Files
CVEs-PoC/2013/CVE-2013-2095.md
T
2024-06-18 02:51:15 +02:00

18 lines
726 B
Markdown

### [CVE-2013-2095](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2095)
![](https://img.shields.io/static/v1?label=Product&message=rubygem-openshift-origin-controller&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3D%20through%202013-05-15%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=cartridge_cache.rb%20URI.prase()%20command%20injection&color=brighgreen)
### Description
rubygem-openshift-origin-controller: API can be used to create applications via cartridge_cache.rb URI.prase() to perform command injection
### POC
#### Reference
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-2095
#### Github
No PoCs found on GitHub currently.