Spree 'product_scope.rb' Remote Command Execution Vulnerability
BID:49987
Info
Spree 'product_scope.rb' Remote Command Execution Vulnerability
| Bugtraq ID: | 49987 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 06 2011 12:00AM |
| Updated: | Aug 12 2015 10:28PM |
| Credit: | joernchen and Phenoelit |
| Vulnerable: | |
| Not Vulnerable: | |
Exploit / POC
Spree 'product_scope.rb' Remote Command Execution Vulnerability
Attackers can use readily available tools to exploit this issue.
Attackers can use readily available tools to exploit this issue.
Solution / Fix
Spree 'product_scope.rb' Remote Command Execution Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.