Lucene search

K
prionPRIOn knowledge basePRION:CVE-2012-1098
HistoryMar 13, 2012 - 10:55 a.m.

Cross site scripting

2012-03-1310:55:00
PRIOn knowledge base
www.prio-n.com
13

5.9 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

64.6%

Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving a SafeBuffer object that is manipulated through certain methods.

5.9 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

64.6%