{"id":"GHSA-rvpq-5xqx-pfpp","summary":"Ruby on Rails vulnerable to code injection","details":"Ruby on Rails before 1.1.5 allows remote attackers to execute Ruby code with \"severe\" or \"serious\" impact via a File Upload request with an HTTP header that modifies the LOAD_PATH variable, a different vulnerability than CVE-2006-4112.","aliases":["CVE-2006-4111"],"modified":"2025-04-03T14:34:02.972487Z","published":"2017-10-24T18:33:38Z","database_specific":{"github_reviewed":true,"github_reviewed_at":"2020-06-16T21:56:02Z","nvd_published_at":"2006-08-14T21:04:00Z","cwe_ids":["CWE-94"],"severity":"HIGH"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2006-4111"},{"type":"WEB","url":"https://github.com/presidentbeef/rails-security-history/blob/master/vulnerabilities.md"},{"type":"PACKAGE","url":"https://github.com/rails/rails"},{"type":"WEB","url":"https://github.com/rubysec/ruby-advisory-db/blob/master/gems/rails/CVE-2006-4111.yml"},{"type":"WEB","url":"https://web.archive.org/web/20200301174340/http://www.securityfocus.com/bid/19454"},{"type":"WEB","url":"https://web.archive.org/web/20200808083046/http://securitytracker.com/id?1016673"},{"type":"WEB","url":"http://blog.koehntopp.de/archives/1367-Ruby-On-Rails-Mandatory-Mystery-Patch.html"},{"type":"WEB","url":"http://weblog.rubyonrails.org/2006/8/9/rails-1-1-5-mandatory-security-patch-and-other-tidbits"},{"type":"WEB","url":"http://www.gentoo.org/security/en/glsa/glsa-200608-20.xml"},{"type":"WEB","url":"http://www.novell.com/linux/security/advisories/2006_21_sr.html"}],"affected":[{"package":{"name":"rails","ecosystem":"RubyGems","purl":"pkg:gem/rails"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"1.1.0"},{"fixed":"1.1.6"}]}],"versions":["1.1.0","1.1.1","1.1.2","1.1.3","1.1.4","1.1.5"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2017/10/GHSA-rvpq-5xqx-pfpp/GHSA-rvpq-5xqx-pfpp.json"}}],"schema_version":"1.9.0"}