Beveiligingsadvies

CVE-2015-20108

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-05-27 00:00:00
Laatst bijgewerkt 2025-01-14 18:39:03
Toegewezen door mitre
CVSS-score 9.8
Status PUBLISHED

Beschrijving

xml_security.rb in the ruby-saml gem before 1.0.0 for Ruby allows XPath injection and code execution because prepared statements are not used.