VDB
CVE-2019-5420
CVE-2019-5420
PUBLISHED
Ruby on Rails ist ein in der Programmiersprache Ruby geschriebenes und quelloffenes Web Application Framework.
EPSS 93.51% · 99.8th percentile
Risk Scores
EPSS Score
93.51%
99.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu | Ubuntu Linux | |
| Open Source | Open Source Ruby on Rails <6.0.0.beta3 | |
| Open Source | Open Source Ruby on Rails <5.2.2.1 | |
| Red Hat | Red Hat Enterprise Linux | |
| SUSE | SUSE Linux |
Exploit Intelligence
- AnasTaoutaou/CVE-2019-5420 (github-poc-repo)
- AnasTaoutaou/CVE-2019-5420 (github-poc-repo)
- AnasTaoutaou/CVE-2019-5420 (github-poc-repo)
- AnasTaoutaou/CVE-2019-5420 (github-poc-repo)
- AnasTaoutaou/CVE-2019-5420 (github-poc-repo)
- AnasTaoutaou/CVE-2019-5420 (github-poc-repo)
- AnasTaoutaou/CVE-2019-5420 (github-poc-repo)
- AnasTaoutaou/CVE-2019-5420 (github-poc-repo)
- AnasTaoutaou/CVE-2019-5420 (github-poc-repo)
- Eremiel/CVE-2019-5420 (github-poc-repo)
…and 290 more exploits
Timeline
- CVE Published
- Mar 13, 2019 PoC Published
- May 2, 2019 PoC Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Sep 14, 2021 EPSS Score
- Sep 16, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2019/wid-sec-w-2025-1467.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-1467 advisory
- https://weblog.rubyonrails.org/2019/3/13/Rails-4-2-5-1-5-1-6-2-have-been-released/ advisory
- https://www.suse.com/support/update/announcement/2019/suse-su-20190915-1.html advisory
- https://access.redhat.com/errata/RHSA-2019:0796 advisory
- https://access.redhat.com/errata/RHSA-2019:1147 advisory
- https://access.redhat.com/errata/RHSA-2019:1149 advisory
- https://access.redhat.com/errata/RHSA-2019:1289 advisory
- https://www.suse.com/support/update/announcement/2019/suse-su-20191381-1.html advisory
- https://www.suse.com/support/update/announcement/2019/suse-su-20191973-1.html advisory
- http://lists.suse.com/pipermail/sle-security-updates/2020-October/007625.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2020-November/007691.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2020-November/007702.html advisory
- https://cisa.gov/known-exploited-vulnerabilities-catalog exploit
- https://ubuntu.com/security/notices/USN-7646-1 advisory