Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

TDiary Unspecified Remote Code Execution Vulnerability

tDiary is prone to an unspecified remote code-execution vulnerability because the application fails to sufficiently sanitize user-supplied input.

An attacker may leverage this issue to execute arbitrary Ruby code on an affected computer with the privileges of the webserver.

Versions prior to 2.0.4 are vulnerable to this issue.







 

Privacy Statement
Copyright 2008, SecurityFocus