Vulnerabilities (CVE)

Filtered by vendor Lean-ruport Project Subscribe
Filtered by product Lean-ruport
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-4998 1 Lean-ruport Project 1 Lean-ruport 2024-02-04 2.1 LOW 7.8 HIGH
test/tc_database.rb in the lean-ruport gem 0.3.8 for Ruby places the mysql user password on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.