Security Advisory
CVE-2012-1241
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
GRScript18.dll before 1.2.2.0 in ActiveScriptRuby (ASR) before 1.8.7 does not properly restrict interaction with an Internet Explorer ActiveX environment, which allows remote attackers to execute arbitrary Ruby code via a crafted HTML document.