-30 19:08:21
ruby-rack - security update
2023-01-31 00:00:00
veracode
veracode
Directory Traversal
2020-05-13 02:57:36
Insecure Cookie Parsing
2020-06-16 07:11:11
cvelist
cvelist
CVE-2020-8161
2020-07-02 00:00:00
CVE-2020-8184
2020-06-19 00:00:00
CVE-2020-7070 PHP parses encoded cookie names so malicious `__Host-` cookies can be sent
2020-09-29 00:00:00
hackerone
hackerone
Ruby on Rails: Rack parses encoded cookie names allowing an attacker to send malicious `__Host-` and `__Secure-` prefixed cookies
2020-06-10 23:58:33
Internet Bug Bounty: Ruby CVE-2021-41819: Cookie Prefix Spoofing in CGI::Cookie.parse
2022-01-30 07:31:32
cve
cve
CVE-2020-8184
2020-06-19 17:15:18
CVE-2020-8161
2020-07-02 19:15:12
CVE-2020-7070
2020-10-02 15:15:12
ubuntucve
ubuntucve
CVE-2020-8184
2020-06-19 00:00:00
CVE-2020-8161
2020-07-02 00:00:00
CVE-2020-7070
2020-10-02 00:00:00
redhatcve
redhatcve
CVE-2020-8161
2020-05-20 19:55:54
CVE-2020-8184
2020-06-19 16:56:13
CVE-2020-7070
2020-10-06 21:20:55
prion
prion
Directory traversal
2020-07-02 19:15:00
Input validation
2020-06-19 17:15:00
Information disclosure
2020-10-02 15:15:00
github
github
Directory traversal in Rack::Directory app bundled with Rack
2020-07-06 21:31:02
Rack allows Percent-encoded cookies to overwrite existing prefixed cookie names
2020-06-24 17:15:00
ReactPHP's HTTP server parses encoded cookie names so malicious `__Host-` and `__Secure-` cookies can be sent
2022-09-16 18:48:53
mageia
mageia
Updated ruby-rack packages fix security vulnerability
2020-08-01 02:25:42
Updated ruby-rack packages fix security vulnerability
2020-06-11 01:57:01
ibm
ibm
Security Bulletin: Aspera on Cloud CVE-2020-8184
2020-09-28 20:47:48
Security Bulletin: Vulnerabilities in Ruby on Rails affect IBM License Metric Tool v9.
2020-10-01 13:30:25
nvd
nvd
CVE-2020-8184
2020-06-19 17:15:18
CVE-2020-8161
2020-07-02 19:15:12
CVE-2020-7070
2020-10-02 15:15:12
debiancve
debiancve
CVE-2020-8161
2020-07-02 19:15:12
CVE-2020-8184
2020-06-19 17:15:18
CVE-2020-7070
2020-10-02 15:15:12
rubygems
rubygems
Cookie Prefix Spoofing in CGI::Cookie.parse
2021-11-23 21:00:00
Percent-encoded cookies can be used to overwrite existing prefixed cookie names
2020-06-14 21:00:00
alpinelinux
alpinelinux
CVE-2020-7070
2020-10-02 15:15:12
f5
f5
K11435435 : PHP vulnerability CVE-2020-7070
2020-10-22 00:00:00
friendsofphp
friendsofphp
ReactPHP's HTTP server parses encoded cookie names so malicious `__Host-` and `__Secure-` cookies can be sent
2022-08-20 11:11:00
ReactPHP's HTTP server parses encoded cookie names so malicious `__Host-` and `__Secure-` cookies can be sent
2022-08-20 11:11:00
amazon
amazon
Medium: php72, php73
2020-10-26 18:16:00
redhat
redhat
(RHSA-2020:4366) Important: Satellite 6.8 release
2020-10-27 12:45:25
6.2 Medium
AI Score
Confidence
High
0.002 Low
EPSS
Percentile
64.5%
JSON
Related for OSV:DLA-2275-1
openvas
14
suse
3
ubuntu
3
nessus
27
debian
3
osv
12
veracode
2
cvelist
3
hackerone
2
cve
3
ubuntucve
3
redhatcve
3
prion
3
github
3
mageia
2
ibm
2
nvd
3
debiancve
3
rubygems
2
alpinelinux
1
f5
1
friendsofphp
2
amazon
1
redhat
1