RSS   Vulnerabilities for 'Http.rb'   RSS

2017-10-06
 
CVE-2015-1828

CWE-200
 

 
The Ruby http gem before 0.7.3 does not verify hostnames in SSL connections, which might allow remote attackers to obtain sensitive information via a man-in-the-middle-attack.

 


Copyright 2024, cxsecurity.com

 

Back to Top