Sha256: f50b2de184c737c359338e320618f551369bcbb6ad96c841fec06c9764f8de6a

Contents?: true

Size: 539 Bytes

Versions: 1

Compression:

Stored size: 539 Bytes

Contents

---
gem: fat_free_crm
osvdb: 101447
cve: 2013-7224
url: https://nvd.nist.gov/vuln/detail/CVE-2013-7224
title: Fat Free CRM Gem for Ruby allows remote attackers to obtain
  sensitive informations
date: 2013-12-24
description: |
  Fat Free CRM contains a flaw in user controllers that is triggered as JSON
  requests are rendered with a full JSON object. This may allow a remote
  attacker to gain access to potentially sensitive information e.g. other
  users password hashes.
cvss_v2: 5.0
patched_versions:
  - ">= 0.13.0"
  - "~> 0.12.1"

Version data entries

1 entries across 1 versions & 1 rubygems

Version Path
bundler-audit-0.7.0.1 data/ruby-advisory-db/gems/fat_free_crm/CVE-2013-7224.yml