Ruby On Rails Known Secret Session Cookie Remote Code Execution
Publish date: 26 de octubre de 2016
Gravedad: Cr¨ªtico
Descripci¨®n
This module implements Remote Command Execution on Ruby on Rails applications.
Prerequisite is knowledge of the "secret_token" (Rails 2/3) or "secret_key_base"
(Rails 4). The values for those can be usually found in the default location. The module achieves RCE by deserialization of a crafted Ruby Object.
Revelaci¨®n de la informaci¨®n
Apply associated live casino online DPI Rules.
Soluciones
live casino online Deep Security DPI Rule Number: 1005639