Security Advisory

CVE-2013-2105

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-04-22 14:00:00
Last updated 2024-08-06 15:27:41
Assigner redhat
State PUBLISHED

Description

The Show In Browser (show_in_browser) gem 0.0.3 for Ruby allows local users to inject arbitrary web script or HTML via a symlink attack on /tmp/browser.html.