VDB

GCVE-110-MAGEIA-2015-74

GCVE-110-MAGEIA-2015-74
Advisory Published
Vulnetix · Advisory published February 19, 2015
Updated ruby-sprockets packages fix security vulnerabilities: Multiple directory traversal vulnerabilities in server.rb in Sprockets 2.12.x before 2.12.3, allow remote attackers to determine the existence of files outside the application root via a ../ (dot dot slash) sequence with double slashes or URL encoding (CVE-2014-7819).

Affected Products

VendorProductVersionsPlatforms
Mageiaparcellite0 (affected), 1.1.9-1.mga5 (unaffected)
Mageiaruby-sprockets0 (affected), 0 (affected), 2.10.0-4.1.mga4 (unaffected), 2.10.0-4.1.mga4 (unaffected)

Browse GCVE Records

74,265 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›